punctweb records
2 published records for vendor punctweb.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
30Monitor | CVE-2006-0500No exploit | MyCO Guestbook 1.0 stores the admin directory under the web document root with insufficient access control, which allows remote attackers topunctweb · myco guestbook | High7.5 | — | 1.3% | Feb 1, 2006 |
17Monitor | CVE-2006-0501No exploit | Cross-site scripting (XSS) vulnerability in MyCO Guestbook 1.0 allows remote attackers to inject arbitrary web script or HTML via the Name fpunctweb · myco guestbook | Medium4.3 | — | 1.2% | Feb 1, 2006 |
- CVE-2006-050030Monitor
MyCO Guestbook 1.0 stores the admin directory under the web document root with insufficient access control, which allows remote attackers to
HighCVSS 7.5No exploitEPSS 1%punctweb · myco guestbookFeb 1, 2006
- CVE-2006-050117Monitor
Cross-site scripting (XSS) vulnerability in MyCO Guestbook 1.0 allows remote attackers to inject arbitrary web script or HTML via the Name f
MediumCVSS 4.3No exploitEPSS 1%punctweb · myco guestbookFeb 1, 2006