Webbax kayıtları
webbax üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')5
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2024-33275İstismar yok | SQL injection vulnerability in Webbax supernewsletter v.1.4.21 and before allows a remote attacker to escalate privileges via the Super NewsCWE-89 | Kritik9,8 | — | %0,7 | 30 Nis 2024 |
39İzleyin | CVE-2023-31671İstismar yok | PrestaShop postfinance <= 17.1.13 is vulnerable to SQL Injection via PostfinanceValidationModuleFrontController::postProcess().webbax · postfinance · CWE-89 | Kritik9,8 | — | %0,6 | 14 Haz 2023 |
32İzleyin | CVE-2023-30198Kavram kanıtı | Prestashop winbizpayment <= 1.0.2 is vulnerable to Incorrect Access Control via modules/winbizpayment/downloads/download.php.webbax · winbizpayment · CWE-22 | Yüksek7,5 | — | %5,5 | 12 Haz 2023 |
30İzleyin | CVE-2023-30197İstismar yok | Incorrect Access Control in the module "My inventory" (myinventory) <= 1.6.6 from Webbax for PrestaShop, allows a guest to download personalwebbax · myinventory · CWE-22 | Yüksek7,5 | — | %0,7 | 30 May 2023 |
30İzleyin | CVE-2023-30199İstismar yok | Prestashop customexporter <= 1.7.20 is vulnerable to Incorrect Access Control via modules/customexporter/downloads/download.php.webbax · customexporter · CWE-22 | Yüksek7,5 | — | %0,7 | 19 May 2023 |
30İzleyin | CVE-2023-30196İstismar yok | Prestashop salesbooster <= 1.10.4 is vulnerable to Incorrect Access Control via modules/salesbooster/downloads/download.php.webbax · salesbooster · CWE-22 | Yüksek7,5 | — | %0,5 | 30 May 2023 |
30İzleyin | CVE-2024-25839İstismar yok | An issue was discovered in Webbax "Super Newsletter" (supernewsletter) module for PrestaShop versions 1.4.21 and before, allows local attackwebbax · super newsletter · CWE-200 | Yüksek7,5 | — | %0,5 | 3 Mar 2024 |
19İzleyin | CVE-2023-3031İstismar yok | Prestahop module King-Avis - Path traversalwebbax · king-avis · CWE-22 | Orta4,9 | — | %0,8 | 2 Haz 2023 |
- CVE-2024-3327539İzleyin
SQL injection vulnerability in Webbax supernewsletter v.1.4.21 and before allows a remote attacker to escalate privileges via the Super News
KritikCVSS 9,8İstismar yokEPSS %130 Nis 2024
- CVE-2023-3167139İzleyin
PrestaShop postfinance <= 17.1.13 is vulnerable to SQL Injection via PostfinanceValidationModuleFrontController::postProcess().
KritikCVSS 9,8İstismar yokEPSS %1webbax · postfinance14 Haz 2023
- CVE-2023-3019832İzleyin
Prestashop winbizpayment <= 1.0.2 is vulnerable to Incorrect Access Control via modules/winbizpayment/downloads/download.php.
YüksekCVSS 7,5Kavram kanıtıEPSS %6webbax · winbizpayment12 Haz 2023
- CVE-2023-3019730İzleyin
Incorrect Access Control in the module "My inventory" (myinventory) <= 1.6.6 from Webbax for PrestaShop, allows a guest to download personal
YüksekCVSS 7,5İstismar yokEPSS %1webbax · myinventory30 May 2023
- CVE-2023-3019930İzleyin
Prestashop customexporter <= 1.7.20 is vulnerable to Incorrect Access Control via modules/customexporter/downloads/download.php.
YüksekCVSS 7,5İstismar yokEPSS %1webbax · customexporter19 May 2023
- CVE-2023-3019630İzleyin
Prestashop salesbooster <= 1.10.4 is vulnerable to Incorrect Access Control via modules/salesbooster/downloads/download.php.
YüksekCVSS 7,5İstismar yokEPSS %0webbax · salesbooster30 May 2023
- CVE-2024-2583930İzleyin
An issue was discovered in Webbax "Super Newsletter" (supernewsletter) module for PrestaShop versions 1.4.21 and before, allows local attack
YüksekCVSS 7,5İstismar yokEPSS %0webbax · super newsletter3 Mar 2024
- CVE-2023-303119İzleyin
Prestahop module King-Avis - Path traversal
OrtaCVSS 4,9İstismar yokEPSS %1webbax · king-avis2 Haz 2023