Записи beekeeperstudio
4 опубликованных записей вендора beekeeperstudio.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-116 Improper Encoding or Escaping of Output1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
4 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2022-26174Эксплойта нет | A remote code execution (RCE) vulnerability in Beekeeper Studio v3.2.0 allows attackers to execute arbitrary code via a crafted payload injebeekeeperstudio · beekeeper-studio · CWE-116 | Критическая9,8 | — | 2,4 % | 21 мар. 2022 г. |
38Наблюдать | CVE-2022-43143Proof of concept | A cross-site scripting (XSS) vulnerability in Beekeeper Studio v3.6.6 allows attackers to execute arbitrary web scripts or HTML via a craftebeekeeperstudio · beekeeper-studio · CWE-79 | Критическая9,6 | — | 0,9 % | 21 нояб. 2022 г. |
35Наблюдать | CVE-2023-28394Эксплойта нет | Beekeeper Studio versions prior to 3.9.9 allows a remote authenticated attacker to execute arbitrary JavaScript code with the privilege of tbeekeeperstudio · beekeeper-studio · CWE-78 | Высокая8,8 | — | 1,4 % | 22 мая 2023 г. |
24Наблюдать | CVE-2024-23995Proof of concept | Cross Site Scripting (XSS) in Beekeeper Studio 4.1.13 and earlier allows remote attackers to execute arbitrary code in the column name of a CWE-79 | Средняя6,1 | — | 1,0 % | 29 апр. 2024 г. |
- CVE-2022-2617440В плане
A remote code execution (RCE) vulnerability in Beekeeper Studio v3.2.0 allows attackers to execute arbitrary code via a crafted payload inje
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %beekeeperstudio · beekeeper-studio21 мар. 2022 г.
- CVE-2022-4314338Наблюдать
A cross-site scripting (XSS) vulnerability in Beekeeper Studio v3.6.6 allows attackers to execute arbitrary web scripts or HTML via a crafte
КритическаяCVSS 9,6Proof of conceptEPSS 1 %beekeeperstudio · beekeeper-studio21 нояб. 2022 г.
- CVE-2023-2839435Наблюдать
Beekeeper Studio versions prior to 3.9.9 allows a remote authenticated attacker to execute arbitrary JavaScript code with the privilege of t
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %beekeeperstudio · beekeeper-studio22 мая 2023 г.
- CVE-2024-2399524Наблюдать
Cross Site Scripting (XSS) in Beekeeper Studio 4.1.13 and earlier allows remote attackers to execute arbitrary code in the column name of a
СредняяCVSS 6,1Proof of conceptEPSS 1 %29 апр. 2024 г.