Перейти к содержимому
Noroxi

Записи BigProf

22 опубликованных записей вендора bigprof.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
0
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 18
  2. 20
  3. 21
  4. 22
  5. 23

Столбик: всего · тёмная часть: CISA KEV.

Все записи

22 записей
  • CVE-2020-35674
    39Наблюдать

    BigProf Online Invoicing System before 2.9 suffers from an unauthenticated SQL Injection found in /membership_passwordReset.php (the endpoin

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    bigprof · online invoicing system28 сент. 2022 г.

  • CVE-2020-35675
    35Наблюдать

    BigProf Online Invoicing System before 3.0 offers a functionality that allows an administrator to move the records of members across groups.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    bigprof · online invoicing system28 сент. 2022 г.

  • CVE-2020-35676
    24Наблюдать

    BigProf Online Invoicing System before 3.1 fails to correctly sanitize an XSS payload when a user registers using the self-registration func

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    bigprof · online invoicing system24 дек. 2020 г.

  • CVE-2020-6583
    24Наблюдать

    BigProf Online Invoicing System (OIS) through 2.6 has XSS that can be leveraged for session hijacking.

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    bigprof · online invoicing system8 янв. 2020 г.

  • CVE-2021-21260
    21Наблюдать

    XSS in description field

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    bigprof · online invoicing system22 янв. 2021 г.

  • CVE-2018-18587
    21Наблюдать

    BigProf AppGini 5.70 stores the passwords in the database using the MD5 hash.

    СредняяCVSS 5,3Эксплойта нетEPSS 1 %

    bigprof · appgini23 окт. 2018 г.

  • CVE-2023-6425
    21Наблюдать

    Cross-site Scripting vulnerability in BigProf products

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    bigprof · online clinic management system30 нояб. 2023 г.

  • CVE-2023-6435
    21Наблюдать

    Cross-site Scripting vulnerability in BigProf products

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    bigprof · online invoicing system30 нояб. 2023 г.

  • CVE-2023-6422
    21Наблюдать

    Cross-site Scripting vulnerability in BigProf products

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    bigprof · online clinic management system30 нояб. 2023 г.

  • CVE-2023-6423
    21Наблюдать

    Cross-site Scripting vulnerability in BigProf products

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    bigprof · online clinic management system30 нояб. 2023 г.

  • CVE-2023-6424
    21Наблюдать

    Cross-site Scripting vulnerability in BigProf products

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    bigprof · online clinic management system30 нояб. 2023 г.

  • CVE-2023-6433
    21Наблюдать

    Cross-site Scripting vulnerability in BigProf products

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    bigprof · online invoicing system30 нояб. 2023 г.

  • CVE-2023-6434
    21Наблюдать

    Cross-site Scripting vulnerability in BigProf products

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    bigprof · online invoicing system30 нояб. 2023 г.

  • CVE-2023-6426
    21Наблюдать

    Cross-site Scripting vulnerability in BigProf products

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    bigprof · online invoicing system30 нояб. 2023 г.

  • CVE-2023-6427
    21Наблюдать

    Cross-site Scripting vulnerability in BigProf products

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    bigprof · online invoicing system30 нояб. 2023 г.

  • CVE-2023-6428
    21Наблюдать

    Cross-site Scripting vulnerability in BigProf products

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    bigprof · online invoicing system30 нояб. 2023 г.

  • CVE-2023-6429
    21Наблюдать

    Cross-site Scripting vulnerability in BigProf products

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    bigprof · online invoicing system30 нояб. 2023 г.

  • CVE-2023-6430
    21Наблюдать

    Cross-site Scripting vulnerability in BigProf products

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    bigprof · online invoicing system30 нояб. 2023 г.

  • CVE-2023-6431
    21Наблюдать

    Cross-site Scripting vulnerability in BigProf products

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    bigprof · online invoicing system30 нояб. 2023 г.

  • CVE-2023-6432
    21Наблюдать

    Cross-site Scripting vulnerability in BigProf products

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    bigprof · online invoicing system30 нояб. 2023 г.

  • CVE-2020-35677
    19Наблюдать

    BigProf Online Invoicing System before 4.0 fails to adequately sanitize fields for HTML characters upon an administrator using admin/pageEdi

    СредняяCVSS 4,8Эксплойта нетEPSS 0 %

    bigprof · online invoicing system24 дек. 2020 г.

  • CVE-2021-27839
    17Наблюдать

    A CSV injection vulnerability found in Online Invoicing System (OIS) 4.3 and below can be exploited by users to perform malicious actions su

    СредняяCVSS 4,4Эксплойта нетEPSS 1 %

    bigprof · online invoicing system3 мар. 2021 г.