Записи yuba
7 опубликованных записей вендора yuba.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-601 URL Redirection to Untrusted Site ('Open Redirect')1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
35Наблюдать | CVE-2022-34937Эксплойта нет | Yuba u5cms v8.3.5 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component savepage.php.yuba · u5cms · CWE-352 | Высокая8,8 | — | 0,8 % | 2 авг. 2022 г. |
31Наблюдать | CVE-2015-1576Proof of concept | Multiple SQL injection vulnerabilities in u5CMS before 3.9.4 allow remote attackers to execute arbitrary SQL commands via the name parameteryuba · u5cms · CWE-89 | Высокая7,5 | — | 2,1 % | 11 февр. 2015 г. |
27Наблюдать | CVE-2015-1577Proof of concept | Directory traversal vulnerability in u5admin/deletefile.php in u5CMS before 3.9.4 allows remote attackers to write to arbitrary files via a yuba · u5cms · CWE-22 | Средняя6,4 | — | 7,3 % | 11 февр. 2015 г. |
25Наблюдать | CVE-2015-1578Proof of concept | Multiple open redirect vulnerabilities in u5CMS before 3.9.4 allow remote attackers to redirect users to arbitrary web sites and conduct phiyuba · u5cms | Средняя5,8 | — | 7,2 % | 11 февр. 2015 г. |
25Наблюдать | CVE-2022-32444Proof of concept | An issue was discovered in u5cms verion 8.3.5 There is a URL redirection vulnerability that can cause a user's browser to be redirected to ayuba · u5cms · CWE-601 | Средняя6,1 | — | 2,4 % | 17 июн. 2022 г. |
24Наблюдать | CVE-2022-32442Эксплойта нет | u5cms version 8.3.5 is vulnerable to Cross Site Scripting (XSS).yuba · u5cms · CWE-79 | Средняя6,1 | — | 0,8 % | 17 июн. 2022 г. |
18Наблюдать | CVE-2015-1575Proof of concept | Multiple cross-site scripting (XSS) vulnerabilities in u5CMS before 3.9.4 allow remote attackers to inject arbitrary web script or HTML via yuba · u5cms · CWE-79 | Средняя4,3 | — | 3,3 % | 11 февр. 2015 г. |
- CVE-2022-3493735Наблюдать
Yuba u5cms v8.3.5 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component savepage.php.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %yuba · u5cms2 авг. 2022 г.
- CVE-2015-157631Наблюдать
Multiple SQL injection vulnerabilities in u5CMS before 3.9.4 allow remote attackers to execute arbitrary SQL commands via the name parameter
ВысокаяCVSS 7,5Proof of conceptEPSS 2 %yuba · u5cms11 февр. 2015 г.
- CVE-2015-157727Наблюдать
Directory traversal vulnerability in u5admin/deletefile.php in u5CMS before 3.9.4 allows remote attackers to write to arbitrary files via a
СредняяCVSS 6,4Proof of conceptEPSS 7 %yuba · u5cms11 февр. 2015 г.
- CVE-2015-157825Наблюдать
Multiple open redirect vulnerabilities in u5CMS before 3.9.4 allow remote attackers to redirect users to arbitrary web sites and conduct phi
СредняяCVSS 5,8Proof of conceptEPSS 7 %yuba · u5cms11 февр. 2015 г.
- CVE-2022-3244425Наблюдать
An issue was discovered in u5cms verion 8.3.5 There is a URL redirection vulnerability that can cause a user's browser to be redirected to a
СредняяCVSS 6,1Proof of conceptEPSS 2 %yuba · u5cms17 июн. 2022 г.
- CVE-2022-3244224Наблюдать
u5cms version 8.3.5 is vulnerable to Cross Site Scripting (XSS).
СредняяCVSS 6,1Эксплойта нетEPSS 1 %yuba · u5cms17 июн. 2022 г.
- CVE-2015-157518Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in u5CMS before 3.9.4 allow remote attackers to inject arbitrary web script or HTML via
СредняяCVSS 4,3Proof of conceptEPSS 3 %yuba · u5cms11 февр. 2015 г.