Skip to content
Noroxi

binarymoon records

5 published records for vendor binarymoon.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Attack profile

    All records

    5 records
    • CVE-2011-4106
      34Monitor

      TimThumb (timthumb.php) before 2.0 does not validate the entire source with the domain white list, which allows remote attackers to upload a

      MediumCVSS 6.8Proof of conceptEPSS 23%

      binarymoon · timthumbOct 26, 2013

    • CVE-2014-4663
      30Monitor

      TimThumb 2.8.13 and WordThumb 1.07, when Webshot (aka Webshots) is enabled, allows remote attackers to execute arbitrary commands via shell

      MediumCVSS 6.8Proof of conceptEPSS 10%

      binarymoon · timthumbJul 15, 2014

    • CVE-2009-5142
      17Monitor

      Cross-site scripting (XSS) vulnerability in timthumb.php in TimThumb 1.09 and earlier, as used in Mimbo Pro 2.3.1 and other products, allows

      MediumCVSS 4.3No exploitEPSS 1%

      binarymoon · timthumbAug 21, 2014

    • CVE-2010-5303
      17Monitor

      Cross-site scripting (XSS) vulnerability in the displayError function in timthumb.php in TimThumb before 1.15 (r85), as used in multiple pro

      MediumCVSS 4.3No exploitEPSS 1%

      binarymoon · timthumbAug 21, 2014

    • CVE-2010-5302
      17Monitor

      Cross-site scripting (XSS) vulnerability in timthumb.php in TimThumb before 1.15 as of 20100908 (r88), as used in multiple products, allows

      MediumCVSS 4.3No exploitEPSS 1%

      binarymoon · timthumbAug 21, 2014