Записи starface
2 опубликованных записей вендора starface.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-427 Uncontrolled Search Path Element1
- CWE-916 Use of Password Hash With Insufficient Computational Effort1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
2 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2020-10515Эксплойта нет | STARFACE UCC Client before 6.7.1.204 on WIndows allows binary planting to execute code with System rights, aka usd-2020-0006.starface · unified communication \& collaboration client · CWE-427 | Критическая9,8 | — | 2,9 % | 2 апр. 2020 г. |
33Наблюдать | CVE-2023-33243Proof of concept | RedTeam Pentesting discovered that the web interface of STARFACE as well as its REST API allows authentication using the SHA512 hash of the starface · starface · CWE-916 | Высокая8,1 | — | 4,4 % | 15 июн. 2023 г. |
- CVE-2020-1051540В плане
STARFACE UCC Client before 6.7.1.204 on WIndows allows binary planting to execute code with System rights, aka usd-2020-0006.
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %starface · unified communication \& collaboration client2 апр. 2020 г.
- CVE-2023-3324333Наблюдать
RedTeam Pentesting discovered that the web interface of STARFACE as well as its REST API allows authentication using the SHA512 hash of the
ВысокаяCVSS 8,1Proof of conceptEPSS 4 %starface · starface15 июн. 2023 г.