native-php-cms project kayıtları
native-php-cms project üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')3
- CWE-1392 Use of Default Credentials1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2021-36503İstismar yok | SQL injection vulnerability in native-php-cms 1.0 allows remote attackers to run arbitrary SQL commands via the cat parameter to /list.php fnative-php-cms project · native-php-cms · CWE-89 | Kritik9,8 | — | %0,9 | 3 Şub 2023 |
27İzleyin | CVE-2025-0482İstismar yok | Fanli2012 native-php-cms user_recoverpwd.php default credentialsnative-php-cms project · native-php-cms · CWE-1392 | Orta6,9 | — | %0,6 | 15 Oca 2025 |
21İzleyin | CVE-2025-0490İstismar yok | Fanli2012 native-php-cms article_dodel.php sql injectionnative-php-cms project · native-php-cms · CWE-74 | Orta5,3 | — | %0,6 | 15 Oca 2025 |
21İzleyin | CVE-2025-0488İstismar yok | Fanli2012 native-php-cms product_list.php sql injectionnative-php-cms project · native-php-cms · CWE-74 | Orta5,3 | — | %0,5 | 15 Oca 2025 |
21İzleyin | CVE-2025-0489İstismar yok | Fanli2012 native-php-cms friendlink_dodel.php sql injectionnative-php-cms project · native-php-cms · CWE-74 | Orta5,3 | — | %0,5 | 15 Oca 2025 |
21İzleyin | CVE-2025-0483İstismar yok | Fanli2012 native-php-cms jump.php cross site scriptingnative-php-cms project · native-php-cms · CWE-79 | Orta5,3 | — | %0,3 | 15 Oca 2025 |
- CVE-2021-3650339İzleyin
SQL injection vulnerability in native-php-cms 1.0 allows remote attackers to run arbitrary SQL commands via the cat parameter to /list.php f
KritikCVSS 9,8İstismar yokEPSS %1native-php-cms project · native-php-cms3 Şub 2023
- CVE-2025-048227İzleyin
Fanli2012 native-php-cms user_recoverpwd.php default credentials
OrtaCVSS 6,9İstismar yokEPSS %1native-php-cms project · native-php-cms15 Oca 2025
- CVE-2025-049021İzleyin
Fanli2012 native-php-cms article_dodel.php sql injection
OrtaCVSS 5,3İstismar yokEPSS %1native-php-cms project · native-php-cms15 Oca 2025
- CVE-2025-048821İzleyin
Fanli2012 native-php-cms product_list.php sql injection
OrtaCVSS 5,3İstismar yokEPSS %0native-php-cms project · native-php-cms15 Oca 2025
- CVE-2025-048921İzleyin
Fanli2012 native-php-cms friendlink_dodel.php sql injection
OrtaCVSS 5,3İstismar yokEPSS %0native-php-cms project · native-php-cms15 Oca 2025
- CVE-2025-048321İzleyin
Fanli2012 native-php-cms jump.php cross site scripting
OrtaCVSS 5,3İstismar yokEPSS %0native-php-cms project · native-php-cms15 Oca 2025