Записи nocc
6 опубликованных записей вендора nocc.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
31Наблюдать | CVE-2006-0892Эксплойта нет | NOCC Webmail 1.0 stores e-mail attachments in temporary files with predictable filenames, which makes it easier for remote attackers to execnocc · nocc | Высокая7,5 | — | 3,9 % | 25 февр. 2006 г. |
23Наблюдать | CVE-2006-0891Proof of concept | Multiple directory traversal vulnerabilities in NOCC Webmail 1.0 allow remote attackers to include arbitrary files via ..nocc · nocc | Средняя5,0 | — | 8,5 % | 25 февр. 2006 г. |
21Наблюдать | CVE-2006-0893Эксплойта нет | NOCC Webmail 1.0 allows remote attackers to obtain sensitive information via a direct request to (1) the profiles directory, which leaks e-mnocc · nocc | Средняя5,0 | — | 1,8 % | 25 февр. 2006 г. |
21Наблюдать | CVE-2006-0895Эксплойта нет | NOCC Webmail 1.0 allows remote attackers to obtain the installation path via a direct request to html/header.php.nocc · nocc | Средняя5,0 | — | 1,7 % | 25 февр. 2006 г. |
18Наблюдать | CVE-2006-0894Proof of concept | Multiple cross-site scripting (XSS) vulnerabilities in NOCC Webmail 1.0 allow remote attackers to inject arbitrary web script or HTML via (1nocc · nocc | Средняя4,3 | — | 2,7 % | 25 февр. 2006 г. |
17Наблюдать | CVE-2002-2343Proof of concept | Cross-site scripting (XSS) vulnerability in NOCC 0.9 through 0.9.5 allows remote attackers to inject arbitrary web script or HTML via email nocc · nocc · CWE-79 | Средняя4,3 | — | 1,6 % | 31 дек. 2002 г. |
- CVE-2006-089231Наблюдать
NOCC Webmail 1.0 stores e-mail attachments in temporary files with predictable filenames, which makes it easier for remote attackers to exec
ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %nocc · nocc25 февр. 2006 г.
- CVE-2006-089123Наблюдать
Multiple directory traversal vulnerabilities in NOCC Webmail 1.0 allow remote attackers to include arbitrary files via ..
СредняяCVSS 5,0Proof of conceptEPSS 8 %nocc · nocc25 февр. 2006 г.
- CVE-2006-089321Наблюдать
NOCC Webmail 1.0 allows remote attackers to obtain sensitive information via a direct request to (1) the profiles directory, which leaks e-m
СредняяCVSS 5,0Эксплойта нетEPSS 2 %nocc · nocc25 февр. 2006 г.
- CVE-2006-089521Наблюдать
NOCC Webmail 1.0 allows remote attackers to obtain the installation path via a direct request to html/header.php.
СредняяCVSS 5,0Эксплойта нетEPSS 2 %nocc · nocc25 февр. 2006 г.
- CVE-2006-089418Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in NOCC Webmail 1.0 allow remote attackers to inject arbitrary web script or HTML via (1
СредняяCVSS 4,3Proof of conceptEPSS 3 %nocc · nocc25 февр. 2006 г.
- CVE-2002-234317Наблюдать
Cross-site scripting (XSS) vulnerability in NOCC 0.9 through 0.9.5 allows remote attackers to inject arbitrary web script or HTML via email
СредняяCVSS 4,3Proof of conceptEPSS 2 %nocc · nocc31 дек. 2002 г.