swsoft records
16 published records for vendor swsoft.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 6
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
16 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
34Monitor | CVE-2006-5028Proof of concept | Directory traversal vulnerability in filemanager/filemanager.php in SWsoft Plesk 7.5 Reload and Plesk 7.6 for Microsoft Windows allows remotswsoft · plesk | Medium5.0 | — | 46.6% | Sep 27, 2006 |
33Monitor | CVE-2001-0476Proof of concept | Multiple buffer overflows in s.cgi program in Aspseek search engine 1.03 and earlier allow remote attackers to execute arbitrary commands viswsoft · aspseek | High7.5 | — | 9.6% | Jun 27, 2001 |
31Monitor | CVE-2006-1754Proof of concept | SQL injection vulnerability in index.php in SWSoft Confixx 3.0.6, 3.0.8, and 3.1.2 allows remote attackers to execute arbitrary SQL commandsswsoft · confixx | High7.5 | — | 1.7% | Apr 12, 2006 |
30Monitor | CVE-2007-4892Proof of concept | Multiple SQL injection vulnerabilities in SWSoft Plesk 7.6.1, 8.1.0, 8.1.1, and 8.2.0 for Windows allow remote attackers to execute arbitrarswsoft · plesk · CWE-89 | High7.5 | — | 1.2% | Sep 14, 2007 |
30Monitor | CVE-2005-1302No exploit | SQL injection vulnerability in Confixx 3.08 and earlier allows remote attackers to execute arbitrary SQL commands via the "change user" fielswsoft · confixx | High7.5 | — | 1.2% | May 2, 2005 |
30Monitor | CVE-2006-3348No exploit | Multiple SQL injection vulnerabilities in HSPcomplete 3.2.2 and 3.3 Beta and earlier allow remote attackers to execute arbitrary SQL commandswsoft · hspcomplete | High7.5 | — | 1.1% | Jul 3, 2006 |
28Monitor | CVE-2006-6451Proof of concept | Multiple cross-site scripting (XSS) vulnerabilities in SWsoft Plesk 8.0.1 and earlier allow remote attackers to inject arbitrary web script swsoft · plesk · CWE-79 | Medium6.8 | — | 2.4% | Dec 10, 2006 |
27Monitor | CVE-2006-3180No exploit | Cross-site scripting (XSS) vulnerability in ftp_index.php in Confixx Pro 3.0 allows remote attackers to inject arbitrary web script or HTML swsoft · confixx | Medium6.8 | — | 1.4% | Jun 22, 2006 |
27Monitor | CVE-2007-6042No exploit | PHP remote file inclusion vulnerability in fehler.inc.php in SWSoft Confixx Professional 3.2.1 allows remote attackers to execute arbitrary swsoft · confixx professional · CWE-94 | Medium6.8 | — | 1.1% | Nov 20, 2007 |
21Monitor | CVE-2007-2268Proof of concept | Multiple directory traversal vulnerabilities in SWsoft Plesk for Windows 7.6.1, 8.1.0, and 8.1.1 allow remote attackers to read arbitrary fiswsoft · plesk | Medium5.0 | — | 3.5% | Apr 25, 2007 |
20Monitor | CVE-2007-2269No exploit | Directory traversal vulnerability in top.php3 in SWsoft Plesk for Windows 8.1 and 8.1.1 allows remote attackers to read arbitrary files via swsoft · plesk | Medium5.0 | — | 1.4% | Apr 25, 2007 |
18Monitor | CVE-2006-2423Proof of concept | Cross-site scripting (XSS) vulnerability in ftplogin/index.php in Confixx 3.1.2 allows remote attackers to inject arbitrary web script or HTswsoft · confixx | Medium4.3 | — | 2.1% | May 17, 2006 |
18Monitor | CVE-2004-2702Proof of concept | Cross-site scripting (XSS) vulnerability in login_up.php3 in Plesk 7.0 and 7.1 Reloaded allows remote attackers to inject arbitrary web scriswsoft · plesk · CWE-79 | Medium4.3 | — | 1.9% | Dec 31, 2004 |
17Monitor | CVE-2006-3179No exploit | Cross-site scripting (XSS) vulnerability in tools_ftp_pwaendern.php in Confixx Pro 3.0 and earlier allows remote attackers to inject arbitraswsoft · confixx | Medium4.3 | — | 1.3% | Jun 22, 2006 |
17Monitor | CVE-2006-3737No exploit | Cross-site scripting (XSS) vulnerability in filemanager/filemanager.php in the control panel in SWsoft Plesk 8.0 and earlier allows remote aswsoft · plesk control panel | Medium4.3 | — | 1.2% | Jul 21, 2006 |
