snoopy records
5 published records for vendor snoopy.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 4
- With a fix record
- 80%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')3
- CWE-20 Improper Input Validation1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2014-5009No exploit | Snoopy allows remote attackers to execute arbitrary commands.snoopy · snoopy · CWE-77 | Critical9.8 | — | 4.7% | Mar 31, 2017 |
40Plan | CVE-2008-7313No exploit | The _httpsrequest function in Snoopy allows remote attackers to execute arbitrary commands.snoopy · snoopy · CWE-77 | Critical9.8 | — | 4.5% | Mar 31, 2017 |
40Plan | CVE-2014-5008No exploit | Snoopy allows remote attackers to execute arbitrary commands.snoopy · snoopy · CWE-77 | Critical9.8 | — | 4.1% | Mar 31, 2017 |
35Monitor | CVE-2005-3330Proof of concept | The _httpsrequest function in Snoopy 1.2, as used in products such as (1) MagpieRSS, (2) WordPress, (3) Ampache, and (4) Jinzora, allows remsnoopy · snoopy · CWE-20 | High7.5 | — | 17.2% | Oct 27, 2005 |
17Monitor | CVE-2009-0502No exploit | Cross-site scripting (XSS) vulnerability in blocks/html/block_html.php in Snoopy 1.2.3, as used in Moodle 1.6 before 1.6.9, 1.7 before 1.7.7snoopy · snoopy · CWE-79 | Medium4.3 | — | 1.3% | Feb 9, 2009 |
- CVE-2014-500940Plan
Snoopy allows remote attackers to execute arbitrary commands.
CriticalCVSS 9.8No exploitEPSS 5%snoopy · snoopyMar 31, 2017
- CVE-2008-731340Plan
The _httpsrequest function in Snoopy allows remote attackers to execute arbitrary commands.
CriticalCVSS 9.8No exploitEPSS 5%snoopy · snoopyMar 31, 2017
- CVE-2014-500840Plan
Snoopy allows remote attackers to execute arbitrary commands.
CriticalCVSS 9.8No exploitEPSS 4%snoopy · snoopyMar 31, 2017
- CVE-2005-333035Monitor
The _httpsrequest function in Snoopy 1.2, as used in products such as (1) MagpieRSS, (2) WordPress, (3) Ampache, and (4) Jinzora, allows rem
HighCVSS 7.5Proof of conceptEPSS 17%snoopy · snoopyOct 27, 2005
- CVE-2009-050217Monitor
Cross-site scripting (XSS) vulnerability in blocks/html/block_html.php in Snoopy 1.2.3, as used in Moodle 1.6 before 1.6.9, 1.7 before 1.7.7
MediumCVSS 4.3No exploitEPSS 1%snoopy · snoopyFeb 9, 2009