Перейти к содержимому
Noroxi

Записи sitos

6 опубликованных записей вендора sitos.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
3
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 19

Столбик: всего · тёмная часть: CISA KEV.

Все записи

6 записей
  • CVE-2019-15751
    40В плане

    An unrestricted file upload vulnerability in SITOS six Build v6.2.1 allows remote attackers to execute arbitrary code by uploading a SCORM f

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    sitos · sitos six7 окт. 2019 г.

  • CVE-2019-15746
    40В плане

    SITOS six Build v6.2.1 allows an attacker to inject arbitrary PHP commands.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    sitos · sitos six7 окт. 2019 г.

  • CVE-2019-15748
    39Наблюдать

    SITOS six Build v6.2.1 permits unauthorised users to upload and import a SCORM 2004 package by browsing directly to affected pages.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    sitos · sitos six7 окт. 2019 г.

  • CVE-2019-15747
    35Наблюдать

    SITOS six Build v6.2.1 allows a user with the user role of Seminar Coordinator to escalate their permission to the Systemadministrator role

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    sitos · sitos six7 окт. 2019 г.

  • CVE-2019-15749
    26Наблюдать

    SITOS six Build v6.2.1 allows a user to change their password and recovery email address without requiring them to confirm the change with t

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    sitos · sitos six7 окт. 2019 г.

  • CVE-2019-15750
    24Наблюдать

    A Cross-Site Scripting (XSS) vulnerability in the blog function in SITOS six Build v6.2.1 allows remote attackers to inject arbitrary web sc

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    sitos · sitos six7 окт. 2019 г.