Перейти к содержимому
Noroxi

Записи 5none

12 опубликованных записей вендора 5none.

Профиль для исследователя

Попали в KEV
1 · 8,3 %
С эксплойтом
1 · 8,3 %
Pre-auth RCE
1
С записью об исправлении
0 %
Медиана: публикация → KEV
1058 дн.

Записи по годам

  1. 18
  2. 19
  3. 21
  4. 23

Столбик: всего · тёмная часть: CISA KEV.

Все записи

12 записей
  • CVE-2018-20062
    99Срочно

    An issue was discovered in NoneCms V1.3.

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 100 %

    5none · nonecms11 дек. 2018 г.

  • CVE-2018-7219
    35Наблюдать

    application/admin/controller/Admin.php in NoneCms 1.3.0 has CSRF, as demonstrated by changing an admin password or adding an account via a p

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    5none · nonecms19 февр. 2018 г.

  • CVE-2020-18646
    30Наблюдать

    Information Disclosure in NoneCMS v1.3 allows remote attackers to obtain sensitive information via the component "/public/index.php".

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    5none · nonecms22 июн. 2021 г.

  • CVE-2020-18647
    30Наблюдать

    Information Disclosure in NoneCMS v1.3 allows remote attackers to obtain sensitive information via the component "/nonecms/vendor".

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    5none · nonecms22 июн. 2021 г.

  • CVE-2018-6029
    30Наблюдать

    The copy function in application/admin/controller/Article.php in NoneCms 1.3.0 allows remote attackers to access the content of internal and

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    5none · nonecms23 янв. 2018 г.

  • CVE-2018-6022
    26Наблюдать

    Directory traversal vulnerability in application/admin/controller/Main.php in NoneCms through 1.3.0 allows remote authenticated users to del

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    5none · nonecms23 янв. 2018 г.

  • CVE-2019-16721
    26Наблюдать

    NoneCMS v1.3 has CSRF in public/index.php/admin/admin/dele.html, as demonstrated by deleting the admin user.

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    5none · nonecms23 сент. 2019 г.

  • CVE-2020-23371
    24Наблюдать

    Cross-site scripting (XSS) vulnerability in static/admin/js/kindeditor/plugins/multiimage/images/swfupload.swf in noneCms v1.3.0 allows remo

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    5none · nonecms10 мая 2021 г.

  • CVE-2020-18282
    24Наблюдать

    Cross-site scripting (XSS) vulnerability in NoneCms 1.3.0 allows remote attackers to inject arbitrary web script or HTML via feedback featur

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    5none · nonecms8 мая 2023 г.

  • CVE-2020-23376
    24Наблюдать

    NoneCMS v1.3 has a CSRF vulnerability in public/index.php/admin/nav/add.html, as demonstrated by adding a navigation column which can be inj

    СредняяCVSS 6,1Эксплойта нетEPSS 0 %

    5none · nonecms10 мая 2021 г.

  • CVE-2020-23373
    21Наблюдать

    Cross-site scripting (XSS) vulnerability in admin/nav/add.html in noneCMS v1.3.0 allows remote authenticated attackers to inject arbitrary w

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    5none · nonecms10 мая 2021 г.

  • CVE-2020-23374
    21Наблюдать

    Cross-site scripting (XSS) vulnerability in admin/article/add.html in noneCMS v1.3.0 allows remote authenticated attackers to inject arbitra

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    5none · nonecms10 мая 2021 г.