Skip to content
Noroxi

daverave records

2 published records for vendor daverave.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      Attack profile

      All records

      2 records
      • CVE-2006-1200
        31Monitor

        Direct static code injection vulnerability in add_link.txt in daverave Link Bank allows remote attackers to execute arbitrary PHP code via t

        HighCVSS 7.5No exploitEPSS 2%

        daverave · link bankMar 13, 2006

      • CVE-2006-1199
        18Monitor

        Cross-site scripting (XSS) vulnerability in iframe.php in daverave Link Bank allows remote attackers to inject arbitrary web script or HTML

        MediumCVSS 4.3Proof of conceptEPSS 2%

        daverave · link bankMar 13, 2006