tim-solutions kayıtları
tim-solutions üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-266 Incorrect Privilege Assignment2
- CWE-288 Authentication Bypass Using an Alternate Path or Channel1
- CWE-564 SQL Injection: Hibernate1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
26İzleyin | CVE-2025-67278İstismar yok | An issue in TIM Solution GmbH TIM BPM Suite & TIM FLOW before v.9.1.2 allows a remote attacker to escalate privileges via a crafted HTTP reqtim-solutions · tim flow · CWE-266 | Orta6,5 | — | %0,3 | 9 Oca 2026 |
21İzleyin | CVE-2025-67279İstismar yok | An issue in TIM Solution GmbH TIM BPM Suite & TIM FLOW before v.9.1.2 allows a remote attacker to escalate privileges via the application sttim-solutions · tim flow · CWE-266 | Orta5,3 | — | %0,4 | 9 Oca 2026 |
21İzleyin | CVE-2025-67280İstismar yok | In TIM BPM Suite/ TIM FLOW through 9.1.2 multiple Hibernate Query Language injection vulnerabilities exist which allow a low privileged usertim-solutions · tim flow · CWE-564 | Orta5,4 | — | %0,2 | 9 Oca 2026 |
21İzleyin | CVE-2025-67282İstismar yok | In TIM BPM Suite/ TIM FLOW through 9.1.2 multiple Authorization Bypass vulnerabilities exists which allow a low privileged user to download tim-solutions · tim flow · CWE-288 | Orta5,4 | — | %0,2 | 9 Oca 2026 |
21İzleyin | CVE-2025-67281İstismar yok | In TIM BPM Suite/ TIM FLOW through 9.1.2 multiple SQL injection vulnerabilities exists which allow a low privileged and administrative user tim-solutions · tim flow · CWE-89 | Orta5,4 | — | %0,2 | 9 Oca 2026 |
- CVE-2025-6727826İzleyin
An issue in TIM Solution GmbH TIM BPM Suite & TIM FLOW before v.9.1.2 allows a remote attacker to escalate privileges via a crafted HTTP req
OrtaCVSS 6,5İstismar yokEPSS %0tim-solutions · tim flow9 Oca 2026
- CVE-2025-6727921İzleyin
An issue in TIM Solution GmbH TIM BPM Suite & TIM FLOW before v.9.1.2 allows a remote attacker to escalate privileges via the application st
OrtaCVSS 5,3İstismar yokEPSS %0tim-solutions · tim flow9 Oca 2026
- CVE-2025-6728021İzleyin
In TIM BPM Suite/ TIM FLOW through 9.1.2 multiple Hibernate Query Language injection vulnerabilities exist which allow a low privileged user
OrtaCVSS 5,4İstismar yokEPSS %0tim-solutions · tim flow9 Oca 2026
- CVE-2025-6728221İzleyin
In TIM BPM Suite/ TIM FLOW through 9.1.2 multiple Authorization Bypass vulnerabilities exists which allow a low privileged user to download
OrtaCVSS 5,4İstismar yokEPSS %0tim-solutions · tim flow9 Oca 2026
- CVE-2025-6728121İzleyin
In TIM BPM Suite/ TIM FLOW through 9.1.2 multiple SQL injection vulnerabilities exists which allow a low privileged and administrative user
OrtaCVSS 5,4İstismar yokEPSS %0tim-solutions · tim flow9 Oca 2026