İçeriğe atla
Noroxi

unify kayıtları

unify üreticisine ait 15 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
2
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

15 kayıt
  • CVE-2000-1024
    42Planlayın

    eWave ServletExec 3.0C and earlier does not restrict access to the UploadServlet Java/JSP servlet, which allows remote attackers to upload f

    KritikCVSS 10,0İstismar yokEPSS %5

    unify · ewave servletexec11 Ara 2000

  • CVE-2023-36619
    40Planlayın

    Atos Unify OpenScape Session Border Controller through V10 R3.01.03 allows execution of administrative scripts by unauthenticated users.

    KritikCVSS 9,8İstismar yokEPSS %4

    unify · session border controller4 Eki 2023

  • CVE-2014-2652
    39İzleyin

    SQL injection vulnerability in OpenScape Deployment Service (DLS) before 6.x and 7.x before R1.11.3 allows remote attackers to execute arbit

    KritikCVSS 9,8İstismar yokEPSS %1

    unify · openscape deployment service19 Mar 2018

  • CVE-2023-36618
    36İzleyin

    Atos Unify OpenScape Session Border Controller through V10 R3.01.03 allows execution of OS commands as root user by low-privileged authentic

    YüksekCVSS 8,8İstismar yokEPSS %4

    unify · session border controller4 Eki 2023

  • CVE-2023-40263
    35İzleyin

    An issue was discovered in Atos Unify OpenScape Voice Trace Manager V8 before V8 R0.9.11.

    YüksekCVSS 8,8İstismar yokEPSS %1

    unify · openscape voice trace manager8 Şub 2024

  • CVE-2014-8422
    32İzleyin

    The web-based management (WBM) interface in Unify (former Siemens) OpenStage SIP and OpenScape Desk Phone IP V3 devices before R3.32.0 gener

    YüksekCVSS 8,1İstismar yokEPSS %2

    unify · openstage sip12 Nis 2018

  • CVE-2000-0498
    31İzleyin

    Unify eWave ServletExec allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension i

    YüksekCVSS 7,5İstismar yokEPSS %2

    unify · ewave servletexec8 Haz 2000

  • CVE-2014-8421
    31İzleyin

    Unify (former Siemens) OpenStage SIP and OpenScape Desk Phone IP V3 devices before R3.32.0 allow remote attackers to gain super-user privile

    YüksekCVSS 7,5İstismar yokEPSS %2

    unify · openstage sip12 Nis 2018

  • CVE-2023-48166
    30İzleyin

    A directory traversal vulnerability in the SOAP Server integrated in Atos Unify OpenScape Voice V10 before V10R3.26.1 allows a remote attack

    YüksekCVSS 7,5İstismar yokEPSS %1

    unify · openscape voice12 Oca 2024

  • CVE-2023-40262
    24İzleyin

    An issue was discovered in Atos Unify OpenScape Voice Trace Manager V8 before V8 R0.9.11.

    OrtaCVSS 6,1İstismar yokEPSS %0

    unify · openscape voice trace manager8 Şub 2024

  • CVE-2000-1025
    23İzleyin

    eWave ServletExec JSP/Java servlet engine, versions 3.0C and earlier, allows remote attackers to cause a denial of service via a URL that co

    OrtaCVSS 5,0Kavram kanıtıEPSS %8

    unify · ewave servletexec11 Ara 2000

  • CVE-2015-8251
    23İzleyin

    OpenStage 60 and OpenScape Desk Phone IP 55G SIP V3, OpenStage 15, 20E, 20 and 40 and OpenScape Desk Phone IP 35G SIP V3, OpenScape Desk Pho

    OrtaCVSS 5,9İstismar yokEPSS %1

    unify · openstage 60 firmware25 Eyl 2017

  • CVE-2000-1114
    21İzleyin

    Unify ServletExec AS v3.0C allows remote attackers to read source code for JSP pages via an HTTP request that ends with characters such as "

    OrtaCVSS 5,0Kavram kanıtıEPSS %3

    unify · ewave servletexec9 Oca 2001

  • CVE-2014-9563
    19İzleyin

    CRLF injection vulnerability in the web-based management (WBM) interface in Unify (former Siemens) OpenStage SIP and OpenScape Desk Phone IP

    OrtaCVSS 4,9İstismar yokEPSS %1

    unify · openstage sip12 Nis 2018

  • CVE-2023-40264
    17İzleyin

    An issue was discovered in Atos Unify OpenScape Voice Trace Manager V8 before V8 R0.9.11.

    OrtaCVSS 4,3İstismar yokEPSS %0

    unify · openscape voice trace manager8 Şub 2024