willchen
5 credited records · 0 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2023-6903No exploit | Netentsec NS-ASG Application Security Gateway sql injectionnetentsec · application security gateway · CWE-89 | Critical9.8 | — | 0.7% | Dec 17, 2023 |
66This week | CVE-2023-6895Proof of concept | Hikvision Intercom Broadcasting System ping.php os command injectionhikvision · intercom broadcast system · CWE-78 | Critical9.8 | — | 89.1% | Dec 17, 2023 |
26Monitor | CVE-2023-6894No exploit | Hikvision Intercom Broadcasting System Log File system.html information disclosurehikvision · intercom broadcast system · CWE-200 | Medium6.5 | — | 1.0% | Dec 17, 2023 |
51Plan | CVE-2023-6893No exploit | Hikvision Intercom Broadcasting System exportrecord.php path traversalhikvision · intercom broadcast system · CWE-22 | High7.5 | — | 70.2% | Dec 17, 2023 |
40Plan | CVE-2023-6655Proof of concept | Hongjing e-HR Login Interface loadhistroyorgtree sql injectionhrp2000 · e-hr · CWE-89 | Critical9.8 | — | 3.7% | Dec 10, 2023 |
- CVE-2023-690339Monitor
Netentsec NS-ASG Application Security Gateway sql injection
CriticalCVSS 9.8No exploitEPSS 1%netentsec · application security gatewayDec 17, 2023
- CVE-2023-689566This week
Hikvision Intercom Broadcasting System ping.php os command injection
CriticalCVSS 9.8Proof of conceptEPSS 89%hikvision · intercom broadcast systemDec 17, 2023
- CVE-2023-689426Monitor
Hikvision Intercom Broadcasting System Log File system.html information disclosure
MediumCVSS 6.5No exploitEPSS 1%hikvision · intercom broadcast systemDec 17, 2023
- CVE-2023-689351Plan
Hikvision Intercom Broadcasting System exportrecord.php path traversal
HighCVSS 7.5No exploitEPSS 70%hikvision · intercom broadcast systemDec 17, 2023
- CVE-2023-665540Plan
Hongjing e-HR Login Interface loadhistroyorgtree sql injection
CriticalCVSS 9.8Proof of conceptEPSS 4%hrp2000 · e-hrDec 10, 2023