Skip to content
Noroxi

comdev records

16 published records for vendor comdev.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
13
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 18

Bar: total · dark part: CISA KEV.

All records

16 records
  • SQL Injection exists in the JomEstate PRO through 3.7 component for Joomla! via the id parameter in a task=detailed action.

    CriticalCVSS 9.8Proof of conceptEPSS 3%

    comdev · jomestate proFeb 17, 2018

  • Multiple PHP remote file inclusion vulnerabilities in Modules Builder (modbuild) 4.1 for Comdev One Admin allow remote attackers to execute

    CriticalCVSS 9.8No exploitEPSS 2%

    comdev · modules builderMay 1, 2007

  • CVE-2006-5101
    32Monitor

    PHP remote file inclusion vulnerability in include.php in Comdev CSV Importer 3.1 and possibly 4.1, as used in (1) Comdev Contact Form 3.1,

    HighCVSS 7.5No exploitEPSS 6%

    comdev · comdev csv importerOct 3, 2006

  • CVE-2006-5439
    30Monitor

    PHP remote file inclusion vulnerability in adminfoot.php in Comdev Misc Tools 4.1, when register_globals is enabled, allows remote attackers

    HighCVSS 7.5No exploitEPSS 1%

    comdev · comdev misc toolsOct 20, 2006

  • CVE-2006-5441
    30Monitor

    PHP remote file inclusion vulnerability in adminfoot.php in Comdev Web Blogger 4.1, when register_globals is enabled, allows remote attacker

    HighCVSS 7.5No exploitEPSS 1%

    comdev · comdev web bloggerOct 20, 2006

  • CVE-2006-5438
    30Monitor

    PHP remote file inclusion vulnerability in adminfoot.php in Comdev Forum 4.1, when register_globals is enabled, allows remote attackers to e

    HighCVSS 7.5No exploitEPSS 1%

    comdev · comdev forumOct 20, 2006

  • CVE-2006-5440
    30Monitor

    PHP remote file inclusion vulnerability in adminfoot.php in Comdev Form Designer 4.1, when register_globals is enabled, allows remote attack

    HighCVSS 7.5No exploitEPSS 1%

    comdev · comdev form designerOct 20, 2006

  • CVE-2007-3081
    30Monitor

    PHP remote file inclusion vulnerability in sampleecommerce.php in Comdev eCommerce 4.1 allows remote attackers to execute arbitrary PHP code

    HighCVSS 7.5No exploitEPSS 1%

    comdev · comdev ecommerceJun 6, 2007

  • CVE-2007-3084
    30Monitor

    PHP remote file inclusion vulnerability in sampleblogger.php in Comdev Web Blogger 4.1 allows remote attackers to execute arbitrary PHP code

    HighCVSS 7.5No exploitEPSS 1%

    comdev · comdev web bloggerJun 6, 2007

  • CVE-2005-3825
    30Monitor

    SQL injection vulnerability in index.php in Comdev Vote Caster 3.1 and earlier allows remote attackers to execute arbitrary SQL commands via

    HighCVSS 7.5Proof of conceptEPSS 1%

    comdev · comdev vote casterNov 25, 2005

  • CVE-2008-1872
    30Monitor

    SQL injection vulnerability in home.news.php in Comdev News Publisher 4.1.2 allows remote attackers to execute arbitrary SQL commands via th

    HighCVSS 7.5Proof of conceptEPSS 1%

    comdev · comdev news publisherApr 17, 2008

  • CVE-2006-6045
    28Monitor

    Multiple PHP remote file inclusion vulnerabilities in Comdev One Admin Pro 4.1 allow remote attackers to execute arbitrary PHP code via a UR

    MediumCVSS 6.8Proof of conceptEPSS 3%

    comdev · comdev one admin proNov 21, 2006

  • CVE-2008-6250
    27Monitor

    SQL injection vulnerability in Comdev Web Blogger 4.1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the arcmon

    MediumCVSS 6.8Proof of conceptEPSS 1%

    comdev · comdev web bloggerFeb 23, 2009

  • CVE-2005-2543
    22Monitor

    Directory traversal vulnerability in wce.download.php in Comdev eCommerce 3.0 allows remote attackers to download arbitrary files via a ..

    MediumCVSS 5.0Proof of conceptEPSS 6%

    comdev · comdev ecommerceAug 10, 2005

  • CVE-2005-2544
    20Monitor

    PHP remote file inclusion vulnerability in config.php in Comdev eCommerce 3.0 allows remote attackers to execute arbitrary PHP code via the

    MediumCVSS 5.0No exploitEPSS 1%

    comdev · comdev ecommerceAug 10, 2005

  • CVE-2005-2138
    17Monitor

    Cross-site scripting (XSS) vulnerability in index.php in Comdev eCommerce 3.0 and 3.1 allows remote attackers to inject arbitrary web script

    MediumCVSS 4.3No exploitEPSS 1%

    comdev · comdev ecommerceJul 5, 2005