Записи maianscriptworld
21 опубликованных записей вендора maianscriptworld.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 5
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')13
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')4
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-287 Improper Authentication1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-862 Missing Authorization1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
21 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
59В плане | CVE-2021-32172Proof of concept | Maian Cart v3.8 contains a preauthorization remote code execution (RCE) exploit via a broken access control issue in the Elfinder plugin.maianscriptworld · maian cart · CWE-862 | Критическая9,8 | — | 66,4 % | 7 окт. 2021 г. |
32Наблюдать | CVE-2008-7086Proof of concept | Maian Greetings 2.1 allows remote attackers to bypass authentication and gain administrative privileges by setting the mecard_admin_cookie cmaianscriptworld · maian greetings · CWE-287 | Высокая7,5 | — | 6,6 % | 26 авг. 2009 г. |
31Наблюдать | CVE-2014-10004Эксплойта нет | SQL injection vulnerability in admin/data_files/move.php in Maian Uploader 4.0 allows remote attackers to execute arbitrary SQL commands viamaianscriptworld · maian uploader · CWE-89 | Высокая7,5 | — | 2,1 % | 13 янв. 2015 г. |
30Наблюдать | CVE-2008-2208Эксплойта нет | SQL injection vulnerability in index.php in Maian Greeting 2.1 allows remote attackers to execute arbitrary SQL commands via the keywords pamaianscriptworld · maian greeting · CWE-89 | Высокая7,5 | — | 1,1 % | 14 мая 2008 г. |
30Наблюдать | CVE-2008-2205Эксплойта нет | SQL injection vulnerability in index.php in Maian Music 1.1 allows remote attackers to execute arbitrary SQL commands via the album parametemaianscriptworld · maian music · CWE-89 | Высокая7,5 | — | 1,1 % | 14 мая 2008 г. |
30Наблюдать | CVE-2008-2203Эксплойта нет | SQL injection vulnerability in search.php in Maian Search 1.1 allows remote attackers to execute arbitrary SQL commands via the keywords parmaianscriptworld · maian search · CWE-89 | Высокая7,5 | — | 1,1 % | 14 мая 2008 г. |
27Наблюдать | CVE-2014-10006Эксплойта нет | Multiple cross-site request forgery (CSRF) vulnerabilities in Maian Uploader 4.0 allow remote attackers to hijack the authentication of unspmaianscriptworld · maian uploader · CWE-352 | Средняя6,8 | — | 0,6 % | 13 янв. 2015 г. |
21Наблюдать | CVE-2014-10005Эксплойта нет | Maian Uploader 4.0 allows remote attackers to obtain sensitive information via a request without the height parameter to load_flv.js.php, whmaianscriptworld · maian uploader · CWE-200 | Средняя5,0 | — | 1,8 % | 13 янв. 2015 г. |
17Наблюдать | CVE-2008-2202Proof of concept | Multiple cross-site scripting (XSS) vulnerabilities in Maian Uploader 4.0 allow remote attackers to inject arbitrary web script or HTML via maianscriptworld · maian uploader · CWE-79 | Средняя4,3 | — | 1,5 % | 14 мая 2008 г. |
17Наблюдать | CVE-2014-10007Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in Maian Weblog 4.0 and earlier allow remote attackers to inject arbitrary web script ormaianscriptworld · maian weblog · CWE-79 | Средняя4,3 | — | 1,2 % | 13 янв. 2015 г. |
17Наблюдать | CVE-2008-2209Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in admin/inc/header.php in Maian Greeting 2.1 allow remote attackers to inject arbitrarymaianscriptworld · maian greeting · CWE-79 | Средняя4,3 | — | 1,1 % | 14 мая 2008 г. |
17Наблюдать | CVE-2008-2200Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in Maian Weblog 4.0 allow remote attackers to inject arbitrary web script or HTML via thmaianscriptworld · maian weblog · CWE-79 | Средняя4,3 | — | 1,1 % | 14 мая 2008 г. |
