Записи ebay
4 опубликованных записей вендора ebay.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-287 Improper Authentication1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
4 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
38Наблюдать | CVE-2008-2475Эксплойта нет | eBay Enhanced Picture Uploader ActiveX control (EPUWALcontrol.dll) before 1.0.27 allows remote attackers to execute arbitrary commands via tebay · enhanced picture uploader activex control · CWE-78 | Критическая9,3 | — | 4,1 % | 9 июн. 2009 г. |
31Наблюдать | CVE-2006-1176Эксплойта нет | Buffer overflow in eBay Enhanced Picture Services (aka EPUImageControl Class) in EUPWALcontrol.dll before 1.0.3.48, as used in Sell Your Iteebay · enhanced picture services | Высокая7,5 | — | 4,6 % | 7 июл. 2006 г. |
31Наблюдать | CVE-2023-26107Эксплойта нет | All versions of the package sketchsvg are vulnerable to Arbitrary Code Injection when invoking shell.exec without sanitization nor parametriebay · sketchsvg · CWE-94 | Высокая7,8 | — | 0,4 % | 6 мар. 2023 г. |
11Наблюдать | CVE-2010-4211Эксплойта нет | The PayPal app before 3.0.1 for iOS does not verify that the server hostname matches the domain name of the subject of an X.509 certificate,ebay · paypal · CWE-287 | Низкая2,9 | — | 0,4 % | 8 нояб. 2010 г. |
- CVE-2008-247538Наблюдать
eBay Enhanced Picture Uploader ActiveX control (EPUWALcontrol.dll) before 1.0.27 allows remote attackers to execute arbitrary commands via t
КритическаяCVSS 9,3Эксплойта нетEPSS 4 %ebay · enhanced picture uploader activex control9 июн. 2009 г.
- CVE-2006-117631Наблюдать
Buffer overflow in eBay Enhanced Picture Services (aka EPUImageControl Class) in EUPWALcontrol.dll before 1.0.3.48, as used in Sell Your Ite
ВысокаяCVSS 7,5Эксплойта нетEPSS 5 %ebay · enhanced picture services7 июл. 2006 г.
- CVE-2023-2610731Наблюдать
All versions of the package sketchsvg are vulnerable to Arbitrary Code Injection when invoking shell.exec without sanitization nor parametri
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %ebay · sketchsvg6 мар. 2023 г.
- CVE-2010-421111Наблюдать
The PayPal app before 3.0.1 for iOS does not verify that the server hostname matches the domain name of the subject of an X.509 certificate,
НизкаяCVSS 2,9Эксплойта нетEPSS 0 %ebay · paypal8 нояб. 2010 г.