Записи comdev
16 опубликованных записей вендора comdev.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 13
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')3
- CWE-94 Improper Control of Generation of Code ('Code Injection')2
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
16 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2018-6368Proof of concept | SQL Injection exists in the JomEstate PRO through 3.7 component for Joomla! via the id parameter in a task=detailed action.comdev · jomestate pro · CWE-89 | Критическая9,8 | — | 2,7 % | 17 февр. 2018 г. |
40В плане | CVE-2007-2422Эксплойта нет | Multiple PHP remote file inclusion vulnerabilities in Modules Builder (modbuild) 4.1 for Comdev One Admin allow remote attackers to execute comdev · modules builder | Критическая9,8 | — | 2,4 % | 1 мая 2007 г. |
32Наблюдать | CVE-2006-5101Эксплойта нет | PHP remote file inclusion vulnerability in include.php in Comdev CSV Importer 3.1 and possibly 4.1, as used in (1) Comdev Contact Form 3.1, comdev · comdev csv importer · CWE-94 | Высокая7,5 | — | 6,1 % | 3 окт. 2006 г. |
30Наблюдать | CVE-2006-5439Эксплойта нет | PHP remote file inclusion vulnerability in adminfoot.php in Comdev Misc Tools 4.1, when register_globals is enabled, allows remote attackerscomdev · comdev misc tools · CWE-94 | Высокая7,5 | — | 1,5 % | 20 окт. 2006 г. |
30Наблюдать | CVE-2006-5441Эксплойта нет | PHP remote file inclusion vulnerability in adminfoot.php in Comdev Web Blogger 4.1, when register_globals is enabled, allows remote attackercomdev · comdev web blogger | Высокая7,5 | — | 1,5 % | 20 окт. 2006 г. |
30Наблюдать | CVE-2006-5438Эксплойта нет | PHP remote file inclusion vulnerability in adminfoot.php in Comdev Forum 4.1, when register_globals is enabled, allows remote attackers to ecomdev · comdev forum | Высокая7,5 | — | 1,5 % | 20 окт. 2006 г. |
30Наблюдать | CVE-2006-5440Эксплойта нет | PHP remote file inclusion vulnerability in adminfoot.php in Comdev Form Designer 4.1, when register_globals is enabled, allows remote attackcomdev · comdev form designer | Высокая7,5 | — | 1,5 % | 20 окт. 2006 г. |
30Наблюдать | CVE-2007-3081Эксплойта нет | PHP remote file inclusion vulnerability in sampleecommerce.php in Comdev eCommerce 4.1 allows remote attackers to execute arbitrary PHP codecomdev · comdev ecommerce | Высокая7,5 | — | 1,4 % | 6 июн. 2007 г. |
30Наблюдать | CVE-2007-3084Эксплойта нет | PHP remote file inclusion vulnerability in sampleblogger.php in Comdev Web Blogger 4.1 allows remote attackers to execute arbitrary PHP codecomdev · comdev web blogger | Высокая7,5 | — | 1,3 % | 6 июн. 2007 г. |
30Наблюдать | CVE-2005-3825Proof of concept | SQL injection vulnerability in index.php in Comdev Vote Caster 3.1 and earlier allows remote attackers to execute arbitrary SQL commands viacomdev · comdev vote caster | Высокая7,5 | — | 1,2 % | 25 нояб. 2005 г. |
30Наблюдать | CVE-2008-1872Proof of concept | SQL injection vulnerability in home.news.php in Comdev News Publisher 4.1.2 allows remote attackers to execute arbitrary SQL commands via thcomdev · comdev news publisher · CWE-89 | Высокая7,5 | — | 1,0 % | 17 апр. 2008 г. |
28Наблюдать | CVE-2006-6045Proof of concept | Multiple PHP remote file inclusion vulnerabilities in Comdev One Admin Pro 4.1 allow remote attackers to execute arbitrary PHP code via a URcomdev · comdev one admin pro | Средняя6,8 | — | 2,8 % | 21 нояб. 2006 г. |
27Наблюдать | CVE-2008-6250Proof of concept | SQL injection vulnerability in Comdev Web Blogger 4.1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the arcmoncomdev · comdev web blogger · CWE-89 | Средняя6,8 | — | 1,1 % | 23 февр. 2009 г. |
22Наблюдать | CVE-2005-2543Proof of concept | Directory traversal vulnerability in wce.download.php in Comdev eCommerce 3.0 allows remote attackers to download arbitrary files via a ..comdev · comdev ecommerce | Средняя5,0 | — | 6,0 % | 10 авг. 2005 г. |
20Наблюдать | CVE-2005-2544Эксплойта нет | PHP remote file inclusion vulnerability in config.php in Comdev eCommerce 3.0 allows remote attackers to execute arbitrary PHP code via the comdev · comdev ecommerce | Средняя5,0 | — | 1,5 % | 10 авг. 2005 г. |
17Наблюдать | CVE-2005-2138Эксплойта нет | Cross-site scripting (XSS) vulnerability in index.php in Comdev eCommerce 3.0 and 3.1 allows remote attackers to inject arbitrary web scriptcomdev · comdev ecommerce | Средняя4,3 | — | 1,0 % | 5 июл. 2005 г. |
- CVE-2018-636840В плане
SQL Injection exists in the JomEstate PRO through 3.7 component for Joomla! via the id parameter in a task=detailed action.
