Skip to content
Noroxi

isweb records

3 published records for vendor isweb.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

3 records
  • CMS ISWEB 3.5.3 is vulnerable to multiple SQL injection flaws.

    CriticalCVSS 9.8No exploitEPSS 3%

    isweb · iswebSep 27, 2018

  • CMS ISWEB 3.5.3 is vulnerable to directory traversal and local file download, as demonstrated by moduli/downloadFile.php?file=oggetto_docume

    CriticalCVSS 9.8No exploitEPSS 2%

    isweb · iswebSep 27, 2018

  • CMS ISWEB 3.5.3 has XSS via the ordineRis, sezioneRicerca, or oggettiRicerca parameter to index.php.

    MediumCVSS 6.1No exploitEPSS 1%

    isweb · iswebAug 29, 2018