Записи e-xoops
7 опубликованных записей вендора e-xoops.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
30Наблюдать | CVE-2005-0911Эксплойта нет | Multiple SQL injection vulnerabilities in exoops may allow remote attackers to execute arbitrary SQL commands via (1) the viewcat parameter e-xoops · e-xoops | Высокая7,5 | — | 1,1 % | 28 мар. 2005 г. |
30Наблюдать | CVE-2007-6380Proof of concept | Multiple SQL injection vulnerabilities in e-Xoops (exoops) 1.08, and 1.05 Rev 1 through 3, allow remote attackers to execute arbitrary SQL ce-xoops · e-xoops · CWE-89 | Высокая7,5 | — | 1,0 % | 14 дек. 2007 г. |
23Наблюдать | CVE-2005-0828Proof of concept | highlight.php in (1) RUNCMS 1.1A, (2) CIAMOS 0.9.2 RC1, (3) e-Xoops 1.05 Rev3, and possibly other products based on e-Xoops (exoops), allowsciamos · ciamos | Средняя5,0 | — | 9,2 % | 2 мая 2005 г. |
20Наблюдать | CVE-2005-0827Эксплойта нет | Viewcat.php in (1) RUNCMS 1.1A, (2) Ciamos 0.9.2 RC1, e-Xoops 1.05 Rev3, and possibly other products based on e-Xoops (exoops), allow remoteciamos · ciamos | Средняя5,0 | — | 1,4 % | 2 мая 2005 г. |
20Наблюдать | CVE-2005-1031Эксплойта нет | RUNCMS 1.1A, and possibly other products based on e-Xoops (exoops), when "Allow custom avatar upload" is enabled, does not properly verify ue-xoops · e-xoops | Средняя5,0 | — | 1,4 % | 2 мая 2005 г. |
17Наблюдать | CVE-2008-7036Proof of concept | Multiple cross-site scripting (XSS) vulnerabilities in index.php in DevTracker module 3.0 for bcoos 1.1.11 and earlier, and DevTracker modulbcoos · devtracker · CWE-79 | Средняя4,3 | — | 1,5 % | 24 авг. 2009 г. |
17Наблюдать | CVE-2005-0910Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in exoops allow remote attackers to inject arbitrary web script or HTML via (1) the sorte-xoops · e-xoops | Средняя4,3 | — | 1,0 % | 2 мая 2005 г. |
- CVE-2005-091130Наблюдать
Multiple SQL injection vulnerabilities in exoops may allow remote attackers to execute arbitrary SQL commands via (1) the viewcat parameter
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %e-xoops · e-xoops28 мар. 2005 г.
- CVE-2007-638030Наблюдать
Multiple SQL injection vulnerabilities in e-Xoops (exoops) 1.08, and 1.05 Rev 1 through 3, allow remote attackers to execute arbitrary SQL c
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %e-xoops · e-xoops14 дек. 2007 г.
- CVE-2005-082823Наблюдать
highlight.php in (1) RUNCMS 1.1A, (2) CIAMOS 0.9.2 RC1, (3) e-Xoops 1.05 Rev3, and possibly other products based on e-Xoops (exoops), allows
СредняяCVSS 5,0Proof of conceptEPSS 9 %ciamos · ciamos2 мая 2005 г.
- CVE-2005-082720Наблюдать
Viewcat.php in (1) RUNCMS 1.1A, (2) Ciamos 0.9.2 RC1, e-Xoops 1.05 Rev3, and possibly other products based on e-Xoops (exoops), allow remote
СредняяCVSS 5,0Эксплойта нетEPSS 1 %ciamos · ciamos2 мая 2005 г.
- CVE-2005-103120Наблюдать
RUNCMS 1.1A, and possibly other products based on e-Xoops (exoops), when "Allow custom avatar upload" is enabled, does not properly verify u
СредняяCVSS 5,0Эксплойта нетEPSS 1 %e-xoops · e-xoops2 мая 2005 г.
- CVE-2008-703617Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in index.php in DevTracker module 3.0 for bcoos 1.1.11 and earlier, and DevTracker modul
СредняяCVSS 4,3Proof of conceptEPSS 1 %bcoos · devtracker24 авг. 2009 г.
- CVE-2005-091017Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in exoops allow remote attackers to inject arbitrary web script or HTML via (1) the sort
СредняяCVSS 4,3Эксплойта нетEPSS 1 %e-xoops · e-xoops2 мая 2005 г.