Записи Cerberus
14 опубликованных записей вендора cerberus.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-287 Improper Authentication1
- CWE-400 Uncontrolled Resource Consumption1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
14 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
43В плане | CVE-2017-6880Proof of concept | Buffer overflow in Cerberus FTP Server 8.0.10.3 allows remote attackers to cause a denial of service (daemon crash) or possibly have unspecicerberus · cerberus ftp server · CWE-119 | Критическая9,8 | — | 14,3 % | 17 мар. 2017 г. |
31Наблюдать | CVE-2005-4427Proof of concept | Multiple SQL injection vulnerabilities in Cerberus Helpdesk allow remote attackers to execute arbitrary SQL commands via the (1) file_id parcerberus · cerberus helpdesk | Высокая7,5 | — | 3,2 % | 20 дек. 2005 г. |
31Наблюдать | CVE-2006-4539Эксплойта нет | (1) includes/widgets/module_company_tickets.php and (2) includes/widgets/module_track_tickets.php Client Support Center in Cerberus Helpdeskcerberus · cerberus helpdesk | Высокая7,5 | — | 1,8 % | 5 сент. 2006 г. |
30Наблюдать | CVE-2024-5052Эксплойта нет | Resource consumption vulnerability in Cerberus FTP Enterprisecerberus ftp enterprise · cerberus ftp enterprise · CWE-400 | Высокая7,5 | — | 0,4 % | 17 мая 2024 г. |
28Наблюдать | CVE-2006-6366Proof of concept | Cross-site scripting (XSS) vulnerability in includes/elements/spellcheck/spellwin.php in Cerberus Helpdesk 0.97.3, 2.0 through 2.7, 3.2.1, acerberus · helpdesk | Средняя6,8 | — | 1,8 % | 7 дек. 2006 г. |
21Наблюдать | CVE-2006-5428Proof of concept | rpc.php in Cerberus Helpdesk 3.2.1 does not verify a client's privileges for a display_get_requesters operation, which allows remote attackecerberus · cerberus helpdesk | Средняя5,0 | — | 2,8 % | 20 окт. 2006 г. |
20Наблюдать | CVE-2005-3502Эксплойта нет | attachment_send.php in Cerberus Helpdesk allows remote attackers to view attachments and tickets of other users via a modified file_id paramcerberus · cerberus helpdesk | Средняя5,0 | — | 1,5 % | 5 нояб. 2005 г. |
20Наблюдать | CVE-2005-1963Эксплойта нет | Cerberus Helpdesk 0.97.3 allows remote attackers to obtain sensitive information via certain requests to (1) reports.php, (2) knowledgebase.cerberus · cerberus helpdesk | Средняя5,0 | — | 1,5 % | 16 июн. 2005 г. |
20Наблюдать | CVE-2008-6440Эксплойта нет | Cerberus Helpdesk before 4.0 (Build 600) allows remote attackers to obtain sensitive information via direct requests for "controllers ...cerberus · cerberus helpdesk · CWE-287 | Средняя5,0 | — | 1,2 % | 6 мар. 2009 г. |
18Наблюдать | CVE-2006-0509Proof of concept | Multiple cross-site scripting (XSS) vulnerabilities in clients.php in Cerberus Helpdesk, possibly 2.7, allow remote attackers to inject arbicerberus · cerberus helpdesk | Средняя4,3 | — | 2,0 % | 1 февр. 2006 г. |
17Наблюдать | CVE-2005-4428Эксплойта нет | Cross-site scripting (XSS) vulnerability in index.php in Cerberus Helpdesk allows remote attackers to inject arbitrary web script or HTML vicerberus · cerberus helpdesk | Средняя4,3 | — | 1,3 % | 20 дек. 2005 г. |
17Наблюдать | CVE-2005-1962Эксплойта нет | Cross-site scripting (XSS) vulnerability in Cerberus Helpdesk 0.97.3 allows remote attackers to inject arbitrary web script or HTML via the cerberus · cerberus helpdesk | Средняя4,3 | — | 1,3 % | 16 июн. 2005 г. |
17Наблюдать | CVE-2007-5930Эксплойта нет | Cross-site scripting (XSS) vulnerability in the web interface in Cerberus FTP Server before 2.46 allows remote attackers to inject arbitrarycerberus · ftp server · CWE-79 | Средняя4,3 | — | 1,2 % | 10 нояб. 2007 г. |
8Наблюдать | CVE-2003-1476Эксплойта нет | Cerberus FTP Server 2.1 stores usernames and passwords in plaintext, which could allow local users to gain access.cerberus · ftp server | Низкая2,1 | — | 0,3 % | 31 дек. 2003 г. |
- CVE-2017-688043В плане
Buffer overflow in Cerberus FTP Server 8.0.10.3 allows remote attackers to cause a denial of service (daemon crash) or possibly have unspeci
КритическаяCVSS 9,8Proof of conceptEPSS 14 %cerberus · cerberus ftp server17 мар. 2017 г.
