Записи Webwiz
7 опубликованных записей вендора webwiz.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-264 Permissions, Privileges, and Access Controls2
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-287 Improper Authentication1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
35Наблюдать | CVE-2019-25442Эксплойта нет | Web Wiz Forums 12.01 SQL Injection via PF Parameterwebwiz · web wiz forums · CWE-89 | Высокая8,8 | — | 0,4 % | 22 февр. 2026 г. |
31Наблюдать | CVE-2006-6212Proof of concept | PHP remote file inclusion vulnerability in centre.php in Site News (site_news) 2.00, and possibly earlier, allows remote attackers to executwebwiz · site news · CWE-94 | Высокая7,5 | — | 2,4 % | 30 нояб. 2006 г. |
30Наблюдать | CVE-2005-4606Эксплойта нет | SQL injection vulnerability in check_user.asp in multiple Web Wiz products including (1) Site News 3.06 and earlier, (2) Journal 1.0 and earwebwiz · database login · CWE-89 | Высокая7,5 | — | 1,5 % | 31 дек. 2005 г. |
23Наблюдать | CVE-2004-2733Эксплойта нет | Web Wiz Forums 7.7a uses invalid logic to determine user privileges, which allows remote attackers to (1) block arbitrary IP addresses via pwebwiz · web wiz forums · CWE-264 | Средняя5,8 | — | 1,5 % | 31 дек. 2004 г. |
21Наблюдать | CVE-2008-0466Proof of concept | Web Wiz RTE_file_browser.asp in, as used in Web Wiz Rich Text Editor 4.0, Web Wiz Forums 9.07, and Web Wiz Newspad 1.02, does not require auwebwiz · web wiz forums · CWE-287 | Средняя5,0 | — | 4,9 % | 28 янв. 2008 г. |
21Наблюдать | CVE-2009-5019Proof of concept | Web Wiz NewsPad stores sensitive information under the web root with insufficient access control, which allows remote attackers to download webwiz · web wiz newspad · CWE-264 | Средняя5,0 | — | 2,7 % | 1 дек. 2010 г. |
18Наблюдать | CVE-2006-0175Proof of concept | Cross-site scripting (XSS) vulnerability in search_form.asp in Web Wiz Forums 6.34 allows remote attackers to inject arbitrary web script orwebwiz · web wiz forums · CWE-79 | Средняя4,3 | — | 3,4 % | 11 янв. 2006 г. |
- CVE-2019-2544235Наблюдать
Web Wiz Forums 12.01 SQL Injection via PF Parameter
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %webwiz · web wiz forums22 февр. 2026 г.
- CVE-2006-621231Наблюдать
PHP remote file inclusion vulnerability in centre.php in Site News (site_news) 2.00, and possibly earlier, allows remote attackers to execut
ВысокаяCVSS 7,5Proof of conceptEPSS 2 %webwiz · site news30 нояб. 2006 г.
- CVE-2005-460630Наблюдать
SQL injection vulnerability in check_user.asp in multiple Web Wiz products including (1) Site News 3.06 and earlier, (2) Journal 1.0 and ear
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %webwiz · database login31 дек. 2005 г.
- CVE-2004-273323Наблюдать
Web Wiz Forums 7.7a uses invalid logic to determine user privileges, which allows remote attackers to (1) block arbitrary IP addresses via p
СредняяCVSS 5,8Эксплойта нетEPSS 1 %webwiz · web wiz forums31 дек. 2004 г.
- CVE-2008-046621Наблюдать
Web Wiz RTE_file_browser.asp in, as used in Web Wiz Rich Text Editor 4.0, Web Wiz Forums 9.07, and Web Wiz Newspad 1.02, does not require au
СредняяCVSS 5,0Proof of conceptEPSS 5 %webwiz · web wiz forums28 янв. 2008 г.
- CVE-2009-501921Наблюдать
Web Wiz NewsPad stores sensitive information under the web root with insufficient access control, which allows remote attackers to download
СредняяCVSS 5,0Proof of conceptEPSS 3 %webwiz · web wiz newspad1 дек. 2010 г.
- CVE-2006-017518Наблюдать
Cross-site scripting (XSS) vulnerability in search_form.asp in Web Wiz Forums 6.34 allows remote attackers to inject arbitrary web script or
СредняяCVSS 4,3Proof of conceptEPSS 3 %webwiz · web wiz forums11 янв. 2006 г.