lsoft kayıtları
lsoft üreticisine ait 10 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 5
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-639 Authorization Bypass Through User-Controlled Key1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
10 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
42Planlayın | CVE-2000-0425Kavram kanıtı | Buffer overflow in the Web Archives component of L-Soft LISTSERV 1.8 allows remote attackers to execute arbitrary commands.lsoft · listserv | Kritik10,0 | — | %5,8 | 3 May 2000 |
32İzleyin | CVE-2006-1044İstismar yok | Multiple buffer overflows in LISTSERV 14.3 and 14.4, including LISTSERV Lite and HPO, with the web archive interface enabled, allow remote alsoft · listserv | Yüksek7,5 | — | %7,5 | 7 Mar 2006 |
32İzleyin | CVE-2022-40319Kavram kanıtı | The LISTSERV 17 web interface allows remote attackers to conduct Insecure Direct Object References (IDOR) attacks via a modified email addrelsoft · listserv · CWE-639 | Yüksek7,5 | — | %7,2 | 17 Oca 2023 |
31İzleyin | CVE-2000-0632İstismar yok | Buffer overflow in the web archive component of L-Soft Listserv 1.8d and earlier allows remote attackers to execute arbitrary commands via alsoft · listserv | Yüksek7,5 | — | %3,6 | 17 Tem 2000 |
31İzleyin | CVE-1999-0252İstismar yok | Buffer overflow in listserv allows arbitrary command execution.lsoft · listserv | Yüksek7,5 | — | %2,9 | 1 Oca 1997 |
31İzleyin | CVE-2005-1773İstismar yok | Multiple unknown vulnerabilities in L-Soft LISTSERV 14.3, 1.8e, and 1.8d allow remote attackers to execute arbitrary code or cause a denial lsoft · listserv | Yüksek7,5 | — | %2,7 | 31 May 2005 |
26İzleyin | CVE-2019-15501Kavram kanıtı | Reflected cross site scripting (XSS) in L-Soft LISTSERV before 16.5-2018a exists via the /scripts/wa.exe OK parameter.lsoft · listserv · CWE-79 | Orta6,1 | — | %7,4 | 26 Ağu 2019 |
26İzleyin | CVE-2022-39195Kavram kanıtı | A cross-site scripting (XSS) vulnerability in the LISTSERV 17 web interface allows remote attackers to inject arbitrary JavaScript or HTML vlsoft · listserv · CWE-79 | Orta6,1 | — | %6,3 | 17 Oca 2023 |
24İzleyin | CVE-2023-27641Kavram kanıtı | The REPORT (after z but before a) parameter in wa.exe in L-Soft LISTSERV 16.5 before 17 allows an attacker to conduct XSS attacks via a craflsoft · listserv · CWE-79 | Orta6,1 | — | %1,1 | 5 Mar 2023 |
17İzleyin | CVE-2010-2723İstismar yok | Cross-site scripting (XSS) vulnerability in LISTSERV 15 and 16 allows remote attackers to inject arbitrary web script or HTML via the T paralsoft · listserv · CWE-79 | Orta4,3 | — | %0,8 | 13 Tem 2010 |
- CVE-2000-042542Planlayın
Buffer overflow in the Web Archives component of L-Soft LISTSERV 1.8 allows remote attackers to execute arbitrary commands.
KritikCVSS 10,0Kavram kanıtıEPSS %6lsoft · listserv3 May 2000
- CVE-2006-104432İzleyin
Multiple buffer overflows in LISTSERV 14.3 and 14.4, including LISTSERV Lite and HPO, with the web archive interface enabled, allow remote a
YüksekCVSS 7,5İstismar yokEPSS %7lsoft · listserv7 Mar 2006
- CVE-2022-4031932İzleyin
The LISTSERV 17 web interface allows remote attackers to conduct Insecure Direct Object References (IDOR) attacks via a modified email addre
YüksekCVSS 7,5Kavram kanıtıEPSS %7lsoft · listserv17 Oca 2023
- CVE-2000-063231İzleyin
Buffer overflow in the web archive component of L-Soft Listserv 1.8d and earlier allows remote attackers to execute arbitrary commands via a
YüksekCVSS 7,5İstismar yokEPSS %4lsoft · listserv17 Tem 2000
- CVE-1999-025231İzleyin
Buffer overflow in listserv allows arbitrary command execution.
YüksekCVSS 7,5İstismar yokEPSS %3lsoft · listserv1 Oca 1997
- CVE-2005-177331İzleyin
Multiple unknown vulnerabilities in L-Soft LISTSERV 14.3, 1.8e, and 1.8d allow remote attackers to execute arbitrary code or cause a denial
YüksekCVSS 7,5İstismar yokEPSS %3lsoft · listserv31 May 2005
- CVE-2019-1550126İzleyin
Reflected cross site scripting (XSS) in L-Soft LISTSERV before 16.5-2018a exists via the /scripts/wa.exe OK parameter.
OrtaCVSS 6,1Kavram kanıtıEPSS %7lsoft · listserv26 Ağu 2019
- CVE-2022-3919526İzleyin
A cross-site scripting (XSS) vulnerability in the LISTSERV 17 web interface allows remote attackers to inject arbitrary JavaScript or HTML v
OrtaCVSS 6,1Kavram kanıtıEPSS %6lsoft · listserv17 Oca 2023
- CVE-2023-2764124İzleyin
The REPORT (after z but before a) parameter in wa.exe in L-Soft LISTSERV 16.5 before 17 allows an attacker to conduct XSS attacks via a craf
OrtaCVSS 6,1Kavram kanıtıEPSS %1lsoft · listserv5 Mar 2023
- CVE-2010-272317İzleyin
Cross-site scripting (XSS) vulnerability in LISTSERV 15 and 16 allows remote attackers to inject arbitrary web script or HTML via the T para
OrtaCVSS 4,3İstismar yokEPSS %1lsoft · listserv13 Tem 2010