Перейти к содержимому
Noroxi

Записи peel

15 опубликованных записей вендора peel.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
5
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

15 записей
  • CVE-2021-37593
    38Наблюдать

    PEEL Shopping version 9.4.0 allows remote SQL injection.

    КритическаяCVSS 9,1Proof of conceptEPSS 5 %

    peel · peel shopping30 июл. 2021 г.

  • CVE-2018-20848
    35Наблюдать

    Advisto PEEL SHOPPING 9.0.0 has CSRF via en/achat/caddie_ajout.php and en/achat/caddie_affichage.php, as demonstrated by an XSS payload in t

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    peel · peel shopping30 июн. 2019 г.

  • CVE-2008-1507
    31Наблюдать

    PEEL, possibly 3.x and earlier, has (1) a default info@peel.fr account with password admin, and (2) a default contact@peel.fr account with p

    ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

    peel · peel25 мар. 2008 г.

  • CVE-2008-6892
    31Наблюдать

    SQL injection vulnerability in lire/index.php in Peel 3.1 allows remote attackers to execute arbitrary SQL commands via the rubid parameter.

    ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

    peel · peel3 авг. 2009 г.

  • CVE-2005-3572
    30Наблюдать

    SQL injection vulnerability in index.php in Peel 2.6 through 2.7 allows remote attackers to execute arbitrary SQL commands via the rubid par

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    peel · peel16 нояб. 2005 г.

  • CVE-2008-1496
    30Наблюдать

    Multiple SQL injection vulnerabilities in PEEL, possibly 3.x and earlier, allow remote attackers to execute arbitrary SQL commands via the (

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    peel · peel25 мар. 2008 г.

  • CVE-2012-5227
    30Наблюдать

    SQL injection vulnerability in administrer/tva.php in Peel SHOPPING 2.8 and 2.9 allows remote attackers to execute arbitrary SQL commands vi

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    peel · peel shopping1 окт. 2012 г.

  • CVE-2008-1495
    27Наблюдать

    Unrestricted file upload vulnerability in administrer/produits.php in PEEL, possibly 3.x and earlier, allows remote authenticated administra

    СредняяCVSS 6,5Proof of conceptEPSS 2 %

    peel · peel25 мар. 2008 г.

  • CVE-2021-41672
    26Наблюдать

    PEEL Shopping CMS 9.4.0 is vulnerable to authenticated SQL injection in utilisateurs.php.

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    peel · peel shopping15 июн. 2022 г.

  • CVE-2019-20178
    26Наблюдать

    Advisto PEEL Shopping 9.2.1 has CSRF via administrer/utilisateurs.php to delete a user.

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    peel · peel shopping9 янв. 2020 г.

  • CVE-2008-1506
    21Наблюдать

    PEEL, possibly 3.x and earlier, allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls

    СредняяCVSS 5,0Proof of conceptEPSS 2 %

    peel · peel25 мар. 2008 г.

  • CVE-2002-2134
    21Наблюдать

    haut.php in PEEL 1.0b allows remote attackers to execute arbitrary PHP code by modifying the dirroot parameter to reference a URL on a remot

    СредняяCVSS 5,0Proof of conceptEPSS 2 %

    peel · peel31 дек. 2002 г.

  • CVE-2021-27190
    21Наблюдать

    A Stored Cross Site Scripting(XSS) Vulnerability was discovered in PEEL SHOPPING 9.3.0 and 9.4.0, which are publicly available.

    СредняяCVSS 5,4Proof of conceptEPSS 2 %

    peel · peel shopping11 февр. 2021 г.

  • CVE-2018-1000887
    19Наблюдать

    Peel shopping peel-shopping_9_1_0 version contains a Cross Site Scripting (XSS) vulnerability that can result in an authenticated user injec

    СредняяCVSS 4,8Эксплойта нетEPSS 1 %

    peel · peel shopping28 дек. 2018 г.

  • CVE-2012-5226
    17Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in Peel SHOPPING 2.8 and 2.9 allow remote attackers to inject arbitrary web script or HT

    СредняяCVSS 4,3Proof of conceptEPSS 2 %

    peel · peel shopping1 окт. 2012 г.