11Monitor | CVE-2006-1759Proof of concept | Cross-site scripting (XSS) vulnerability in allgemein_transfer.php in SWSoft Confixx 3.1.2 allows remote attackers to inject arbitrary web sswsoft · confixx | Low2.6 | — | 2.0% | Apr 12, 2006 |
- CVE-2006-502834Monitor
Directory traversal vulnerability in filemanager/filemanager.php in SWsoft Plesk 7.5 Reload and Plesk 7.6 for Microsoft Windows allows remot
MediumCVSS 5.0Proof of conceptEPSS 47%swsoft · pleskSep 27, 2006
- CVE-2001-047633Monitor
Multiple buffer overflows in s.cgi program in Aspseek search engine 1.03 and earlier allow remote attackers to execute arbitrary commands vi
HighCVSS 7.5Proof of conceptEPSS 10%swsoft · aspseekJun 27, 2001
- CVE-2006-175431Monitor
SQL injection vulnerability in index.php in SWSoft Confixx 3.0.6, 3.0.8, and 3.1.2 allows remote attackers to execute arbitrary SQL commands
HighCVSS 7.5Proof of conceptEPSS 2%swsoft · confixxApr 12, 2006
- CVE-2007-489230Monitor
Multiple SQL injection vulnerabilities in SWSoft Plesk 7.6.1, 8.1.0, 8.1.1, and 8.2.0 for Windows allow remote attackers to execute arbitrar
HighCVSS 7.5Proof of conceptEPSS 1%swsoft · pleskSep 14, 2007
- CVE-2005-130230Monitor
SQL injection vulnerability in Confixx 3.08 and earlier allows remote attackers to execute arbitrary SQL commands via the "change user" fiel
HighCVSS 7.5No exploitEPSS 1%swsoft · confixxMay 2, 2005
- CVE-2006-334830Monitor
Multiple SQL injection vulnerabilities in HSPcomplete 3.2.2 and 3.3 Beta and earlier allow remote attackers to execute arbitrary SQL command
HighCVSS 7.5No exploitEPSS 1%swsoft · hspcompleteJul 3, 2006
- CVE-2006-645128Monitor
Multiple cross-site scripting (XSS) vulnerabilities in SWsoft Plesk 8.0.1 and earlier allow remote attackers to inject arbitrary web script
MediumCVSS 6.8Proof of conceptEPSS 2%swsoft · pleskDec 10, 2006
- CVE-2006-318027Monitor
Cross-site scripting (XSS) vulnerability in ftp_index.php in Confixx Pro 3.0 allows remote attackers to inject arbitrary web script or HTML
MediumCVSS 6.8No exploitEPSS 1%swsoft · confixxJun 22, 2006
- CVE-2007-604227Monitor
PHP remote file inclusion vulnerability in fehler.inc.php in SWSoft Confixx Professional 3.2.1 allows remote attackers to execute arbitrary
MediumCVSS 6.8No exploitEPSS 1%swsoft · confixx professionalNov 20, 2007
- CVE-2007-226821Monitor
Multiple directory traversal vulnerabilities in SWsoft Plesk for Windows 7.6.1, 8.1.0, and 8.1.1 allow remote attackers to read arbitrary fi
MediumCVSS 5.0Proof of conceptEPSS 4%swsoft · pleskApr 25, 2007
- CVE-2007-226920Monitor
Directory traversal vulnerability in top.php3 in SWsoft Plesk for Windows 8.1 and 8.1.1 allows remote attackers to read arbitrary files via
MediumCVSS 5.0No exploitEPSS 1%swsoft · pleskApr 25, 2007
- CVE-2006-242318Monitor
Cross-site scripting (XSS) vulnerability in ftplogin/index.php in Confixx 3.1.2 allows remote attackers to inject arbitrary web script or HT
MediumCVSS 4.3Proof of conceptEPSS 2%swsoft · confixxMay 17, 2006
- CVE-2004-270218Monitor
Cross-site scripting (XSS) vulnerability in login_up.php3 in Plesk 7.0 and 7.1 Reloaded allows remote attackers to inject arbitrary web scri
MediumCVSS 4.3Proof of conceptEPSS 2%swsoft · pleskDec 31, 2004
- CVE-2006-317917Monitor
Cross-site scripting (XSS) vulnerability in tools_ftp_pwaendern.php in Confixx Pro 3.0 and earlier allows remote attackers to inject arbitra
MediumCVSS 4.3No exploitEPSS 1%swsoft · confixxJun 22, 2006
- CVE-2006-373717Monitor
Cross-site scripting (XSS) vulnerability in filemanager/filemanager.php in the control panel in SWsoft Plesk 8.0 and earlier allows remote a
MediumCVSS 4.3No exploitEPSS 1%swsoft · plesk control panelJul 21, 2006
- CVE-2006-175911Monitor
Cross-site scripting (XSS) vulnerability in allgemein_transfer.php in SWSoft Confixx 3.1.2 allows remote attackers to inject arbitrary web s
LowCVSS 2.6Proof of conceptEPSS 2%swsoft · confixxApr 12, 2006