getlevelten records
2 published records for vendor getlevelten.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
21Monitor | CVE-2024-6573No exploit | Intelligence <= 1.4.0 - Unauthenticated Full Path Disclosuretomdude · intelligence · CWE-200 | Medium5.3 | — | 0.4% | Jul 26, 2024 |
14Monitor | CVE-2015-6808No exploit | Cross-site scripting (XSS) vulnerability in the Spotlight module 7.x-1.x before 7.x-1.5 for Drupal allows remote authenticated users with cegetlevelten · spotlight · CWE-79 | Low3.5 | — | 0.8% | Sep 4, 2015 |
- CVE-2024-657321Monitor
Intelligence <= 1.4.0 - Unauthenticated Full Path Disclosure
MediumCVSS 5.3No exploitEPSS 0%tomdude · intelligenceJul 26, 2024
- CVE-2015-680814Monitor
Cross-site scripting (XSS) vulnerability in the Spotlight module 7.x-1.x before 7.x-1.5 for Drupal allows remote authenticated users with ce
LowCVSS 3.5No exploitEPSS 1%getlevelten · spotlightSep 4, 2015