Перейти к содержимому
Noroxi

Записи element-it

6 опубликованных записей вендора element-it.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
1
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 21
  2. 22

Столбик: всего · тёмная часть: CISA KEV.

Повторяющиеся классы

Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

CWE

Все записи

6 записей
  • CVE-2009-4817
    28Наблюдать

    Unrestricted file upload vulnerability in Element-IT Ultimate Uploader 1.3 allows remote attackers to execute arbitrary code by uploading a

    СредняяCVSS 6,8Proof of conceptEPSS 3 %

    element-it · ultimate uploader27 апр. 2010 г.

  • CVE-2021-33211
    27Наблюдать

    A Directory Traversal vulnerability in the Unzip feature in Elements-IT HTTP Commander 5.3.3 allows remote authenticated users to write file

    СредняяCVSS 6,5Эксплойта нетEPSS 2 %

    element-it · http commander14 июл. 2021 г.

  • CVE-2021-33213
    26Наблюдать

    An SSRF vulnerability in the "Upload from URL" feature in Elements-IT HTTP Commander 5.3.3 allows remote authenticated users to retrieve HTT

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    element-it · http commander14 июл. 2021 г.

  • CVE-2022-24573
    24Наблюдать

    A stored cross-site scripting (XSS) vulnerability in the admin interface in Element-IT HTTP Commander 7.0.0 allows unauthenticated users to

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    element-it · http commander2 мар. 2022 г.

  • CVE-2021-33212
    21Наблюдать

    A Cross-site scripting (XSS) vulnerability in the "View in Browser" feature in Elements-IT HTTP Commander 5.3.3 allows remote authenticated

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    element-it · http commander14 июл. 2021 г.

  • CVE-2021-40813
    21Наблюдать

    A cross-site scripting (XSS) vulnerability in the "Zip content" feature in Element-IT HTTP Commander 3.1.9 allows remote authenticated users

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    element-it · http commander13 янв. 2022 г.