Перейти к содержимому
Noroxi

Записи vignette

12 опубликованных записей вендора vignette.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
2
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 19

Столбик: всего · тёмная часть: CISA KEV.

Повторяющиеся классы

Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

CWE

Все записи

12 записей
  • CVE-2018-18941
    40В плане

    In Vignette Content Management version 6, it is possible to gain remote access to administrator privileges by discovering the admin password

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    vignette · content management31 янв. 2019 г.

  • CVE-2003-0398
    31Наблюдать

    Vignette StoryServer 4 and 5, and Vignette V/5 and V/6, with the SSI EXEC feature enabled, allows remote attackers to execute arbitrary code

    ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %

    vignette · content suite2 июл. 2003 г.

  • CVE-2003-0403
    31Наблюдать

    Vignette StoryServer 5 and Vignette V/5 allows remote attackers to read and modify license information, and cause a denial of service (servi

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    vignette · content suite30 июн. 2003 г.

  • CVE-2008-6412
    30Наблюдать

    Unspecified vulnerability in Vignette Content Management 7.3.0.5, 7.3.1, 7.3.1.1, 7.4, and 7.5 allows "low privileged" users to gain adminis

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    vignette · vignette content management6 мар. 2009 г.

  • CVE-2003-0399
    25Наблюдать

    Vignette StoryServer 4 and 5, Vignette V/5, and possibly other versions allows remote attackers to perform unauthorized SELECT queries by se

    СредняяCVSS 6,4Эксплойта нетEPSS 2 %

    vignette · content suite2 июл. 2003 г.

  • CVE-2003-0400
    21Наблюдать

    Vignette StoryServer and Vignette V/5 does not properly calculate the size of text variables, which causes Vignette to return unauthorized p

    СредняяCVSS 5,0Proof of conceptEPSS 3 %

    vignette · content suite30 июн. 2003 г.

  • CVE-2003-0401
    21Наблюдать

    Vignette StoryServer and Vignette V/5 allows remote attackers to obtain sensitive information via a request for the /vgn/style template.

    СредняяCVSS 5,0Эксплойта нетEPSS 2 %

    vignette · content suite30 июн. 2003 г.

  • CVE-2004-0917
    20Наблюдать

    The default installation of Vignette Application Portal installs the diagnostic utility without authentication requirements, which allows re

    СредняяCVSS 5,0Эксплойта нетEPSS 2 %

    vignette · application portal27 янв. 2005 г.

  • CVE-2003-0405
    20Наблюдать

    Vignette StoryServer 5 and Vignette V/6 allows remote attackers to execute arbitrary TCL code via (1) an HTTP query or cookie which is proce

    СредняяCVSS 5,0Эксплойта нетEPSS 2 %

    vignette · content suite30 июн. 2003 г.

  • CVE-2002-0385
    20Наблюдать

    Vignette Story Server 4.1 and 6.0 allows remote attackers to obtain sensitive information via a request that contains a large number of '"'

    СредняяCVSS 5,0Эксплойта нетEPSS 2 %

    vignette · storyserver1 июн. 2004 г.

  • CVE-2003-0402
    20Наблюдать

    The default login template (/vgn/login) in Vignette StoryServer 5 and Vignette V/5 generates different responses whether a user exists or no

    СредняяCVSS 5,0Эксплойта нетEPSS 2 %

    vignette · content suite30 июн. 2003 г.

  • CVE-2003-0404
    18Наблюдать

    Multiple Cross Site Scripting (XSS) vulnerabilities in Vignette StoryServer 4 and 5, and Vignette V/5 and V/6, allow remote attackers to ins

    СредняяCVSS 4,3Proof of conceptEPSS 2 %

    vignette · content suite30 июн. 2003 г.