web-app.net records
9 published records for vendor web-app.net.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Recurring classes
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
9 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2007-3242No exploit | The Menu Manager Mod for (1) web-app.net WebAPP (aka WebAPP NE) 0.9.9.3.3 through 0.9.9.8, and (2) web-app.org WebAPP before 0.9.9.6, allowsweb-app.net · webapp · CWE-264 | High7.5 | — | 2.1% | Jun 14, 2007 |
30Monitor | CVE-2006-6688No exploit | Web Automated Perl Portal (WebAPP) 0.9.9.4, and 0.9.9.3.4 Network Edition (NE) (aka WebAPP.NET) allows remote attackers to bypass filtering web-app.net · webapp | High7.5 | — | 1.4% | Dec 21, 2006 |
30Monitor | CVE-2007-1829No exploit | Multiple unspecified vulnerabilities in web-app.net WebAPP have unknown impact and attack vectors, described as "[having] other [security] iweb-app.net · webapp | High7.5 | — | 1.0% | Apr 2, 2007 |
20Monitor | CVE-2006-7188No exploit | The search function in cgi-lib/user-lib/search.pl in web-app.net WebAPP before 20060909 allows remote attackers to read internal forum postsweb-app.net · webapp | Medium5.0 | — | 1.1% | Apr 2, 2007 |
20Monitor | CVE-2006-7186No exploit | cgi-lib/subs.pl in web-app.net WebAPP before 0.9.9.3.5 allows attackers to open list files in "profile and other functions," a different vulweb-app.net · webapp | Medium5.0 | — | 1.0% | Apr 2, 2007 |
17Monitor | CVE-2006-6687No exploit | Cross-site scripting (XSS) vulnerability in Web Automated Perl Portal (WebAPP) 0.9.9.4, and 0.9.9.3.4 Network Edition (NE) (aka WebAPP.NET),web-app.net · webapp · CWE-79 | Medium4.3 | — | 0.9% | Dec 21, 2006 |
17Monitor | CVE-2006-7189No exploit | Cross-site scripting (XSS) vulnerability in cgi-bin/admin/logs.cgi in web-app.net WebAPP before 20060403 allows remote attackers to inject aweb-app.net · webapp | Medium4.3 | — | 0.8% | Apr 2, 2007 |
17Monitor | CVE-2006-7190No exploit | Cross-site scripting (XSS) vulnerability in cgi-bin/user-lib/topics.pl in web-app.net WebAPP before 20060515 allows remote attackers to injeweb-app.net · webapp | Medium4.3 | — | 0.8% | Apr 2, 2007 |
17Monitor | CVE-2006-7187No exploit | Cross-site scripting (XSS) vulnerability in the show_recent_searches function in cgi-lib/user-lib/search.pl in web-app.net WebAPP before 200web-app.net · webapp | Medium4.3 | — | 0.8% | Apr 2, 2007 |
- CVE-2007-324231Monitor
The Menu Manager Mod for (1) web-app.net WebAPP (aka WebAPP NE) 0.9.9.3.3 through 0.9.9.8, and (2) web-app.org WebAPP before 0.9.9.6, allows
HighCVSS 7.5No exploitEPSS 2%web-app.net · webappJun 14, 2007
- CVE-2006-668830Monitor
Web Automated Perl Portal (WebAPP) 0.9.9.4, and 0.9.9.3.4 Network Edition (NE) (aka WebAPP.NET) allows remote attackers to bypass filtering
HighCVSS 7.5No exploitEPSS 1%web-app.net · webappDec 21, 2006
- CVE-2007-182930Monitor
Multiple unspecified vulnerabilities in web-app.net WebAPP have unknown impact and attack vectors, described as "[having] other [security] i
HighCVSS 7.5No exploitEPSS 1%web-app.net · webappApr 2, 2007
- CVE-2006-718820Monitor
The search function in cgi-lib/user-lib/search.pl in web-app.net WebAPP before 20060909 allows remote attackers to read internal forum posts
MediumCVSS 5.0No exploitEPSS 1%web-app.net · webappApr 2, 2007
- CVE-2006-718620Monitor
cgi-lib/subs.pl in web-app.net WebAPP before 0.9.9.3.5 allows attackers to open list files in "profile and other functions," a different vul
MediumCVSS 5.0No exploitEPSS 1%web-app.net · webappApr 2, 2007
- CVE-2006-668717Monitor
Cross-site scripting (XSS) vulnerability in Web Automated Perl Portal (WebAPP) 0.9.9.4, and 0.9.9.3.4 Network Edition (NE) (aka WebAPP.NET),
MediumCVSS 4.3No exploitEPSS 1%web-app.net · webappDec 21, 2006
- CVE-2006-718917Monitor
Cross-site scripting (XSS) vulnerability in cgi-bin/admin/logs.cgi in web-app.net WebAPP before 20060403 allows remote attackers to inject a
MediumCVSS 4.3No exploitEPSS 1%web-app.net · webappApr 2, 2007
- CVE-2006-719017Monitor
Cross-site scripting (XSS) vulnerability in cgi-bin/user-lib/topics.pl in web-app.net WebAPP before 20060515 allows remote attackers to inje
MediumCVSS 4.3No exploitEPSS 1%web-app.net · webappApr 2, 2007
- CVE-2006-718717Monitor
Cross-site scripting (XSS) vulnerability in the show_recent_searches function in cgi-lib/user-lib/search.pl in web-app.net WebAPP before 200
MediumCVSS 4.3No exploitEPSS 1%web-app.net · webappApr 2, 2007