Перейти к содержимому
Noroxi

Записи bosdev

12 опубликованных записей вендора bosdev.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
6
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

    Столбик: всего · тёмная часть: CISA KEV.

    Повторяющиеся классы

    Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

    CWE

    Все записи

    12 записей
    • CVE-2006-3527
      31Наблюдать

      Multiple PHP remote file inclusion vulnerabilities in BosClassifieds Classified Ads allow remote attackers to execute arbitrary PHP code via

      ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %

      bosdev · bosclassifieds classified ads11 июл. 2006 г.

    • CVE-2006-3957
      31Наблюдать

      PHP remote file inclusion vulnerability in payment.php in BosDev BosDates allows remote attackers to execute arbitrary PHP code via a URL in

      ВысокаяCVSS 7,5Proof of conceptEPSS 3 %

      bosdev · bosdates1 авг. 2006 г.

    • CVE-2005-3911
      30Наблюдать

      Multiple SQL injection vulnerabilities in calendar.php in BosDates 4.0 and earlier allow remote attackers to execute arbitrary SQL commands

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      bosdev · bosdates30 нояб. 2005 г.

    • CVE-2008-1838
      30Наблюдать

      SQL injection vulnerability in BosClassifieds Classified Ads System 3.0 allows remote attackers to execute arbitrary SQL commands via the ca

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      bosdev · bosclassifieds ads systems16 апр. 2008 г.

    • CVE-2008-6526
      30Наблюдать

      SQL injection vulnerability in index.php in BosDev BosClassifieds allows remote attackers to execute arbitrary SQL commands via the cat_id p

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      bosdev · bos classifieds25 мар. 2009 г.

    • CVE-2008-4703
      30Наблюдать

      SQL injection vulnerability in news.php in BosDev BosNews 4.0 allows remote attackers to execute arbitrary SQL commands via the article para

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      bosdev · bosnews23 окт. 2008 г.

    • CVE-2004-0275
      21Наблюдать

      SQL injection vulnerability in calendar_download.php in BosDates 3.2 and earlier allows remote attackers to obtain sensitive information and

      СредняяCVSS 5,0Proof of conceptEPSS 3 %

      bosdev · bosdates23 нояб. 2004 г.

    • CVE-2007-5835
      20Наблюдать

      Install.php in BosDev BosNews 4 and 5 does not require authentication for replacing an existing product installation or creating a new admin

      СредняяCVSS 5,0Эксплойта нетEPSS 1 %

      bosdev · bosnews5 нояб. 2007 г.

    • CVE-2008-1211
      17Наблюдать

      Cross-site scripting (XSS) vulnerability in BosDates 3.x and 4.x allows remote attackers to inject arbitrary web script or HTML via (1) the

      СредняяCVSS 4,3Эксплойта нетEPSS 1 %

      bosdev · bosdates7 мар. 2008 г.

    • CVE-2008-1224
      17Наблюдать

      Cross-site scripting (XSS) vulnerability in account.php in BosClassifieds Classified Ads System 3.0 allows remote attackers to inject arbitr

      СредняяCVSS 4,3Эксплойта нетEPSS 1 %

      bosdev · bosclassifieds classified ads10 мар. 2008 г.

    • CVE-2007-5834
      17Наблюдать

      Cross-site scripting (XSS) vulnerability in BosDev BosNews 4 allows remote attackers to inject arbitrary web script or HTML via a SCRIPT ele

      СредняяCVSS 4,3Эксплойта нетEPSS 1 %

      bosdev · bosnews5 нояб. 2007 г.

    • CVE-2007-5833
      14Наблюдать

      Multiple cross-site scripting (XSS) vulnerabilities in BosDev BosMarket Business Directory System allow remote authenticated users to inject

      НизкаяCVSS 3,5Эксплойта нетEPSS 1 %

      bosdev · bosmarket business directory system5 нояб. 2007 г.