İçeriğe atla
Noroxi

quickbox kayıtları

quickbox üreticisine ait 5 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

5 kayıt
  • CVE-2020-13448
    40Planlayın

    QuickBox Community Edition through 2.5.5 and Pro Edition through 2.1.8 allows an authenticated remote attacker to execute code on the server

    YüksekCVSS 8,8Kavram kanıtıEPSS %17

    quickbox · quickbox1 Haz 2020

  • CVE-2021-44981
    36İzleyin

    In QuickBox Pro v2.5.8 and below, the config.php file has a variable which takes a GET parameter value and parses it into a shell_exec('');

    YüksekCVSS 8,8İstismar yokEPSS %4

    quickbox · quickbox24 Oca 2022

  • CVE-2020-13694
    36İzleyin

    In QuickBox Community Edition through 2.5.5 and Pro Edition through 2.1.8, the local www-data user can execute sudo mysql without a password

    YüksekCVSS 8,8İstismar yokEPSS %2

    quickbox · quickbox1 Haz 2020

  • CVE-2020-13695
    29İzleyin

    In QuickBox Community Edition through 2.5.5 and Pro Edition through 2.1.8, the local www-data user has sudo privileges to execute grep as ro

    YüksekCVSS 7,2İstismar yokEPSS %2

    quickbox · quickbox1 Haz 2020

  • CVE-2021-45281
    24İzleyin

    QuickBox Pro v2.4.8 contains a cross-site scripting (XSS) vulnerability at "adminuseredit.php?usertoedit=XSS", as the user supplied input fo

    OrtaCVSS 6,1İstismar yokEPSS %1

    quickbox · quickbox7 Şub 2022