İçeriğe atla
Noroxi

xpressengine kayıtları

xpressengine üreticisine ait 5 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
2
Düzeltme kaydı olan
%40
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

5 kayıt
  • CVE-2021-26642
    39İzleyin

    XpressEngine file upload vulnerability

    KritikCVSS 9,8İstismar yokEPSS %1

    xpressengine · xpressengine20 Oca 2023

  • CVE-2011-10003
    39İzleyin

    XpressEngine Update Query sql injection

    KritikCVSS 9,8İstismar yokEPSS %1

    xpressengine · xpressengine7 Şub 2023

  • CVE-2009-4834
    28İzleyin

    lib.php in Zeroboard 4.1 pl7 allows remote attackers to execute arbitrary PHP code via a crafted parameter name, possibly related to now_con

    OrtaCVSS 6,8Kavram kanıtıEPSS %4

    xpressengine · zeroboard4 May 2010

  • CVE-2021-44911
    21İzleyin

    XE before 1.11.6 is vulnerable to Unrestricted file upload via modules/menu/menu.admin.controller.php.

    OrtaCVSS 5,4İstismar yokEPSS %1

    xpressengine · xpressengine9 Şub 2022

  • CVE-2021-44912
    21İzleyin

    In XE 1.116, when uploading the Normal button, there is no restriction on the file suffix, which leads to any file uploading to the files di

    OrtaCVSS 5,4İstismar yokEPSS %0

    xpressengine · xpressengine9 Şub 2022