intersystems kayıtları
intersystems üreticisine ait 10 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-284 Improper Access Control1
- CWE-611 Improper Restriction of XML External Entity Reference1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
10 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2003-1333İstismar yok | Unspecified vulnerability in the Cache' Server Page (CSP) implementation in InterSystems Cache' 4.0.3 through 5.0.5 allows remote attackers intersystems · cache database | Kritik10,0 | — | %1,9 | 31 Ara 2003 |
28İzleyin | CVE-2003-0497Kavram kanıtı | Caché Database 5.x installs /cachesys/bin/cache with world-writable permissions, which allows local users to gain privileges by modifying caintersystems · cache database · CWE-264 | Yüksek7,2 | — | %0,8 | 7 Ağu 2003 |
28İzleyin | CVE-2003-0498İstismar yok | Caché Database 5.x installs the /cachesys/csp directory with insecure permissions, which allows local users to execute arbitrary code by addintersystems · cache database · CWE-94 | Yüksek7,2 | — | %0,5 | 7 Ağu 2003 |
25İzleyin | CVE-2018-17152İstismar yok | Intersystems Cache 2017.2.2.865.0 allows XXE.intersystems · cache · CWE-611 | Orta6,4 | — | %0,7 | 11 Tem 2019 |
24İzleyin | CVE-2018-17150İstismar yok | Intersystems Cache 2017.2.2.865.0 allows XSS.intersystems · cache · CWE-79 | Orta6,1 | — | %0,9 | 11 Tem 2019 |
21İzleyin | CVE-2018-17151İstismar yok | Intersystems Cache 2017.2.2.865.0 has Incorrect Access Control.intersystems · cache · CWE-284 | Orta5,4 | — | %0,7 | 11 Tem 2019 |
14İzleyin | CVE-2007-4427İstismar yok | Unspecified vulnerability in the login page redirection logic in the Cache' Server Page (CSP) implementation in InterSystems Cache' 2007.1.0intersystems · cache database | Düşük3,5 | — | %0,9 | 20 Ağu 2007 |
14İzleyin | CVE-2007-0437İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in the sample Cache' Server Page (CSP) scripts in InterSystems Cache' allow remote attacintersystems · cache database | Düşük3,5 | — | %0,8 | 20 Ağu 2007 |
8İzleyin | CVE-2004-2684İstismar yok | Unspecified vulnerability in the %template package in InterSystems Cache' 5.0 allows attackers to access certain files on a server, includinintersystems · cache database | Düşük2,1 | — | %0,3 | 31 Ara 2004 |
8İzleyin | CVE-2004-2683İstismar yok | Unspecified vulnerability in the %XML.Utils.SchemaServer class in InterSystems Cache' 5.0 allows attackers to access arbitrary files on a seintersystems · cache | Düşük2,1 | — | %0,3 | 31 Ara 2004 |
- CVE-2003-133341Planlayın
Unspecified vulnerability in the Cache' Server Page (CSP) implementation in InterSystems Cache' 4.0.3 through 5.0.5 allows remote attackers
KritikCVSS 10,0İstismar yokEPSS %2intersystems · cache database31 Ara 2003
- CVE-2003-049728İzleyin
Caché Database 5.x installs /cachesys/bin/cache with world-writable permissions, which allows local users to gain privileges by modifying ca
YüksekCVSS 7,2Kavram kanıtıEPSS %1intersystems · cache database7 Ağu 2003
- CVE-2003-049828İzleyin
Caché Database 5.x installs the /cachesys/csp directory with insecure permissions, which allows local users to execute arbitrary code by add
YüksekCVSS 7,2İstismar yokEPSS %0intersystems · cache database7 Ağu 2003
- CVE-2018-1715225İzleyin
Intersystems Cache 2017.2.2.865.0 allows XXE.
OrtaCVSS 6,4İstismar yokEPSS %1intersystems · cache11 Tem 2019
- CVE-2018-1715024İzleyin
Intersystems Cache 2017.2.2.865.0 allows XSS.
OrtaCVSS 6,1İstismar yokEPSS %1intersystems · cache11 Tem 2019
- CVE-2018-1715121İzleyin
Intersystems Cache 2017.2.2.865.0 has Incorrect Access Control.
OrtaCVSS 5,4İstismar yokEPSS %1intersystems · cache11 Tem 2019
- CVE-2007-442714İzleyin
Unspecified vulnerability in the login page redirection logic in the Cache' Server Page (CSP) implementation in InterSystems Cache' 2007.1.0
DüşükCVSS 3,5İstismar yokEPSS %1intersystems · cache database20 Ağu 2007
- CVE-2007-043714İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in the sample Cache' Server Page (CSP) scripts in InterSystems Cache' allow remote attac
DüşükCVSS 3,5İstismar yokEPSS %1intersystems · cache database20 Ağu 2007
- CVE-2004-26848İzleyin
Unspecified vulnerability in the %template package in InterSystems Cache' 5.0 allows attackers to access certain files on a server, includin
DüşükCVSS 2,1İstismar yokEPSS %0intersystems · cache database31 Ara 2004
- CVE-2004-26838İzleyin
Unspecified vulnerability in the %XML.Utils.SchemaServer class in InterSystems Cache' 5.0 allows attackers to access arbitrary files on a se
DüşükCVSS 2,1İstismar yokEPSS %0intersystems · cache31 Ara 2004