Записи Ankitects
6 опубликованных записей вендора ankitects.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 16,7 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-184 Incomplete List of Disallowed Inputs1
- CWE-23 Relative Path Traversal1
- CWE-427 Uncontrolled Search Path Element1
- CWE-80 Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)1
- CWE-829 Inclusion of Functionality from Untrusted Control Sphere1
- CWE-830 Inclusion of Web Functionality from an Untrusted Source1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2024-32484Эксплойта нет | An reflected XSS vulnerability exists in the handling of invalid paths in the Flask server in Ankitects Anki 24.04.ankitects · anki · CWE-80 | Высокая8,2 | — | 22,3 % | 22 июл. 2024 г. |
31Наблюдать | CVE-2025-62185Эксплойта нет | In Ankitects Anki before 25.02.5, a crafted shared deck can place a YouTube downloader executable in the media folder, and this is executed ankitects · anki · CWE-427 | Высокая7,8 | — | 0,2 % | 7 окт. 2025 г. |
31Наблюдать | CVE-2025-62186Эксплойта нет | Ankitects Anki before 25.02.5 allows a crafted shared deck on Windows to execute arbitrary commands when playing audio because of URL schemeankitects · anki · CWE-829 | Высокая7,8 | — | 0,1 % | 7 окт. 2025 г. |
21Наблюдать | CVE-2024-32152Эксплойта нет | A blocklist bypass vulnerability exists in the LaTeX functionality of Ankitects Anki 24.04.ankitects · anki · CWE-184 | Средняя4,3 | — | 12,7 % | 22 июл. 2024 г. |
21Наблюдать | CVE-2025-43703Эксплойта нет | An issue was discovered in Ankitects Anki through 25.02.ankitects · anki · CWE-830 | Средняя5,4 | — | 0,2 % | 16 апр. 2025 г. |
13Наблюдать | CVE-2025-62187Эксплойта нет | In Ankitects Anki before 25.02.6, crafted sound file references could cause files to be written to arbitrary locations on Windows and Linux ankitects · anki · CWE-23 | Низкая3,3 | — | 0,2 % | 7 окт. 2025 г. |
- CVE-2024-3248439Наблюдать
An reflected XSS vulnerability exists in the handling of invalid paths in the Flask server in Ankitects Anki 24.04.
ВысокаяCVSS 8,2Эксплойта нетEPSS 22 %ankitects · anki22 июл. 2024 г.
- CVE-2025-6218531Наблюдать
In Ankitects Anki before 25.02.5, a crafted shared deck can place a YouTube downloader executable in the media folder, and this is executed
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %ankitects · anki7 окт. 2025 г.
- CVE-2025-6218631Наблюдать
Ankitects Anki before 25.02.5 allows a crafted shared deck on Windows to execute arbitrary commands when playing audio because of URL scheme
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %ankitects · anki7 окт. 2025 г.
- CVE-2024-3215221Наблюдать
A blocklist bypass vulnerability exists in the LaTeX functionality of Ankitects Anki 24.04.
СредняяCVSS 4,3Эксплойта нетEPSS 13 %ankitects · anki22 июл. 2024 г.
- CVE-2025-4370321Наблюдать
An issue was discovered in Ankitects Anki through 25.02.
СредняяCVSS 5,4Эксплойта нетEPSS 0 %ankitects · anki16 апр. 2025 г.
- CVE-2025-6218713Наблюдать
In Ankitects Anki before 25.02.6, crafted sound file references could cause files to be written to arbitrary locations on Windows and Linux
НизкаяCVSS 3,3Эксплойта нетEPSS 0 %ankitects · anki7 окт. 2025 г.