Записи exceedone
7 опубликованных записей вендора exceedone.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 28,6 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')5
- CWE-732 Incorrect Permission Assignment for Critical Resource1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
35Наблюдать | CVE-2022-37333Эксплойта нет | SQL injection vulnerability in the Exment ((PHP8) exceedone/exment v5.0.2 and earlier and exceedone/laravel-admin v3.0.0 and earlier, (PHP7)exceedone · exment · CWE-89 | Высокая8,8 | — | 1,4 % | 24 авг. 2022 г. |
21Наблюдать | CVE-2022-38080Эксплойта нет | Reflected cross-site scripting vulnerability in Exment ((PHP8) exceedone/exment v5.0.2 and earlier and exceedone/laravel-admin v3.0.0 and eaexceedone · exment · CWE-79 | Средняя5,4 | — | 0,9 % | 24 авг. 2022 г. |
21Наблюдать | CVE-2022-38089Эксплойта нет | Stored cross-site scripting vulnerability in Exment ((PHP8) exceedone/exment v5.0.2 and earlier and exceedone/laravel-admin v3.0.0 and earliexceedone · exment · CWE-79 | Средняя5,4 | — | 0,9 % | 24 авг. 2022 г. |
21Наблюдать | CVE-2020-5619Эксплойта нет | Cross-site scripting vulnerability in Exment prior to v3.6.0 allows remote authenticated attackers to inject arbitrary script or HTML via unexceedone · exment · CWE-79 | Средняя5,4 | — | 0,7 % | 24 авг. 2020 г. |
21Наблюдать | CVE-2020-5620Эксплойта нет | Cross-site scripting vulnerability in Exment prior to v3.6.0 allows remote authenticated attackers to inject arbitrary script or HTML via a exceedone · exment · CWE-79 | Средняя5,4 | — | 0,6 % | 24 авг. 2020 г. |
21Наблюдать | CVE-2024-47793Эксплойта нет | Stored cross-site scripting vulnerability exists in Exment v6.1.4 and earlier and Exment v5.0.11 and earlier.exceedone · exment · CWE-79 | Средняя5,4 | — | 0,3 % | 18 окт. 2024 г. |
15Наблюдать | CVE-2024-46897Эксплойта нет | Incorrect permission assignment for critical resource issue exists in Exment v6.1.4 and earlier and Exment v5.0.11 and earlier.exceedone · exment · CWE-732 | Низкая3,8 | — | 0,4 % | 18 окт. 2024 г. |
- CVE-2022-3733335Наблюдать
SQL injection vulnerability in the Exment ((PHP8) exceedone/exment v5.0.2 and earlier and exceedone/laravel-admin v3.0.0 and earlier, (PHP7)
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %exceedone · exment24 авг. 2022 г.
- CVE-2022-3808021Наблюдать
Reflected cross-site scripting vulnerability in Exment ((PHP8) exceedone/exment v5.0.2 and earlier and exceedone/laravel-admin v3.0.0 and ea
СредняяCVSS 5,4Эксплойта нетEPSS 1 %exceedone · exment24 авг. 2022 г.
- CVE-2022-3808921Наблюдать
Stored cross-site scripting vulnerability in Exment ((PHP8) exceedone/exment v5.0.2 and earlier and exceedone/laravel-admin v3.0.0 and earli
СредняяCVSS 5,4Эксплойта нетEPSS 1 %exceedone · exment24 авг. 2022 г.
- CVE-2020-561921Наблюдать
Cross-site scripting vulnerability in Exment prior to v3.6.0 allows remote authenticated attackers to inject arbitrary script or HTML via un
СредняяCVSS 5,4Эксплойта нетEPSS 1 %exceedone · exment24 авг. 2020 г.
- CVE-2020-562021Наблюдать
Cross-site scripting vulnerability in Exment prior to v3.6.0 allows remote authenticated attackers to inject arbitrary script or HTML via a
СредняяCVSS 5,4Эксплойта нетEPSS 1 %exceedone · exment24 авг. 2020 г.
- CVE-2024-4779321Наблюдать
Stored cross-site scripting vulnerability exists in Exment v6.1.4 and earlier and Exment v5.0.11 and earlier.
СредняяCVSS 5,4Эксплойта нетEPSS 0 %exceedone · exment18 окт. 2024 г.
- CVE-2024-4689715Наблюдать
Incorrect permission assignment for critical resource issue exists in Exment v6.1.4 and earlier and Exment v5.0.11 and earlier.
НизкаяCVSS 3,8Эксплойта нетEPSS 0 %exceedone · exment18 окт. 2024 г.