x-scripts kayıtları
x-scripts üreticisine ait 4 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 4
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
4 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2006-2281İstismar yok | X-Scripts X-Poll (xpoll) 2.30 allows remote attackers to execute arbitrary PHP code by using admin/images/add.php to upload a PHP file, thenx-scripts · x-poll · CWE-94 | Yüksek7,5 | — | %2,0 | 9 May 2006 |
30İzleyin | CVE-2006-3950İstismar yok | SQL injection vulnerability in x-statistics.php in X-Scripts X-Statistics 1.20 allows remote attackers to execute arbitrary SQL commands viax-scripts · x-statistics | Yüksek7,5 | — | %1,4 | 1 Ağu 2006 |
30İzleyin | CVE-2006-3959Kavram kanıtı | SQL injection vulnerability in protect.php in X-Scripts X-Protection 1.10, with magic_quotes_gpc disabled, allows remote attackers to executx-scripts · x-statistics | Yüksek7,5 | — | %1,3 | 1 Ağu 2006 |
30İzleyin | CVE-2006-3960Kavram kanıtı | SQL injection vulnerability in top.php in X-Scripts X-Poll, probably 2.30, allows remote attackers to execute arbitrary SQL commands via thex-scripts · x-poll · CWE-89 | Yüksek7,5 | — | %1,2 | 1 Ağu 2006 |
- CVE-2006-228131İzleyin
X-Scripts X-Poll (xpoll) 2.30 allows remote attackers to execute arbitrary PHP code by using admin/images/add.php to upload a PHP file, then
YüksekCVSS 7,5İstismar yokEPSS %2x-scripts · x-poll9 May 2006
- CVE-2006-395030İzleyin
SQL injection vulnerability in x-statistics.php in X-Scripts X-Statistics 1.20 allows remote attackers to execute arbitrary SQL commands via
YüksekCVSS 7,5İstismar yokEPSS %1x-scripts · x-statistics1 Ağu 2006
- CVE-2006-395930İzleyin
SQL injection vulnerability in protect.php in X-Scripts X-Protection 1.10, with magic_quotes_gpc disabled, allows remote attackers to execut
YüksekCVSS 7,5Kavram kanıtıEPSS %1x-scripts · x-statistics1 Ağu 2006
- CVE-2006-396030İzleyin
SQL injection vulnerability in top.php in X-Scripts X-Poll, probably 2.30, allows remote attackers to execute arbitrary SQL commands via the
YüksekCVSS 7,5Kavram kanıtıEPSS %1x-scripts · x-poll1 Ağu 2006