Записи acyba
5 опубликованных записей вендора acyba.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-1236 Improper Neutralization of Formula Elements in a CSV File2
- CWE-434 Unrestricted Upload of File with Dangerous Type2
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2023-39970Эксплойта нет | Extension - acymailing.com - RCE in AcyMailing component for Joomla 6.7.0-8.5.0acyba · acymailing starter · CWE-434 | Критическая9,8 | — | 1,1 % | 17 авг. 2023 г. |
37Наблюдать | CVE-2018-9107Proof of concept | CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in the Acyba AcyMailing extension before 5.9.6 facyba · acymailing · CWE-1236 | Высокая8,8 | — | 7,0 % | 28 мар. 2018 г. |
37Наблюдать | CVE-2018-9106Proof of concept | CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in the Acyba AcySMS extension before 3.5.1 for Jacyba · acysms · CWE-1236 | Высокая8,8 | — | 6,4 % | 28 мар. 2018 г. |
28Наблюдать | CVE-2020-10934Эксплойта нет | Acyba AcyMailing before 6.9.2 mishandles file uploads by admins.acyba · acymailing · CWE-434 | Высокая7,2 | — | 1,3 % | 24 мар. 2020 г. |
28Наблюдать | CVE-2015-7338Эксплойта нет | SQL Injection exists in AcyMailing Joomla Component before 4.9.5 via exportgeolocorder in a geolocation_longitude request to index.php.acyba · acymailing · CWE-89 | Высокая7,2 | — | 1,0 % | 9 мар. 2020 г. |
- CVE-2023-3997039Наблюдать
Extension - acymailing.com - RCE in AcyMailing component for Joomla 6.7.0-8.5.0
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %acyba · acymailing starter17 авг. 2023 г.
- CVE-2018-910737Наблюдать
CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in the Acyba AcyMailing extension before 5.9.6 f
ВысокаяCVSS 8,8Proof of conceptEPSS 7 %acyba · acymailing28 мар. 2018 г.
- CVE-2018-910637Наблюдать
CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in the Acyba AcySMS extension before 3.5.1 for J
ВысокаяCVSS 8,8Proof of conceptEPSS 6 %acyba · acysms28 мар. 2018 г.
- CVE-2020-1093428Наблюдать
Acyba AcyMailing before 6.9.2 mishandles file uploads by admins.
ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %acyba · acymailing24 мар. 2020 г.
- CVE-2015-733828Наблюдать
SQL Injection exists in AcyMailing Joomla Component before 4.9.5 via exportgeolocorder in a geolocation_longitude request to index.php.
ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %acyba · acymailing9 мар. 2020 г.