iii kayıtları
iii üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2014-2081Kavram kanıtı | Multiple SQL injection vulnerabilities in the login in web_reports/cgi-bin/InfoStation.cgi in Innovative vtls-Virtua before 2013.2.4 and 201iii · vtls-virtua · CWE-89 | Yüksek7,5 | — | %2,1 | 20 Eki 2014 |
30İzleyin | CVE-2014-5138İstismar yok | Innovative Interfaces Sierra Library Services Platform 1.2_3 does not properly handle query strings with multiple instances of the same paraiii · sierra | Yüksek7,5 | — | %1,6 | 14 Oca 2020 |
24İzleyin | CVE-2014-5127İstismar yok | Open redirect vulnerability in Innovative Interfaces Encore Discovery Solution 4.3 allows remote attackers to redirect users to arbitrary weiii · encore discovery solution | Orta5,8 | — | %2,1 | 29 Ağu 2014 |
21İzleyin | CVE-2014-5128İstismar yok | Innovative Interfaces Encore Discovery Solution 4.3 places a session token in the URI, which might allow remote attackers to obtain sensitiviii · encore discovery solution · CWE-200 | Orta5,0 | — | %2,3 | 29 Ağu 2014 |
20İzleyin | CVE-2014-5137İstismar yok | Innovative Interfaces Sierra Library Services Platform 1.2_3 provides different responses for login request depending on whether the user aciii · sierra · CWE-200 | Orta5,0 | — | %1,2 | 2 Eyl 2014 |
17İzleyin | CVE-2014-5136İstismar yok | Cross-site scripting (XSS) vulnerability in Innovative Interfaces Sierra Library Services Platform 1.2_3 allows remote attackers to inject aiii · sierra · CWE-79 | Orta4,3 | — | %0,9 | 2 Eyl 2014 |
- CVE-2014-208131İzleyin
Multiple SQL injection vulnerabilities in the login in web_reports/cgi-bin/InfoStation.cgi in Innovative vtls-Virtua before 2013.2.4 and 201
YüksekCVSS 7,5Kavram kanıtıEPSS %2iii · vtls-virtua20 Eki 2014
- CVE-2014-513830İzleyin
Innovative Interfaces Sierra Library Services Platform 1.2_3 does not properly handle query strings with multiple instances of the same para
YüksekCVSS 7,5İstismar yokEPSS %2iii · sierra14 Oca 2020
- CVE-2014-512724İzleyin
Open redirect vulnerability in Innovative Interfaces Encore Discovery Solution 4.3 allows remote attackers to redirect users to arbitrary we
OrtaCVSS 5,8İstismar yokEPSS %2iii · encore discovery solution29 Ağu 2014
- CVE-2014-512821İzleyin
Innovative Interfaces Encore Discovery Solution 4.3 places a session token in the URI, which might allow remote attackers to obtain sensitiv
OrtaCVSS 5,0İstismar yokEPSS %2iii · encore discovery solution29 Ağu 2014
- CVE-2014-513720İzleyin
Innovative Interfaces Sierra Library Services Platform 1.2_3 provides different responses for login request depending on whether the user ac
OrtaCVSS 5,0İstismar yokEPSS %1iii · sierra2 Eyl 2014
- CVE-2014-513617İzleyin
Cross-site scripting (XSS) vulnerability in Innovative Interfaces Sierra Library Services Platform 1.2_3 allows remote attackers to inject a
OrtaCVSS 4,3İstismar yokEPSS %1iii · sierra2 Eyl 2014