Записи sepcity
4 опубликованных записей вендора sepcity.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')3
- CWE-312 Cleartext Storage of Sensitive Information1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
4 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
31Наблюдать | CVE-2008-6157Proof of concept | SepCity Classified Ads stores the admin password in cleartext in data/classifieds.mdb, which allows context-dependent attackers to obtain sesepcity · classified ads · CWE-312 | Высокая7,5 | — | 3,0 % | 17 февр. 2009 г. |
30Наблюдать | CVE-2008-6150Proof of concept | SQL injection vulnerability in classdis.asp in SepCity Classified Ads allows remote attackers to execute arbitrary SQL commands via the ID psepcity · classified ads · CWE-89 | Высокая7,5 | — | 1,0 % | 16 февр. 2009 г. |
30Наблюдать | CVE-2008-6151Proof of concept | SQL injection vulnerability in shpdetails.asp in SepCity Shopping Mall allows remote attackers to execute arbitrary SQL commands via the ID sepcity · shopping mall · CWE-89 | Высокая7,5 | — | 1,0 % | 16 февр. 2009 г. |
30Наблюдать | CVE-2008-6152Proof of concept | SQL injection vulnerability in deptdisplay.asp in SepCity Faculty Portal allows remote attackers to execute arbitrary SQL commands via the Isepcity · faculty portal · CWE-89 | Высокая7,5 | — | 1,0 % | 16 февр. 2009 г. |
- CVE-2008-615731Наблюдать
SepCity Classified Ads stores the admin password in cleartext in data/classifieds.mdb, which allows context-dependent attackers to obtain se
ВысокаяCVSS 7,5Proof of conceptEPSS 3 %sepcity · classified ads17 февр. 2009 г.
- CVE-2008-615030Наблюдать
SQL injection vulnerability in classdis.asp in SepCity Classified Ads allows remote attackers to execute arbitrary SQL commands via the ID p
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %sepcity · classified ads16 февр. 2009 г.
- CVE-2008-615130Наблюдать
SQL injection vulnerability in shpdetails.asp in SepCity Shopping Mall allows remote attackers to execute arbitrary SQL commands via the ID
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %sepcity · shopping mall16 февр. 2009 г.
- CVE-2008-615230Наблюдать
SQL injection vulnerability in deptdisplay.asp in SepCity Faculty Portal allows remote attackers to execute arbitrary SQL commands via the I
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %sepcity · faculty portal16 февр. 2009 г.