İçeriğe atla
Noroxi

joyplus project kayıtları

joyplus project üreticisine ait 4 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
1
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Yıllara göre kayıt

  1. 18
  2. 19

Çubuk: toplam · koyu kısım: CISA KEV.

Tekrar eden sınıflar

Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.

CWE

Tüm kayıtlar

4 kayıt
  • CVE-2018-14501
    39İzleyin

    manager/admin_ajax.php in joyplus-cms 1.6.0 has SQL Injection, as demonstrated by crafted POST data beginning with an "m_id=1 AND SLEEP(5)"

    KritikCVSS 9,8İstismar yokEPSS %1

    joyplus project · joyplus-cms22 Tem 2018

  • CVE-2019-16656
    39İzleyin

    joyplus-cms 1.6.0 allows remote attackers to execute arbitrary PHP code via /install by placing the code in the name of an object in the dat

    KritikCVSS 9,8İstismar yokEPSS %1

    joyplus project · joyplus21 Eyl 2019

  • CVE-2019-16660
    35İzleyin

    joyplus-cms 1.6.0 has admin_ajax.php?action=savexml&tab=vodplay CSRF.

    YüksekCVSS 8,8İstismar yokEPSS %1

    joyplus project · joyplus21 Eyl 2019

  • CVE-2019-16655
    30İzleyin

    joyplus-cms 1.6.0 allows reinstallation if the install/ URI remains available.

    YüksekCVSS 7,5İstismar yokEPSS %1

    joyplus project · joyplus21 Eyl 2019