Записи zoneo-soft
13 опубликованных записей вендора zoneo-soft.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 5
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
13 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
41В плане | CVE-2007-3647Эксплойта нет | The isloggedin function in Php/login.inc.php in phpTrafficA 1.4.3 and earlier allows remote attackers to bypass authentication and obtain adzoneo-soft · phptraffica | Критическая10,0 | — | 3,3 % | 10 июл. 2007 г. |
31Наблюдать | CVE-2014-8340Эксплойта нет | SQL injection vulnerability in Php/Functions/log_function.php in phpTrafficA 2.3 and earlier allows remote attackers to execute arbitrary SQzoneo-soft · phptraffica · CWE-89 | Высокая7,5 | — | 1,8 % | 16 дек. 2014 г. |
31Наблюдать | CVE-2006-0957Эксплойта нет | Direct static code injection vulnerability in func.inc.php in ZoneO-Soft freeForum before 1.2.1 allows remote attackers to execute arbitraryzoneo-soft · freeforum | Высокая7,5 | — | 1,8 % | 2 мар. 2006 г. |
30Наблюдать | CVE-2007-3427Proof of concept | SQL injection vulnerability in index.php in phpTrafficA 1.4.2 and earlier allows remote attackers to execute arbitrary SQL commands via the zoneo-soft · phptraffica | Высокая7,5 | — | 1,6 % | 26 июн. 2007 г. |
30Наблюдать | CVE-2007-0487Эксплойта нет | PHP remote file inclusion vulnerability in index.php in FreeForum 0.9.0 allows remote attackers to execute arbitrary PHP code via a URL in tzoneo-soft · freeforum | Высокая7,5 | — | 1,4 % | 24 янв. 2007 г. |
30Наблюдать | CVE-2007-3428Эксплойта нет | Multiple unspecified vulnerabilities in phpTrafficA before 1.4.2 allow remote attackers to have an unknown impact via the file parameter to zoneo-soft · phptraffica | Высокая7,5 | — | 1,3 % | 26 июн. 2007 г. |
30Наблюдать | CVE-2005-3816Proof of concept | Multiple SQL injection vulnerabilities in forum.php in freeForum 1.1 and earlier and earlier allow remote attackers to execute arbitrary SQLzoneo-soft · freeforum | Высокая7,5 | — | 1,2 % | 25 нояб. 2005 г. |
21Наблюдать | CVE-2007-3425Proof of concept | Directory traversal vulnerability in index.php in phpTrafficA 1.4.2 and earlier allows remote attackers to include arbitrary local files viazoneo-soft · phptraffica | Средняя5,0 | — | 3,1 % | 26 июн. 2007 г. |
18Наблюдать | CVE-2007-3426Proof of concept | Cross-site scripting (XSS) vulnerability in index.php in phpTrafficA 1.4.2 and earlier allows remote attackers to inject arbitrary web scripzoneo-soft · phptraffica | Средняя4,3 | — | 1,9 % | 26 июн. 2007 г. |
18Наблюдать | CVE-2015-2926Эксплойта нет | Cross-site scripting (XSS) vulnerability in Php/stats/statsRecent.inc.php in phpTrafficA 2.3 and earlier allows remote attackers to inject azoneo-soft · phptraffica · CWE-79 | Средняя4,3 | — | 1,9 % | 14 апр. 2015 г. |
17Наблюдать | CVE-2008-3566Proof of concept | Cross-site scripting (XSS) vulnerability in ZoneO-soft freeForum 1.7 allows remote attackers to inject arbitrary web script or HTML via the zoneo-soft · freeforum · CWE-79 | Средняя4,3 | — | 1,5 % | 10 авг. 2008 г. |
17Наблюдать | CVE-2006-0958Эксплойта нет | Cross-site scripting (XSS) vulnerability in func.inc.php in ZoneO-Soft freeForum before 1.2.1 allows remote attackers to inject arbitrary wezoneo-soft · freeforum | Средняя4,3 | — | 1,4 % | 2 мар. 2006 г. |
17Наблюдать | CVE-2006-7209Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in phpTrafficA before 1.2beta2 allow remote attackers to inject arbitrary web script or zoneo-soft · phptraffica | Средняя4,3 | — | 0,8 % | 26 июн. 2007 г. |
- CVE-2007-364741В плане
The isloggedin function in Php/login.inc.php in phpTrafficA 1.4.3 and earlier allows remote attackers to bypass authentication and obtain ad
КритическаяCVSS 10,0Эксплойта нетEPSS 3 %zoneo-soft · phptraffica10 июл. 2007 г.
