Перейти к содержимому
Noroxi

Записи codiad

14 опубликованных записей вендора codiad.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
4
С записью об исправлении
14,3 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

14 записей
  • CVE-2018-14009
    50В плане

    Codiad through 2.8.4 allows Remote Code Execution, a different vulnerability than CVE-2017-11366 and CVE-2017-15689.

    КритическаяCVSS 9,8Proof of conceptEPSS 38 %

    codiad · codiad12 июл. 2018 г.

  • CVE-2019-19208
    45В плане

    Codiad Web IDE through 2.8.4 allows PHP Code injection.

    КритическаяCVSS 9,8Proof of conceptEPSS 19 %

    codiad · codiad16 мар. 2020 г.

  • CVE-2017-11366
    41В плане

    components/filemanager/class.filemanager.php in Codiad before 2.8.4 is vulnerable to remote command execution because shell commands can be

    КритическаяCVSS 9,8Proof of conceptEPSS 8 %

    codiad · codiad20 авг. 2017 г.

  • CVE-2020-14043
    35Наблюдать

    ** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** A Cross Side Request Forgery (CSRF) vulnerability was found in Codiad v1.7.8 and later.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    codiad · codiad24 авг. 2020 г.

  • CVE-2018-19423
    33Наблюдать

    Codiad 2.8.4 allows remote authenticated administrators to execute arbitrary code by uploading an executable file.

    ВысокаяCVSS 7,2Proof of conceptEPSS 18 %

    codiad · codiad21 нояб. 2018 г.

  • CVE-2020-23355
    30Наблюдать

    ** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** Codiad 2.8.4 /componetns/user/class.user.php:Authenticate() is vulnerable in magic hash authentica

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    codiad · codiad27 янв. 2021 г.

  • CVE-2017-1000125
    30Наблюдать

    Codiad(full version) is vulnerable to write anything to configure file in the installation resulting upload a webshell.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    codiad · codiad17 нояб. 2017 г.

  • CVE-2017-20178
    30Наблюдать

    Codiad process.php saveJSON information disclosure

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    codiad · codiad21 февр. 2023 г.

  • CVE-2020-14044
    29Наблюдать

    ** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** A Server-Side Request Forgery (SSRF) vulnerability was found in Codiad v1.7.8 and later.

    ВысокаяCVSS 7,2Эксплойта нетEPSS 3 %

    codiad · codiad24 авг. 2020 г.

  • CVE-2020-14042
    24Наблюдать

    ** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** A Cross Site Scripting (XSS) vulnerability was found in Codiad v1.7.8 and later.

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    codiad · codiad25 авг. 2020 г.

  • CVE-2014-9581
    21Наблюдать

    Directory traversal vulnerability in components/filemanager/download.php in Codiad 2.4.3 allows remote attackers to read arbitrary files via

    СредняяCVSS 5,0Proof of conceptEPSS 4 %

    codiad · codiad8 янв. 2015 г.

  • CVE-2024-26557
    21Наблюдать

    Codiad v2.8.4 allows reflected XSS via the components/market/dialog.php type parameter.

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    codiad · codiad21 мар. 2024 г.

  • CVE-2013-7257
    18Наблюдать

    Cross-site scripting (XSS) vulnerability in Codiad 2.0.7 allows remote attackers to inject arbitrary web script or HTML via the Project Name

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    codiad · codiad3 янв. 2014 г.

  • CVE-2014-9582
    17Наблюдать

    Cross-site scripting (XSS) vulnerability in components/filemanager/dialog.php in Codiad 2.4.3 allows remote attackers to inject arbitrary we

    СредняяCVSS 4,3Proof of conceptEPSS 1 %

    codiad · codiad8 янв. 2015 г.