Записи danielb
5 опубликованных записей вендора danielb.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-264 Permissions, Privileges, and Access Controls2
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
25Наблюдать | CVE-2012-1641Эксплойта нет | The finder_import function in the Finder module 6.x-1.x before 6.x-1.26, 7.x-1.x, and 7.x-2.x before 7.x-2.0-alpha8 for Drupal allows remotedrupal · drupal · CWE-264 | Средняя6,0 | — | 2,3 % | 28 авг. 2012 г. |
19Наблюдать | CVE-2012-1649Эксплойта нет | Cool Aid module before 6.x-1.9 for Drupal does not enforce access restrictions, which allows remote authenticated users with the administer drupal · drupal · CWE-264 | Средняя4,9 | — | 1,2 % | 9 сент. 2012 г. |
18Наблюдать | CVE-2012-1561Эксплойта нет | Cross-site scripting (XSS) vulnerability in the Finder module 6.x-1.x before 6.x-1.26, 7.x-1.x, and 7.x-2.x before 7.x-2.0-alpha8 for Drupaldanielb · finder · CWE-79 | Средняя4,3 | — | 3,0 % | 8 апр. 2014 г. |
18Наблюдать | CVE-2012-6645Эксплойта нет | Cross-site scripting (XSS) vulnerability in the autocomplete functionality in the Finder module 6.x-1.x before 6.x-1.26, 7.x-1.x, and 7.x-2.danielb · finder · CWE-79 | Средняя4,3 | — | 2,8 % | 8 апр. 2014 г. |
8Наблюдать | CVE-2012-1648Эксплойта нет | Cross-site scripting (XSS) vulnerability in the Cool Aid module before 6.x-1.9 for Drupal allows remote authenticated users with the adminisdrupal · drupal · CWE-79 | Низкая2,1 | — | 1,1 % | 9 сент. 2012 г. |
- CVE-2012-164125Наблюдать
The finder_import function in the Finder module 6.x-1.x before 6.x-1.26, 7.x-1.x, and 7.x-2.x before 7.x-2.0-alpha8 for Drupal allows remote
СредняяCVSS 6,0Эксплойта нетEPSS 2 %drupal · drupal28 авг. 2012 г.
- CVE-2012-164919Наблюдать
Cool Aid module before 6.x-1.9 for Drupal does not enforce access restrictions, which allows remote authenticated users with the administer
СредняяCVSS 4,9Эксплойта нетEPSS 1 %drupal · drupal9 сент. 2012 г.
- CVE-2012-156118Наблюдать
Cross-site scripting (XSS) vulnerability in the Finder module 6.x-1.x before 6.x-1.26, 7.x-1.x, and 7.x-2.x before 7.x-2.0-alpha8 for Drupal
СредняяCVSS 4,3Эксплойта нетEPSS 3 %danielb · finder8 апр. 2014 г.
- CVE-2012-664518Наблюдать
Cross-site scripting (XSS) vulnerability in the autocomplete functionality in the Finder module 6.x-1.x before 6.x-1.26, 7.x-1.x, and 7.x-2.
СредняяCVSS 4,3Эксплойта нетEPSS 3 %danielb · finder8 апр. 2014 г.
- CVE-2012-16488Наблюдать
Cross-site scripting (XSS) vulnerability in the Cool Aid module before 6.x-1.9 for Drupal allows remote authenticated users with the adminis
НизкаяCVSS 2,1Эксплойта нетEPSS 1 %drupal · drupal9 сент. 2012 г.