- CVE-2014-834031Наблюдать
SQL injection vulnerability in Php/Functions/log_function.php in phpTrafficA 2.3 and earlier allows remote attackers to execute arbitrary SQ
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %zoneo-soft · phptraffica16 дек. 2014 г.
- CVE-2006-095731Наблюдать
Direct static code injection vulnerability in func.inc.php in ZoneO-Soft freeForum before 1.2.1 allows remote attackers to execute arbitrary
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %zoneo-soft · freeforum2 мар. 2006 г.
- CVE-2007-342730Наблюдать
SQL injection vulnerability in index.php in phpTrafficA 1.4.2 and earlier allows remote attackers to execute arbitrary SQL commands via the
ВысокаяCVSS 7,5Proof of conceptEPSS 2 %zoneo-soft · phptraffica26 июн. 2007 г.
- CVE-2007-048730Наблюдать
PHP remote file inclusion vulnerability in index.php in FreeForum 0.9.0 allows remote attackers to execute arbitrary PHP code via a URL in t
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %zoneo-soft · freeforum24 янв. 2007 г.
- CVE-2007-342830Наблюдать
Multiple unspecified vulnerabilities in phpTrafficA before 1.4.2 allow remote attackers to have an unknown impact via the file parameter to
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %zoneo-soft · phptraffica26 июн. 2007 г.
- CVE-2005-381630Наблюдать
Multiple SQL injection vulnerabilities in forum.php in freeForum 1.1 and earlier and earlier allow remote attackers to execute arbitrary SQL
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %zoneo-soft · freeforum25 нояб. 2005 г.
- CVE-2007-342521Наблюдать
Directory traversal vulnerability in index.php in phpTrafficA 1.4.2 and earlier allows remote attackers to include arbitrary local files via
СредняяCVSS 5,0Proof of conceptEPSS 3 %zoneo-soft · phptraffica26 июн. 2007 г.
- CVE-2007-342618Наблюдать
Cross-site scripting (XSS) vulnerability in index.php in phpTrafficA 1.4.2 and earlier allows remote attackers to inject arbitrary web scrip
СредняяCVSS 4,3Proof of conceptEPSS 2 %zoneo-soft · phptraffica26 июн. 2007 г.
- CVE-2015-292618Наблюдать
Cross-site scripting (XSS) vulnerability in Php/stats/statsRecent.inc.php in phpTrafficA 2.3 and earlier allows remote attackers to inject a
СредняяCVSS 4,3Эксплойта нетEPSS 2 %zoneo-soft · phptraffica14 апр. 2015 г.
- CVE-2008-356617Наблюдать
Cross-site scripting (XSS) vulnerability in ZoneO-soft freeForum 1.7 allows remote attackers to inject arbitrary web script or HTML via the
СредняяCVSS 4,3Proof of conceptEPSS 1 %zoneo-soft · freeforum10 авг. 2008 г.
- CVE-2006-095817Наблюдать
Cross-site scripting (XSS) vulnerability in func.inc.php in ZoneO-Soft freeForum before 1.2.1 allows remote attackers to inject arbitrary we
СредняяCVSS 4,3Эксплойта нетEPSS 1 %zoneo-soft · freeforum2 мар. 2006 г.
- CVE-2006-720917Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in phpTrafficA before 1.2beta2 allow remote attackers to inject arbitrary web script or
СредняяCVSS 4,3Эксплойта нетEPSS 1 %zoneo-soft · phptraffica26 июн. 2007 г.