pwsphp kayıtları
pwsphp üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 5
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2005-1511İstismar yok | PwsPHP 1.2.2 allows remote attackers to bypass authentication and post arbitrary comments via the Pseudo cookie.pwsphp · pwsphp | Yüksek7,5 | — | %1,7 | 11 May 2005 |
30İzleyin | CVE-2005-1512İstismar yok | The Admin panel in PwsPHP 1.2.2 does not properly verify uploaded picture files, which allows remote attackers to upload and possibly executpwsphp · pwsphp | Yüksek7,5 | — | %1,5 | 11 May 2005 |
30İzleyin | CVE-2005-1510İstismar yok | PwsPHP 1.2.2 allows remote attackers to obtain sensitive information via a direct request to the admin directory, which reveals the path in pwsphp · pwsphp | Yüksek7,5 | — | %1,5 | 11 May 2005 |
30İzleyin | CVE-2006-0943Kavram kanıtı | SQL injection vulnerability in the sondages module in index.php in PwsPHP 1.2.3 allows remote attackers to execute arbitrary SQL commands vipwsphp · pwsphp | Yüksek7,5 | — | %1,3 | 28 Şub 2006 |
30İzleyin | CVE-2005-1509İstismar yok | SQL injection vulnerability in profil.php in PwsPHP 1.2.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.pwsphp · pwsphp | Yüksek7,5 | — | %1,2 | 11 May 2005 |
30İzleyin | CVE-2006-0668Kavram kanıtı | SQL injection vulnerability in index.php in PwsPHP 1.2.3 allows remote attackers to execute arbitrary SQL commands via the id parameter, pospwsphp · pwsphp | Yüksek7,5 | — | %1,2 | 13 Şub 2006 |
30İzleyin | CVE-2006-0942Kavram kanıtı | SQL injection vulnerability in profil.php in PwsPHP 1.2.3, and possibly earlier versions, allows remote attackers to execute arbitrary SQL cpwsphp · pwsphp | Yüksek7,5 | — | %1,1 | 28 Şub 2006 |
28İzleyin | CVE-2005-1508İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in PwsPHP 1.2.2 allow remote attackers to inject arbitrary web script or HTML via the (1pwsphp · pwsphp | Orta6,8 | — | %1,9 | 11 May 2005 |
- CVE-2005-151131İzleyin
PwsPHP 1.2.2 allows remote attackers to bypass authentication and post arbitrary comments via the Pseudo cookie.
YüksekCVSS 7,5İstismar yokEPSS %2pwsphp · pwsphp11 May 2005
- CVE-2005-151230İzleyin
The Admin panel in PwsPHP 1.2.2 does not properly verify uploaded picture files, which allows remote attackers to upload and possibly execut
YüksekCVSS 7,5İstismar yokEPSS %2pwsphp · pwsphp11 May 2005
- CVE-2005-151030İzleyin
PwsPHP 1.2.2 allows remote attackers to obtain sensitive information via a direct request to the admin directory, which reveals the path in
YüksekCVSS 7,5İstismar yokEPSS %2pwsphp · pwsphp11 May 2005
- CVE-2006-094330İzleyin
SQL injection vulnerability in the sondages module in index.php in PwsPHP 1.2.3 allows remote attackers to execute arbitrary SQL commands vi
YüksekCVSS 7,5Kavram kanıtıEPSS %1pwsphp · pwsphp28 Şub 2006
- CVE-2005-150930İzleyin
SQL injection vulnerability in profil.php in PwsPHP 1.2.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.
YüksekCVSS 7,5İstismar yokEPSS %1pwsphp · pwsphp11 May 2005
- CVE-2006-066830İzleyin
SQL injection vulnerability in index.php in PwsPHP 1.2.3 allows remote attackers to execute arbitrary SQL commands via the id parameter, pos
YüksekCVSS 7,5Kavram kanıtıEPSS %1pwsphp · pwsphp13 Şub 2006
- CVE-2006-094230İzleyin
SQL injection vulnerability in profil.php in PwsPHP 1.2.3, and possibly earlier versions, allows remote attackers to execute arbitrary SQL c
YüksekCVSS 7,5Kavram kanıtıEPSS %1pwsphp · pwsphp28 Şub 2006
- CVE-2005-150828İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in PwsPHP 1.2.2 allow remote attackers to inject arbitrary web script or HTML via the (1
OrtaCVSS 6,8İstismar yokEPSS %2pwsphp · pwsphp11 May 2005