Перейти к содержимому
Noroxi

Записи dynpg

11 опубликованных записей вендора dynpg.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
2
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

11 записей
  • CVE-2010-4400
    31Наблюдать

    SQL injection vulnerability in _rights.php in DynPG CMS 4.2.0 allows remote attackers to execute arbitrary SQL commands via the giveRights_U

    ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

    dynpg · dynpg6 дек. 2010 г.

  • CVE-2010-1299
    23Наблюдать

    Multiple PHP remote file inclusion vulnerabilities in DynPG CMS 4.1.0, and possibly earlier, when magic_quotes_gpc is disabled and register_

    СредняяCVSS 5,1Proof of conceptEPSS 11 %

    dynpg · dynpg7 апр. 2010 г.

  • CVE-2010-4401
    22Наблюдать

    languages.inc.php in DynPG CMS 4.2.0 allows remote attackers to obtain sensitive information via a direct request, which reveals the install

    СредняяCVSS 5,0Proof of conceptEPSS 6 %

    dynpg · dynpg6 дек. 2010 г.

  • CVE-2020-27406
    21Наблюдать

    Cross Site Scripting (XSS) vulnerability in DynPG 4.9.1, allows authenticated attackers to execute arbitrary code via the groupname.

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    dynpg · dynpg2 нояб. 2021 г.

  • CVE-2010-4399
    19Наблюдать

    Directory traversal vulnerability in languages.inc.php in DynPG CMS 4.1.1 and 4.2.0, when magic_quotes_gpc is disabled, allows remote attack

    СредняяCVSS 4,3Proof of conceptEPSS 6 %

    dynpg · dynpg6 дек. 2010 г.

  • CVE-2021-27531
    19Наблюдать

    A cross-site scripting (XSS) vulnerability in DynPG version 4.9.2 allows remote attackers to inject JavaScript via the "query" parameter.

    СредняяCVSS 4,8Эксплойта нетEPSS 1 %

    dynpg · dynpg23 мар. 2021 г.

  • CVE-2021-27527
    19Наблюдать

    A cross-site scripting (XSS) vulnerability in DynPG version 4.9.2 allows remote attackers to inject JavaScript via the "valueID" parameter.

    СредняяCVSS 4,8Эксплойта нетEPSS 1 %

    dynpg · dynpg23 мар. 2021 г.

  • CVE-2021-27528
    19Наблюдать

    A cross-site scripting (XSS) vulnerability in DynPG version 4.9.2 allows remote attackers to inject JavaScript via the "refID" parameter.

    СредняяCVSS 4,8Эксплойта нетEPSS 1 %

    dynpg · dynpg23 мар. 2021 г.

  • CVE-2021-27529
    19Наблюдать

    A cross-site scripting (XSS) vulnerability in DynPG version 4.9.2 allows remote attackers to inject JavaScript via the "limit" parameter.

    СредняяCVSS 4,8Эксплойта нетEPSS 1 %

    dynpg · dynpg23 мар. 2021 г.

  • CVE-2021-27530
    19Наблюдать

    A cross-site scripting (XSS) vulnerability in DynPG version 4.9.2 allow remote attacker to inject javascript via URI in /index.php.

    СредняяCVSS 4,8Эксплойта нетEPSS 1 %

    dynpg · dynpg23 мар. 2021 г.

  • CVE-2021-27526
    19Наблюдать

    A cross-site scripting (XSS) vulnerability in DynPG version 4.9.2 allows remote attackers to inject JavaScript via the "page" parameter.

    СредняяCVSS 4,8Эксплойта нетEPSS 1 %

    dynpg · dynpg23 мар. 2021 г.