Перейти к содержимому
Noroxi

Записи extensis

10 опубликованных записей вендора extensis.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
0
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 17
  2. 20
  3. 22

Столбик: всего · тёмная часть: CISA KEV.

Повторяющиеся классы

Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

CWE

Все записи

10 записей
  • CVE-2013-3944
    39Наблюдать

    Stack-based buffer overflow in the MrSID plugin (MrSID.dll) before 4.37 for IrfanView allows remote attackers to execute arbitrary code via

    ВысокаяCVSS 7,8Эксплойта нетEPSS 28 %

    extensis · mrsid2 янв. 2020 г.

  • CVE-2022-24254
    36Наблюдать

    An unrestricted file upload vulnerability in the Backup/Restore Archive component of Extensis Portfolio v4.0 allows remote attackers to exec

    ВысокаяCVSS 8,8Эксплойта нетEPSS 3 %

    extensis · portfolio1 мар. 2022 г.

  • CVE-2022-24252
    36Наблюдать

    An unrestricted file upload vulnerability in the FileTransferServlet component of Extensis Portfolio v4.0 allows remote attackers to execute

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    extensis · portfolio1 мар. 2022 г.

  • CVE-2022-24255
    35Наблюдать

    Extensis Portfolio v4.0 was discovered to contain hardcoded credentials which allows attackers to gain administrator privileges.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    extensis · portfolio1 мар. 2022 г.

  • CVE-2022-24251
    35Наблюдать

    Extensis Portfolio v4.0 was discovered to contain an authenticated unrestricted file upload vulnerability via the Catalog Asset Upload funct

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    extensis · portfolio1 мар. 2022 г.

  • CVE-2022-24253
    35Наблюдать

    Extensis Portfolio v4.0 was discovered to contain an authenticated unrestricted file upload vulnerability via the component AdminFileTransfe

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    extensis · portfolio1 мар. 2022 г.

  • CVE-2013-3946
    32Наблюдать

    Heap-based buffer overflow in the MrSID plugin (MrSID.dll) before 4.37 for IrfanView allows remote attackers to execute arbitrary code via a

    ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %

    extensis · mrsid2 янв. 2020 г.

  • CVE-2013-3945
    32Наблюдать

    The MrSID plugin (MrSID.dll) before 4.37 for IrfanView allows remote attackers to execute arbitrary code via a nband tag.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %

    extensis · mrsid2 янв. 2020 г.

  • CVE-2017-18006
    24Наблюдать

    netpub/server.np in Extensis Portfolio NetPublish has XSS in the quickfind parameter, aka Open Bug Bounty ID OBB-290447.

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    extensis · portfolio netpublish31 дек. 2017 г.

  • CVE-2005-4510
    21Наблюдать

    Directory traversal vulnerability in server.np in NetPublish Server 7 allows remote attackers to read arbitrary files via "../" sequences in

    СредняяCVSS 5,0Proof of conceptEPSS 3 %

    extensis · netpublish server22 дек. 2005 г.