Skip to content
Noroxi

nocc records

6 published records for vendor nocc.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    6 records
    • CVE-2006-0892
      31Monitor

      NOCC Webmail 1.0 stores e-mail attachments in temporary files with predictable filenames, which makes it easier for remote attackers to exec

      HighCVSS 7.5No exploitEPSS 4%

      nocc · noccFeb 25, 2006

    • CVE-2006-0891
      23Monitor

      Multiple directory traversal vulnerabilities in NOCC Webmail 1.0 allow remote attackers to include arbitrary files via ..

      MediumCVSS 5.0Proof of conceptEPSS 8%

      nocc · noccFeb 25, 2006

    • CVE-2006-0893
      21Monitor

      NOCC Webmail 1.0 allows remote attackers to obtain sensitive information via a direct request to (1) the profiles directory, which leaks e-m

      MediumCVSS 5.0No exploitEPSS 2%

      nocc · noccFeb 25, 2006

    • CVE-2006-0895
      21Monitor

      NOCC Webmail 1.0 allows remote attackers to obtain the installation path via a direct request to html/header.php.

      MediumCVSS 5.0No exploitEPSS 2%

      nocc · noccFeb 25, 2006

    • CVE-2006-0894
      18Monitor

      Multiple cross-site scripting (XSS) vulnerabilities in NOCC Webmail 1.0 allow remote attackers to inject arbitrary web script or HTML via (1

      MediumCVSS 4.3Proof of conceptEPSS 3%

      nocc · noccFeb 25, 2006

    • CVE-2002-2343
      17Monitor

      Cross-site scripting (XSS) vulnerability in NOCC 0.9 through 0.9.5 allows remote attackers to inject arbitrary web script or HTML via email

      MediumCVSS 4.3Proof of conceptEPSS 2%

      nocc · noccDec 31, 2002