Skip to content
Noroxi

sphiderpro records

4 published records for vendor sphiderpro.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 20

Bar: total · dark part: CISA KEV.

All records

4 records
  • sphider prior to 1.3.6, sphider-pro prior to 3.2, and sphider-plus prior to 3.2 allow authentication bypass

    CriticalCVSS 9.8Proof of conceptEPSS 10%

    sphider · sphiderJan 10, 2020

  • A vulnerability exists in Sphider Search Engine prior to 1.3.6 due to exec calls in admin/spiderfuncs.php, which could let a remote maliciou

    CriticalCVSS 9.8Proof of conceptEPSS 7%

    sphider · sphiderFeb 7, 2020

  • CVE-2014-5086
    38Monitor

    A Command Execution vulnerability exists in Sphider Pro, and Sphider Plus 3.2 due to insufficient sanitization of fwrite to conf.php, which

    HighCVSS 8.8Proof of conceptEPSS 10%

    sphider · sphiderFeb 10, 2020

  • CVE-2014-5084
    37Monitor

    A Command Execution vulnerability exists in Sphider Pro 3.2 due to insufficient sanitization of fwrite, which could let a remote malicious u

    HighCVSS 8.8Proof of conceptEPSS 8%

    sphiderpro · sphider proFeb 10, 2020