hfs kayıtları
hfs üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-287 Improper Authentication3
- CWE-20 Improper Input Validation1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2008-0405İstismar yok | Multiple directory traversal vulnerabilities in HTTP File Server (HFS) before 2.2c, when account names are used as log filenames, allow remohfs · http file server · CWE-22 | Kritik10,0 | — | %3,1 | 28 Oca 2008 |
26İzleyin | CVE-2008-0408İstismar yok | HTTP File Server (HFS) before 2.2c allows remote attackers to append arbitrary text to the log file by using the base64 representation of thhfs · http file server · CWE-287 | Orta6,4 | — | %1,7 | 28 Oca 2008 |
21İzleyin | CVE-2008-0406Kavram kanıtı | HTTP File Server (HFS) before 2.2c, when account names are used as log filenames, allows remote attackers to cause a denial of service (daemhfs · http file server · CWE-20 | Orta5,0 | — | %3,6 | 28 Oca 2008 |
21İzleyin | CVE-2008-0410İstismar yok | HTTP File Server (HFS) before 2.2c allows remote attackers to obtain configuration and usage details by using an id element such as <id>%verhfs · http file server · CWE-287 | Orta5,0 | — | %1,8 | 28 Oca 2008 |
20İzleyin | CVE-2008-0407İstismar yok | HTTP File Server (HFS) before 2.2c tags HTTP request log entries with the username sent during HTTP Basic Authentication, regardless of whethfs · http file server · CWE-287 | Orta5,0 | — | %1,6 | 28 Oca 2008 |
17İzleyin | CVE-2008-0409İstismar yok | Cross-site scripting (XSS) vulnerability in HTTP File Server (HFS) before 2.2c allows remote attackers to inject arbitrary web script or HTMhfs · http file server · CWE-79 | Orta4,3 | — | %1,3 | 28 Oca 2008 |
- CVE-2008-040541Planlayın
Multiple directory traversal vulnerabilities in HTTP File Server (HFS) before 2.2c, when account names are used as log filenames, allow remo
KritikCVSS 10,0İstismar yokEPSS %3hfs · http file server28 Oca 2008
- CVE-2008-040826İzleyin
HTTP File Server (HFS) before 2.2c allows remote attackers to append arbitrary text to the log file by using the base64 representation of th
OrtaCVSS 6,4İstismar yokEPSS %2hfs · http file server28 Oca 2008
- CVE-2008-040621İzleyin
HTTP File Server (HFS) before 2.2c, when account names are used as log filenames, allows remote attackers to cause a denial of service (daem
OrtaCVSS 5,0Kavram kanıtıEPSS %4hfs · http file server28 Oca 2008
- CVE-2008-041021İzleyin
HTTP File Server (HFS) before 2.2c allows remote attackers to obtain configuration and usage details by using an id element such as <id>%ver
OrtaCVSS 5,0İstismar yokEPSS %2hfs · http file server28 Oca 2008
- CVE-2008-040720İzleyin
HTTP File Server (HFS) before 2.2c tags HTTP request log entries with the username sent during HTTP Basic Authentication, regardless of whet
OrtaCVSS 5,0İstismar yokEPSS %2hfs · http file server28 Oca 2008
- CVE-2008-040917İzleyin
Cross-site scripting (XSS) vulnerability in HTTP File Server (HFS) before 2.2c allows remote attackers to inject arbitrary web script or HTM
OrtaCVSS 4,3İstismar yokEPSS %1hfs · http file server28 Oca 2008