washington records
3 published records for vendor washington.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-129 Improper Validation of Array Index1
- CWE-20 Improper Input Validation1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2003-0721No exploit | Integer signedness error in rfc2231_get_param from strings.c in PINE before 4.58 allows remote attackers to execute arbitrary code via an emwashington · pine · CWE-129 | High7.5 | — | 4.0% | Sep 17, 2003 |
31Monitor | CVE-2021-36520Proof of concept | A SQL injection vulnerability in I-Tech Trainsmart r1044 exists via a evaluation/assign-evaluation?id= URI.washington · i-tech trainsmart · CWE-89 | High7.5 | — | 2.7% | Apr 16, 2023 |
19Monitor | CVE-2025-4905No exploit | iop-apl-uw basestation3 QC.py load_qc_pickl deserializationwashington · basestation · CWE-20 | Medium4.8 | — | 0.5% | May 18, 2025 |
- CVE-2003-072131Monitor
Integer signedness error in rfc2231_get_param from strings.c in PINE before 4.58 allows remote attackers to execute arbitrary code via an em
HighCVSS 7.5No exploitEPSS 4%washington · pineSep 17, 2003
- CVE-2021-3652031Monitor
A SQL injection vulnerability in I-Tech Trainsmart r1044 exists via a evaluation/assign-evaluation?id= URI.
HighCVSS 7.5Proof of conceptEPSS 3%washington · i-tech trainsmartApr 16, 2023
- CVE-2025-490519Monitor
iop-apl-uw basestation3 QC.py load_qc_pickl deserialization
MediumCVSS 4.8No exploitEPSS 0%washington · basestationMay 18, 2025