- CVE-2005-442731Наблюдать
Multiple SQL injection vulnerabilities in Cerberus Helpdesk allow remote attackers to execute arbitrary SQL commands via the (1) file_id par
ВысокаяCVSS 7,5Proof of conceptEPSS 3 %cerberus · cerberus helpdesk20 дек. 2005 г.
- CVE-2006-453931Наблюдать
(1) includes/widgets/module_company_tickets.php and (2) includes/widgets/module_track_tickets.php Client Support Center in Cerberus Helpdesk
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %cerberus · cerberus helpdesk5 сент. 2006 г.
- CVE-2024-505230Наблюдать
Resource consumption vulnerability in Cerberus FTP Enterprise
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %cerberus ftp enterprise · cerberus ftp enterprise17 мая 2024 г.
- CVE-2006-636628Наблюдать
Cross-site scripting (XSS) vulnerability in includes/elements/spellcheck/spellwin.php in Cerberus Helpdesk 0.97.3, 2.0 through 2.7, 3.2.1, a
СредняяCVSS 6,8Proof of conceptEPSS 2 %cerberus · helpdesk7 дек. 2006 г.
- CVE-2006-542821Наблюдать
rpc.php in Cerberus Helpdesk 3.2.1 does not verify a client's privileges for a display_get_requesters operation, which allows remote attacke
СредняяCVSS 5,0Proof of conceptEPSS 3 %cerberus · cerberus helpdesk20 окт. 2006 г.
- CVE-2005-350220Наблюдать
attachment_send.php in Cerberus Helpdesk allows remote attackers to view attachments and tickets of other users via a modified file_id param
СредняяCVSS 5,0Эксплойта нетEPSS 2 %cerberus · cerberus helpdesk5 нояб. 2005 г.
- CVE-2005-196320Наблюдать
Cerberus Helpdesk 0.97.3 allows remote attackers to obtain sensitive information via certain requests to (1) reports.php, (2) knowledgebase.
СредняяCVSS 5,0Эксплойта нетEPSS 2 %cerberus · cerberus helpdesk16 июн. 2005 г.
- CVE-2008-644020Наблюдать
Cerberus Helpdesk before 4.0 (Build 600) allows remote attackers to obtain sensitive information via direct requests for "controllers ...
СредняяCVSS 5,0Эксплойта нетEPSS 1 %cerberus · cerberus helpdesk6 мар. 2009 г.
- CVE-2006-050918Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in clients.php in Cerberus Helpdesk, possibly 2.7, allow remote attackers to inject arbi
СредняяCVSS 4,3Proof of conceptEPSS 2 %cerberus · cerberus helpdesk1 февр. 2006 г.
- CVE-2005-442817Наблюдать
Cross-site scripting (XSS) vulnerability in index.php in Cerberus Helpdesk allows remote attackers to inject arbitrary web script or HTML vi
СредняяCVSS 4,3Эксплойта нетEPSS 1 %cerberus · cerberus helpdesk20 дек. 2005 г.
- CVE-2005-196217Наблюдать
Cross-site scripting (XSS) vulnerability in Cerberus Helpdesk 0.97.3 allows remote attackers to inject arbitrary web script or HTML via the
СредняяCVSS 4,3Эксплойта нетEPSS 1 %cerberus · cerberus helpdesk16 июн. 2005 г.
- CVE-2007-593017Наблюдать
Cross-site scripting (XSS) vulnerability in the web interface in Cerberus FTP Server before 2.46 allows remote attackers to inject arbitrary
СредняяCVSS 4,3Эксплойта нетEPSS 1 %cerberus · ftp server10 нояб. 2007 г.
- CVE-2003-14768Наблюдать
Cerberus FTP Server 2.1 stores usernames and passwords in plaintext, which could allow local users to gain access.
НизкаяCVSS 2,1Эксплойта нетEPSS 0 %cerberus · ftp server31 дек. 2003 г.