Записи dieselscripts
9 опубликованных записей вендора dieselscripts.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 5
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
9 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
31Наблюдать | CVE-2006-4357Proof of concept | PHP remote file inclusion vulnerability in clients/index.php in Diesel Smart Traffic allows remote attackers to execute arbitrary PHP code vdieselscripts · diesel smart traffic | Высокая7,5 | — | 2,6 % | 26 авг. 2006 г. |
30Наблюдать | CVE-2006-3763Proof of concept | SQL injection vulnerability in category.php in Diesel Joke Site allows remote attackers to execute arbitrary SQL commands via the id parametdieselscripts · diesel joke site | Высокая7,5 | — | 1,3 % | 21 июл. 2006 г. |
30Наблюдать | CVE-2008-4150Proof of concept | SQL injection vulnerability in picture_category.php in Diesel Joke Site allows remote attackers to execute arbitrary SQL commands via the iddieselscripts · diesel joke site · CWE-89 | Высокая7,5 | — | 1,0 % | 24 сент. 2008 г. |
30Наблюдать | CVE-2008-6468Proof of concept | SQL injection vulnerability in index.php in Diesel Pay allows remote attackers to execute arbitrary SQL commands via the area parameter in adieselscripts · diesel pay · CWE-89 | Высокая7,5 | — | 0,9 % | 13 мар. 2009 г. |
30Наблюдать | CVE-2008-6467Proof of concept | SQL injection vulnerability in jobs/jobseekers/job-info.php in Diesel Job Site allows remote attackers to execute arbitrary SQL commands viadieselscripts · diesel job site · CWE-89 | Высокая7,5 | — | 0,9 % | 13 мар. 2009 г. |
20Наблюдать | CVE-2006-2540Эксплойта нет | Privacy leak in install.php for Diesel PHP Job Site sends sensitive information such as user credentials to an e-mail address controlled by dieselscripts · diesel job site | Средняя5,0 | — | 1,2 % | 23 мая 2006 г. |
18Наблюдать | CVE-2006-4362Proof of concept | Cross-site scripting (XSS) vulnerability in getad.php in Diesel Paid Mail allows remote attackers to inject arbitrary web script or HTML viadieselscripts · diesel paid mail | Средняя4,3 | — | 1,9 % | 26 авг. 2006 г. |
18Наблюдать | CVE-2006-4358Proof of concept | Cross-site scripting (XSS) vulnerability in index.php in Diesel Pay allows remote attackers to inject arbitrary web script or HTML via the rdieselscripts · diesel pay | Средняя4,3 | — | 1,9 % | 26 авг. 2006 г. |
17Наблюдать | CVE-2006-4361Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in jobseekers/forgot.php in Diesel Job Site allow remote attackers to inject arbitrary wdieselscripts · diesel job site | Средняя4,3 | — | 1,3 % | 26 авг. 2006 г. |
- CVE-2006-435731Наблюдать
PHP remote file inclusion vulnerability in clients/index.php in Diesel Smart Traffic allows remote attackers to execute arbitrary PHP code v
ВысокаяCVSS 7,5Proof of conceptEPSS 3 %dieselscripts · diesel smart traffic26 авг. 2006 г.
- CVE-2006-376330Наблюдать
SQL injection vulnerability in category.php in Diesel Joke Site allows remote attackers to execute arbitrary SQL commands via the id paramet
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %dieselscripts · diesel joke site21 июл. 2006 г.
- CVE-2008-415030Наблюдать
SQL injection vulnerability in picture_category.php in Diesel Joke Site allows remote attackers to execute arbitrary SQL commands via the id
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %dieselscripts · diesel joke site24 сент. 2008 г.
- CVE-2008-646830Наблюдать
SQL injection vulnerability in index.php in Diesel Pay allows remote attackers to execute arbitrary SQL commands via the area parameter in a
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %dieselscripts · diesel pay13 мар. 2009 г.
- CVE-2008-646730Наблюдать
SQL injection vulnerability in jobs/jobseekers/job-info.php in Diesel Job Site allows remote attackers to execute arbitrary SQL commands via
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %dieselscripts · diesel job site13 мар. 2009 г.
- CVE-2006-254020Наблюдать
Privacy leak in install.php for Diesel PHP Job Site sends sensitive information such as user credentials to an e-mail address controlled by
СредняяCVSS 5,0Эксплойта нетEPSS 1 %dieselscripts · diesel job site23 мая 2006 г.
- CVE-2006-436218Наблюдать
Cross-site scripting (XSS) vulnerability in getad.php in Diesel Paid Mail allows remote attackers to inject arbitrary web script or HTML via
СредняяCVSS 4,3Proof of conceptEPSS 2 %dieselscripts · diesel paid mail26 авг. 2006 г.
- CVE-2006-435818Наблюдать
Cross-site scripting (XSS) vulnerability in index.php in Diesel Pay allows remote attackers to inject arbitrary web script or HTML via the r
СредняяCVSS 4,3Proof of conceptEPSS 2 %dieselscripts · diesel pay26 авг. 2006 г.
- CVE-2006-436117Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in jobseekers/forgot.php in Diesel Job Site allow remote attackers to inject arbitrary w
СредняяCVSS 4,3Эксплойта нетEPSS 1 %dieselscripts · diesel job site26 авг. 2006 г.