17Наблюдать | CVE-2008-2201Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in admin/inc/header.php in Maian Recipe 1.2 allow remote attackers to inject arbitrary wmaianscriptworld · maian recipe · CWE-79 | Средняя4,3 | — | 1,1 % | 14 мая 2008 г. |
17Наблюдать | CVE-2008-2206Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in Maian Music 1.1 allow remote attackers to inject arbitrary web script or HTML via themaianscriptworld · maian music · CWE-79 | Средняя4,3 | — | 1,1 % | 14 мая 2008 г. |
17Наблюдать | CVE-2008-2207Эксплойта нет | Cross-site scripting (XSS) vulnerability in admin/index.php in Maian Gallery 2.0 allows remote attackers to inject arbitrary web script or Hmaianscriptworld · maian gallery · CWE-79 | Средняя4,3 | — | 1,1 % | 14 мая 2008 г. |
17Наблюдать | CVE-2008-2210Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in Maian Support 1.3 allow remote attackers to inject arbitrary web script or HTML via tmaianscriptworld · maian support · CWE-79 | Средняя4,3 | — | 1,1 % | 14 мая 2008 г. |
17Наблюдать | CVE-2008-2211Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in admin/inc/footer.php in Maian Guestbook 3.2 allow remote attackers to inject arbitrarmaianscriptworld · maian guestbook · CWE-79 | Средняя4,3 | — | 1,1 % | 14 мая 2008 г. |
17Наблюдать | CVE-2008-2213Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in admin/inc/footer.php in Maian Links 3.1 allow remote attackers to inject arbitrary wemaianscriptworld · maian links · CWE-79 | Средняя4,3 | — | 1,1 % | 14 мая 2008 г. |
17Наблюдать | CVE-2008-2212Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in Maian Cart 1.1 allow remote attackers to inject arbitrary web script or HTML via the maianscriptworld · maian cart · CWE-79 | Средняя4,3 | — | 1,0 % | 14 мая 2008 г. |
17Наблюдать | CVE-2008-2204Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in admin/inc/header.php in Maian Search 1.1 allow remote attackers to inject arbitrary wmaianscriptworld · maian search · CWE-79 | Средняя4,3 | — | 1,0 % | 14 мая 2008 г. |
17Наблюдать | CVE-2008-1075Эксплойта нет | Cross-site scripting (XSS) vulnerability in index.php in Maian Cart 1.1 allows remote attackers to inject arbitrary web script or HTML via tmaianscriptworld · maian cart · CWE-79 | Средняя4,3 | — | 0,8 % | 28 февр. 2008 г. |
- CVE-2021-3217259В плане
Maian Cart v3.8 contains a preauthorization remote code execution (RCE) exploit via a broken access control issue in the Elfinder plugin.
КритическаяCVSS 9,8Proof of conceptEPSS 66 %maianscriptworld · maian cart7 окт. 2021 г.
- CVE-2008-708632Наблюдать
Maian Greetings 2.1 allows remote attackers to bypass authentication and gain administrative privileges by setting the mecard_admin_cookie c
ВысокаяCVSS 7,5Proof of conceptEPSS 7 %maianscriptworld · maian greetings26 авг. 2009 г.
- CVE-2014-1000431Наблюдать
SQL injection vulnerability in admin/data_files/move.php in Maian Uploader 4.0 allows remote attackers to execute arbitrary SQL commands via
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %maianscriptworld · maian uploader13 янв. 2015 г.
- CVE-2008-220830Наблюдать
SQL injection vulnerability in index.php in Maian Greeting 2.1 allows remote attackers to execute arbitrary SQL commands via the keywords pa
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %maianscriptworld · maian greeting14 мая 2008 г.
- CVE-2008-220530Наблюдать
SQL injection vulnerability in index.php in Maian Music 1.1 allows remote attackers to execute arbitrary SQL commands via the album paramete
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %maianscriptworld · maian music14 мая 2008 г.
- CVE-2008-220330Наблюдать
SQL injection vulnerability in search.php in Maian Search 1.1 allows remote attackers to execute arbitrary SQL commands via the keywords par
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %maianscriptworld · maian search14 мая 2008 г.
