Skip to content
Noroxi

upoint records

4 published records for vendor upoint.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    4 records
    • CVE-2006-1278
      28Monitor

      SQL injection vulnerability in @1 File Store 2006.03.07 allows remote attackers to execute arbitrary SQL commands via the id parameter to (1

      MediumCVSS 6.8Proof of conceptEPSS 4%

      upoint · \@1 file storeMar 19, 2006

    • CVE-2006-1277
      23Monitor

      Cross-site scripting (XSS) vulnerability in signup.php in @1 File Store 2006.03.07 allows remote attackers to inject arbitrary web script or

      MediumCVSS 5.8No exploitEPSS 1%

      upoint · at1 file storeMar 19, 2006

    • CVE-2006-1437
      20Monitor

      UPOINT @1 Event Publisher stores sensitive information under the web document root with insufifcient access control, which allows remote att

      MediumCVSS 5.0No exploitEPSS 1%

      upoint · at1 event publisherApr 15, 2006

    • CVE-2006-1436
      17Monitor

      Multiple cross-site scripting (XSS) vulnerabilities in UPOINT @1 Event Publisher allow remote attackers to inject arbitrary web script or HT

      MediumCVSS 4.3No exploitEPSS 1%

      upoint · at1 event publisherApr 15, 2006