Перейти к содержимому
Noroxi

Записи ajsquare

16 опубликованных записей вендора ajsquare.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
7
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

    Столбик: всего · тёмная часть: CISA KEV.

    Все записи

    16 записей
    • CVE-2008-7041
      31Наблюдать

      AJ Classifieds allows remote attackers to bypass authentication and gain administrator privileges via a direct request to admin/home.php.

      ВысокаяCVSS 7,5Proof of conceptEPSS 3 %

      ajsquare · aj classifieds24 авг. 2009 г.

    • CVE-2008-7051
      31Наблюдать

      AJ Square AJ Article allows remote attackers to bypass authentication and access administrator functionality via a direct request to (1) use

      ВысокаяCVSS 7,5Proof of conceptEPSS 3 %

      ajsquare · aj article24 авг. 2009 г.

    • CVE-2008-7044
      30Наблюдать

      SQL injection vulnerability in admin/include/newpoll.php in AJ Square Free Polling Script (AJPoll) Database version allows remote attackers

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      ajsquare · free polling script24 авг. 2009 г.

    • CVE-2009-2779
      30Наблюдать

      SQL injection vulnerability in index.php in AJ Matrix DNA allows remote attackers to execute arbitrary SQL commands via the id parameter in

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      ajsquare · aj matrix dna17 авг. 2009 г.

    • CVE-2009-3203
      30Наблюдать

      SQL injection vulnerability in store.php in AJ Auction Pro OOPD 2.x allows remote attackers to execute arbitrary SQL commands via the id par

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      ajsquare · aj auction pro-oopd16 сент. 2009 г.

    • CVE-2010-1876
      30Наблюдать

      SQL injection vulnerability in index.php in AJ Shopping Cart 1.0 allows remote attackers to execute arbitrary SQL commands via the maincatid

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      ajsquare · aj shopping cart12 мая 2010 г.

    • CVE-2010-2915
      30Наблюдать

      SQL injection vulnerability in welcome.php in AJ Square AJ HYIP PRIME allows remote attackers to execute arbitrary SQL commands via the id p

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      ajsquare · aj hyip30 июл. 2010 г.

    • CVE-2008-6721
      30Наблюдать

      SQL injection vulnerability in index.php in AJ Square AJ Article allows remote attackers to execute arbitrary SQL commands via the txtName p

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      ajsquare · aj article14 апр. 2009 г.

    • CVE-2010-2916
      30Наблюдать

      SQL injection vulnerability in news.php in AJ Square AJ HYIP MERIDIAN allows remote attackers to execute arbitrary SQL commands via the id p

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      ajsquare · aj hyip30 июл. 2010 г.

    • CVE-2008-7045
      26Наблюдать

      AJ Square Free Polling Script (AJPoll) Database version allows remote attackers to bypass authentication and reset poll votes via a direct r

      СредняяCVSS 6,4Proof of conceptEPSS 3 %

      ajsquare · free polling script24 авг. 2009 г.

    • CVE-2008-7046
      26Наблюдать

      AJ Square Free Polling Script (AJPoll) allows remote attackers to bypass authentication and create new polls via a direct request to admin/i

      СредняяCVSS 6,4Proof of conceptEPSS 2 %

      ajsquare · free polling script24 авг. 2009 г.

    • CVE-2015-2184
      23Наблюдать

      ZeusCart 4 allows remote attackers to obtain configuration information via a getphpinfo action to admin/, which calls the phpinfo function.

      СредняяCVSS 5,0Proof of conceptEPSS 8 %

      ajsquare · zeuscart10 мар. 2015 г.

    • CVE-2015-2182
      18Наблюдать

      Multiple cross-site scripting (XSS) vulnerabilities in ZeusCart 4 allow remote attackers to inject arbitrary web script or HTML via the (1)

      СредняяCVSS 4,3Proof of conceptEPSS 4 %

      ajsquare · zeuscart11 мар. 2015 г.

    • CVE-2010-5322
      18Наблюдать

      Cross-site scripting (XSS) vulnerability in ZeusCart 4.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the

      СредняяCVSS 4,3Proof of conceptEPSS 3 %

      ajsquare · zeuscart11 мар. 2015 г.

    • CVE-2010-2917
      18Наблюдать

      Multiple cross-site scripting (XSS) vulnerabilities in index.php in AJ Square AJ Article 3.0 allow remote attackers to inject arbitrary web

      СредняяCVSS 4,3Proof of conceptEPSS 2 %

      ajsquare · aj article30 июл. 2010 г.

    • CVE-2009-4989
      17Наблюдать

      Cross-site scripting (XSS) vulnerability in index.php in AJ Auction Pro OOPD 3.0 allows remote attackers to inject arbitrary web script or H

      СредняяCVSS 4,3Proof of conceptEPSS 1 %

      ajsquare · aj auction pro-oopd25 авг. 2010 г.