open solution records
10 published records for vendor open solution.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 5
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
10 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2007-3138Proof of concept | Directory traversal vulnerability in index.php in Open Solution Quick.Cart 2.2 and earlier allows remote attackers to include and execute aropen solution · quick.cart | High7.5 | — | 2.9% | Jun 8, 2007 |
30Monitor | CVE-2005-1585No exploit | Multiple SQL injection vulnerabilities in Quick.Forum 2.1.6 allow remote attackers to execute arbitrary SQL commands via the (1) iCategory oopen solution · quick.forum | High7.5 | — | 1.3% | May 11, 2005 |
30Monitor | CVE-2005-1588No exploit | SQL injection vulnerability in index.php for Quick.cart 0.3.0 allows remote attackers to execute arbitrary SQL commands via the iCategory paopen solution · quick.cart | High7.5 | — | 1.2% | May 11, 2005 |
30Monitor | CVE-2007-1407No exploit | Unspecified vulnerability in OpenSolution Quick.Cart before 2.1 has unknown impact and attack vectors, related to a "low critical exploit."open solution · quick.cart | High7.5 | — | 1.0% | Mar 10, 2007 |
28Monitor | CVE-2007-3139Proof of concept | config/general.php in Quick.Cart 2.2 and earlier uses a default username and password, which allows remote attackers to access the applicatiopen solution · quick.cart | Medium6.8 | — | 3.5% | Jun 8, 2007 |
28Monitor | CVE-2006-6390Proof of concept | Multiple directory traversal vulnerabilities in Open Solution Quick.Cart 2.0, when register_globals is enabled and magic_quotes_gpc is disabopen solution · quick.cart | Medium6.8 | — | 2.1% | Dec 7, 2006 |
28Monitor | CVE-2006-6391Proof of concept | Multiple directory traversal vulnerabilities in Open Solution Quick.Cart 2.0, when register_globals is enabled and magic_quotes_gpc is disabopen solution · quick.cart | Medium6.8 | — | 2.0% | Dec 7, 2006 |
20Monitor | CVE-2005-1586No exploit | Quick.Forum 2.1.6 stores potentially sensitive information such as usernames, banned IP addresses, censored words, and backups under the webopen solution · quick.forum | Medium5.0 | — | 1.4% | May 14, 2005 |
18Monitor | CVE-2005-1587Proof of concept | Cross-site scripting (XSS) vulnerability in index.php for Quick.cart 0.3.0 allows remote attackers to inject arbitrary web script or HTML viopen solution · quick.cart | Medium4.3 | — | 1.7% | May 14, 2005 |
17Monitor | CVE-2005-1584No exploit | Cross-site scripting (XSS) vulnerability in index.php for Quick.Forum 2.1.6 allows remote attackers to inject arbitrary web script or HTML vopen solution · quick.forum | Medium4.3 | — | 1.2% | May 14, 2005 |
- CVE-2007-313831Monitor
Directory traversal vulnerability in index.php in Open Solution Quick.Cart 2.2 and earlier allows remote attackers to include and execute ar
HighCVSS 7.5Proof of conceptEPSS 3%open solution · quick.cartJun 8, 2007
- CVE-2005-158530Monitor
Multiple SQL injection vulnerabilities in Quick.Forum 2.1.6 allow remote attackers to execute arbitrary SQL commands via the (1) iCategory o
HighCVSS 7.5No exploitEPSS 1%open solution · quick.forumMay 11, 2005
- CVE-2005-158830Monitor
SQL injection vulnerability in index.php for Quick.cart 0.3.0 allows remote attackers to execute arbitrary SQL commands via the iCategory pa
HighCVSS 7.5No exploitEPSS 1%open solution · quick.cartMay 11, 2005
- CVE-2007-140730Monitor
Unspecified vulnerability in OpenSolution Quick.Cart before 2.1 has unknown impact and attack vectors, related to a "low critical exploit."
HighCVSS 7.5No exploitEPSS 1%open solution · quick.cartMar 10, 2007
- CVE-2007-313928Monitor
config/general.php in Quick.Cart 2.2 and earlier uses a default username and password, which allows remote attackers to access the applicati
MediumCVSS 6.8Proof of conceptEPSS 4%open solution · quick.cartJun 8, 2007
- CVE-2006-639028Monitor
Multiple directory traversal vulnerabilities in Open Solution Quick.Cart 2.0, when register_globals is enabled and magic_quotes_gpc is disab
MediumCVSS 6.8Proof of conceptEPSS 2%open solution · quick.cartDec 7, 2006
- CVE-2006-639128Monitor
Multiple directory traversal vulnerabilities in Open Solution Quick.Cart 2.0, when register_globals is enabled and magic_quotes_gpc is disab
MediumCVSS 6.8Proof of conceptEPSS 2%open solution · quick.cartDec 7, 2006
- CVE-2005-158620Monitor
Quick.Forum 2.1.6 stores potentially sensitive information such as usernames, banned IP addresses, censored words, and backups under the web
MediumCVSS 5.0No exploitEPSS 1%open solution · quick.forumMay 14, 2005
- CVE-2005-158718Monitor
Cross-site scripting (XSS) vulnerability in index.php for Quick.cart 0.3.0 allows remote attackers to inject arbitrary web script or HTML vi
MediumCVSS 4.3Proof of conceptEPSS 2%open solution · quick.cartMay 14, 2005
- CVE-2005-158417Monitor
Cross-site scripting (XSS) vulnerability in index.php for Quick.Forum 2.1.6 allows remote attackers to inject arbitrary web script or HTML v
MediumCVSS 4.3No exploitEPSS 1%open solution · quick.forumMay 14, 2005