- CVE-2014-1000627Наблюдать
Multiple cross-site request forgery (CSRF) vulnerabilities in Maian Uploader 4.0 allow remote attackers to hijack the authentication of unsp
СредняяCVSS 6,8Эксплойта нетEPSS 1 %maianscriptworld · maian uploader13 янв. 2015 г.
- CVE-2014-1000521Наблюдать
Maian Uploader 4.0 allows remote attackers to obtain sensitive information via a request without the height parameter to load_flv.js.php, wh
СредняяCVSS 5,0Эксплойта нетEPSS 2 %maianscriptworld · maian uploader13 янв. 2015 г.
- CVE-2008-220217Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in Maian Uploader 4.0 allow remote attackers to inject arbitrary web script or HTML via
СредняяCVSS 4,3Proof of conceptEPSS 2 %maianscriptworld · maian uploader14 мая 2008 г.
- CVE-2014-1000717Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in Maian Weblog 4.0 and earlier allow remote attackers to inject arbitrary web script or
СредняяCVSS 4,3Эксплойта нетEPSS 1 %maianscriptworld · maian weblog13 янв. 2015 г.
- CVE-2008-220917Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in admin/inc/header.php in Maian Greeting 2.1 allow remote attackers to inject arbitrary
СредняяCVSS 4,3Эксплойта нетEPSS 1 %maianscriptworld · maian greeting14 мая 2008 г.
- CVE-2008-220017Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in Maian Weblog 4.0 allow remote attackers to inject arbitrary web script or HTML via th
СредняяCVSS 4,3Эксплойта нетEPSS 1 %maianscriptworld · maian weblog14 мая 2008 г.
- CVE-2008-220117Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in admin/inc/header.php in Maian Recipe 1.2 allow remote attackers to inject arbitrary w
СредняяCVSS 4,3Эксплойта нетEPSS 1 %maianscriptworld · maian recipe14 мая 2008 г.
- CVE-2008-220617Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in Maian Music 1.1 allow remote attackers to inject arbitrary web script or HTML via the
СредняяCVSS 4,3Эксплойта нетEPSS 1 %maianscriptworld · maian music14 мая 2008 г.
- CVE-2008-220717Наблюдать
Cross-site scripting (XSS) vulnerability in admin/index.php in Maian Gallery 2.0 allows remote attackers to inject arbitrary web script or H
СредняяCVSS 4,3Эксплойта нетEPSS 1 %maianscriptworld · maian gallery14 мая 2008 г.
- CVE-2008-221017Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in Maian Support 1.3 allow remote attackers to inject arbitrary web script or HTML via t
СредняяCVSS 4,3Эксплойта нетEPSS 1 %maianscriptworld · maian support14 мая 2008 г.
- CVE-2008-221117Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in admin/inc/footer.php in Maian Guestbook 3.2 allow remote attackers to inject arbitrar
СредняяCVSS 4,3Эксплойта нетEPSS 1 %maianscriptworld · maian guestbook14 мая 2008 г.
- CVE-2008-221317Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in admin/inc/footer.php in Maian Links 3.1 allow remote attackers to inject arbitrary we
СредняяCVSS 4,3Эксплойта нетEPSS 1 %maianscriptworld · maian links14 мая 2008 г.
- CVE-2008-221217Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in Maian Cart 1.1 allow remote attackers to inject arbitrary web script or HTML via the
СредняяCVSS 4,3Эксплойта нетEPSS 1 %maianscriptworld · maian cart14 мая 2008 г.
- CVE-2008-220417Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in admin/inc/header.php in Maian Search 1.1 allow remote attackers to inject arbitrary w
СредняяCVSS 4,3Эксплойта нетEPSS 1 %maianscriptworld · maian search14 мая 2008 г.
- CVE-2008-107517Наблюдать
Cross-site scripting (XSS) vulnerability in index.php in Maian Cart 1.1 allows remote attackers to inject arbitrary web script or HTML via t
СредняяCVSS 4,3Эксплойта нетEPSS 1 %maianscriptworld · maian cart28 февр. 2008 г.