rapidleech records
7 published records for vendor rapidleech.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
27Monitor | CVE-2009-1090No exploit | Directory traversal vulnerability in upload.php in Rapidleech rev.36 and earlier allows remote attackers to include and execute arbitrary lorapidleech · rapidleech · CWE-22 | Medium6.8 | — | 1.5% | Mar 25, 2009 |
24Monitor | CVE-2021-4312No exploit | Th3-822 Rapidleech zip.php zip_go cross site scriptingrapidleech · rapidleech · CWE-79 | Medium6.1 | — | 0.5% | Jan 13, 2023 |
20Monitor | CVE-2009-1089No exploit | Absolute path traversal vulnerability in upload.php in Rapidleech rev.36 and earlier allows remote attackers to read arbitrary files via a brapidleech · rapidleech · CWE-22 | Medium5.0 | — | 1.3% | Mar 25, 2009 |
20Monitor | CVE-2011-3798No exploit | Rapid Leech 2.3-v42-svn322 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the inrapidleech · rapidleech · CWE-200 | Medium5.0 | — | 1.2% | Sep 23, 2011 |
17Monitor | CVE-2009-1091No exploit | Cross-site scripting (XSS) vulnerability in upload.php in Rapidleech rev.36 and earlier allows remote attackers to inject arbitrary web scrirapidleech · rapidleech · CWE-79 | Medium4.3 | — | 1.2% | Mar 25, 2009 |
17Monitor | CVE-2011-5205No exploit | Cross-site scripting (XSS) vulnerability in audl.php in Rapidleech 2.3 rev42 SVN r358, rev43 SVN r397, and earlier allows remote attackers trapidleech · rapidleech · CWE-79 | Medium4.3 | — | 1.2% | Oct 4, 2012 |
17Monitor | CVE-2011-5206No exploit | Cross-site scripting (XSS) vulnerability in notes.php in Rapidleech before 2.3 rev42 SVN r399 allows remote attackers to inject arbitrary werapidleech · rapidleech · CWE-79 | Medium4.3 | — | 1.2% | Oct 4, 2012 |
- CVE-2009-109027Monitor
Directory traversal vulnerability in upload.php in Rapidleech rev.36 and earlier allows remote attackers to include and execute arbitrary lo
MediumCVSS 6.8No exploitEPSS 1%rapidleech · rapidleechMar 25, 2009
- CVE-2021-431224Monitor
Th3-822 Rapidleech zip.php zip_go cross site scripting
MediumCVSS 6.1No exploitEPSS 1%rapidleech · rapidleechJan 13, 2023
- CVE-2009-108920Monitor
Absolute path traversal vulnerability in upload.php in Rapidleech rev.36 and earlier allows remote attackers to read arbitrary files via a b
MediumCVSS 5.0No exploitEPSS 1%rapidleech · rapidleechMar 25, 2009
- CVE-2011-379820Monitor
Rapid Leech 2.3-v42-svn322 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the in
MediumCVSS 5.0No exploitEPSS 1%rapidleech · rapidleechSep 23, 2011
- CVE-2009-109117Monitor
Cross-site scripting (XSS) vulnerability in upload.php in Rapidleech rev.36 and earlier allows remote attackers to inject arbitrary web scri
MediumCVSS 4.3No exploitEPSS 1%rapidleech · rapidleechMar 25, 2009
- CVE-2011-520517Monitor
Cross-site scripting (XSS) vulnerability in audl.php in Rapidleech 2.3 rev42 SVN r358, rev43 SVN r397, and earlier allows remote attackers t
MediumCVSS 4.3No exploitEPSS 1%rapidleech · rapidleechOct 4, 2012
- CVE-2011-520617Monitor
Cross-site scripting (XSS) vulnerability in notes.php in Rapidleech before 2.3 rev42 SVN r399 allows remote attackers to inject arbitrary we
MediumCVSS 4.3No exploitEPSS 1%rapidleech · rapidleechOct 4, 2012