İçeriğe atla
Noroxi

Zomplog kayıtları

zomplog üreticisine ait 8 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
2
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Yıllara göre kayıt

    Çubuk: toplam · koyu kısım: CISA KEV.

    Tekrar eden sınıflar

    Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.

    CWE

    Tüm kayıtlar

    8 kayıt
    • CVE-2007-2157
      32İzleyin

      Directory traversal vulnerability in upload/force_download.php in Zomplog 3.8 allows remote attackers to read arbitrary files via a ..

      YüksekCVSS 7,8Kavram kanıtıEPSS %4

      zomplog · zomplog19 Nis 2007

    • CVE-2007-5230
      31İzleyin

      admin/upload_files.php in Zomplog 3.8.1 and earlier does not check for administrative credentials, which allows remote attackers to perform

      YüksekCVSS 7,5Kavram kanıtıEPSS %5

      zomplog · zomplog5 Eki 2007

    • CVE-2007-2773
      31İzleyin

      SQL injection vulnerability in plugins/mp3playlist/mp3playlist.php in Zomplog 3.8 and earlier allows remote attackers to execute arbitrary S

      YüksekCVSS 7,5Kavram kanıtıEPSS %2

      zomplog · zomplog21 May 2007

    • CVE-2005-3309
      30İzleyin

      Multiple SQL injection vulnerabilities in Zomplog 3.4 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in d

      YüksekCVSS 7,5İstismar yokEPSS %1

      zomplog · zomplog25 Eki 2005

    • CVE-2007-1524
      21İzleyin

      Directory traversal vulnerability in themes/default/ in ZomPlog 3.7.6 and earlier allows remote attackers to include arbitrary local files v

      OrtaCVSS 5,0Kavram kanıtıEPSS %3

      zomplog · zomplog20 Mar 2007

    • CVE-2007-5231
      19İzleyin

      Unrestricted file upload vulnerability in admin/upload_files.php in Zomplog 3.8.1 and earlier allows remote authenticated administrators to

      OrtaCVSS 4,6Kavram kanıtıEPSS %2

      zomplog · zomplog5 Eki 2007

    • CVE-2005-3308
      18İzleyin

      Multiple cross-site scripting (XSS) vulnerabilities in Zomplog 3.4 allow remote attackers to inject arbitrary web script or HTML via the (1)

      OrtaCVSS 4,3Kavram kanıtıEPSS %2

      zomplog · zomplog25 Eki 2005

    • CVE-2007-5278
      18İzleyin

      Zomplog 3.8.1 and earlier stores potentially sensitive information under the web root with insufficient access control, which allows remote

      OrtaCVSS 4,3Kavram kanıtıEPSS %2

      zomplog · zomplog8 Eki 2007