КритическаяCVSS 9,8Proof of conceptEPSS 3 %comdev · jomestate pro17 февр. 2018 г.
- CVE-2007-242240В плане
Multiple PHP remote file inclusion vulnerabilities in Modules Builder (modbuild) 4.1 for Comdev One Admin allow remote attackers to execute
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %comdev · modules builder1 мая 2007 г.
- CVE-2006-510132Наблюдать
PHP remote file inclusion vulnerability in include.php in Comdev CSV Importer 3.1 and possibly 4.1, as used in (1) Comdev Contact Form 3.1,
ВысокаяCVSS 7,5Эксплойта нетEPSS 6 %comdev · comdev csv importer3 окт. 2006 г.
- CVE-2006-543930Наблюдать
PHP remote file inclusion vulnerability in adminfoot.php in Comdev Misc Tools 4.1, when register_globals is enabled, allows remote attackers
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %comdev · comdev misc tools20 окт. 2006 г.
- CVE-2006-544130Наблюдать
PHP remote file inclusion vulnerability in adminfoot.php in Comdev Web Blogger 4.1, when register_globals is enabled, allows remote attacker
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %comdev · comdev web blogger20 окт. 2006 г.
- CVE-2006-543830Наблюдать
PHP remote file inclusion vulnerability in adminfoot.php in Comdev Forum 4.1, when register_globals is enabled, allows remote attackers to e
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %comdev · comdev forum20 окт. 2006 г.
- CVE-2006-544030Наблюдать
PHP remote file inclusion vulnerability in adminfoot.php in Comdev Form Designer 4.1, when register_globals is enabled, allows remote attack
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %comdev · comdev form designer20 окт. 2006 г.
- CVE-2007-308130Наблюдать
PHP remote file inclusion vulnerability in sampleecommerce.php in Comdev eCommerce 4.1 allows remote attackers to execute arbitrary PHP code
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %comdev · comdev ecommerce6 июн. 2007 г.
- CVE-2007-308430Наблюдать
PHP remote file inclusion vulnerability in sampleblogger.php in Comdev Web Blogger 4.1 allows remote attackers to execute arbitrary PHP code
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %comdev · comdev web blogger6 июн. 2007 г.
- CVE-2005-382530Наблюдать
SQL injection vulnerability in index.php in Comdev Vote Caster 3.1 and earlier allows remote attackers to execute arbitrary SQL commands via
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %comdev · comdev vote caster25 нояб. 2005 г.
- CVE-2008-187230Наблюдать
SQL injection vulnerability in home.news.php in Comdev News Publisher 4.1.2 allows remote attackers to execute arbitrary SQL commands via th
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %comdev · comdev news publisher17 апр. 2008 г.
- CVE-2006-604528Наблюдать
Multiple PHP remote file inclusion vulnerabilities in Comdev One Admin Pro 4.1 allow remote attackers to execute arbitrary PHP code via a UR
СредняяCVSS 6,8Proof of conceptEPSS 3 %comdev · comdev one admin pro21 нояб. 2006 г.
- CVE-2008-625027Наблюдать
SQL injection vulnerability in Comdev Web Blogger 4.1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the arcmon
СредняяCVSS 6,8Proof of conceptEPSS 1 %comdev · comdev web blogger23 февр. 2009 г.
- CVE-2005-254322Наблюдать
Directory traversal vulnerability in wce.download.php in Comdev eCommerce 3.0 allows remote attackers to download arbitrary files via a ..
СредняяCVSS 5,0Proof of conceptEPSS 6 %comdev · comdev ecommerce10 авг. 2005 г.
- CVE-2005-254420Наблюдать
PHP remote file inclusion vulnerability in config.php in Comdev eCommerce 3.0 allows remote attackers to execute arbitrary PHP code via the
СредняяCVSS 5,0Эксплойта нетEPSS 1 %comdev · comdev ecommerce10 авг. 2005 г.
- CVE-2005-213817Наблюдать
Cross-site scripting (XSS) vulnerability in index.php in Comdev eCommerce 3.0 and 3.1 allows remote attackers to inject arbitrary web script
СредняяCVSS 4,3Эксплойта нетEPSS 1 %comdev · comdev ecommerce5 июл. 2005 г.