Skip to content
Noroxi

yerba records

3 published records for vendor yerba.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    All records

    3 records
    • Directory traversal vulnerability in index.php in SAC.php (SACphp), as used in Yerba 6.3 and earlier, allows remote attackers to include and

      CriticalCVSS 10.0Proof of conceptEPSS 5%

      yerba · yerbaOct 7, 2008

    • CVE-2008-5873
      31Monitor

      Yerba SACphp 6.3 and earlier allows remote attackers to bypass authentication and gain administrative access via a galleta[sesion] cookie th

      HighCVSS 7.5Proof of conceptEPSS 3%

      yerba · yerbaJan 8, 2009

    • CVE-2008-5867
      20Monitor

      Directory traversal vulnerability in Yerba SACphp 6.3 allows remote attackers to read arbitrary files, and possibly have other impact, via d

      MediumCVSS 5.0No exploitEPSS 2%

      yerba · yerbaJan 7, 2009