Записи 123flashchat
2 опубликованных записей вендора 123flashchat.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
2 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
41В плане | CVE-2008-1989Proof of concept | PHP remote file inclusion vulnerability in 123flashchat.php in the 123 Flash Chat 6.8.0 module for e107, when register_globals is enabled, a123flashchat · 123 flash chat module · CWE-94 | Критическая10,0 | — | 3,6 % | 27 апр. 2008 г. |
27Наблюдать | CVE-2008-6069Эксплойта нет | SQL injection vulnerability in e107chat.php in the eChat plugin 4.2 for e107, when magic_quotes_gpc is disabled, allows remote attackers to e107 · e107 · CWE-89 | Средняя6,8 | — | 1,0 % | 10 февр. 2009 г. |
- CVE-2008-198941В плане
PHP remote file inclusion vulnerability in 123flashchat.php in the 123 Flash Chat 6.8.0 module for e107, when register_globals is enabled, a
КритическаяCVSS 10,0Proof of conceptEPSS 4 %123flashchat · 123 flash chat module27 апр. 2008 г.
- CVE-2008-606927Наблюдать
SQL injection vulnerability in e107chat.php in the eChat plugin 4.2 for e107, when magic_quotes_gpc is disabled, allows remote attackers to
СредняяCVSS 6,8Эксплойта нетEPSS 1 %e107 · e10710 февр. 2009 г.