Перейти к содержимому
Noroxi

Записи gforge

22 опубликованных записей вендора gforge.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
11
С записью об исправлении
72,7 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 19

Столбик: всего · тёмная часть: CISA KEV.

Все записи

22 записей
  • CVE-2007-2298
    31Наблюдать

    Multiple PHP remote file inclusion vulnerabilities in Garennes 0.6.1 and earlier allow remote attackers to execute arbitrary PHP code via a

    ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

    gforge · garennes26 апр. 2007 г.

  • CVE-2008-6189
    31Наблюдать

    SQL injection vulnerability in GForge 4.5.19 allows remote attackers to execute arbitrary SQL commands via the offset parameter to (1) new/i

    ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

    gforge · gforge19 февр. 2009 г.

  • CVE-2008-0173
    31Наблюдать

    SQL injection vulnerability in Gforge 4.6.99 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified parameter

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    gforge · gforge15 янв. 2008 г.

  • CVE-2007-3913
    31Наблюдать

    SQL injection vulnerability in Gforge before 3.1 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

    gforge · gforge6 сент. 2007 г.

  • CVE-2009-4070
    31Наблюдать

    SQL injection vulnerability in GForge 4.5.14, 4.7.3, and possibly other versions allows remote attackers to execute arbitrary SQL commands v

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    gforge · gforge24 нояб. 2009 г.

  • CVE-2008-2381
    30Наблюдать

    SQL injection vulnerability in the create function in common/include/GroupJoinRequest.class in GForge 4.5 and 4.6 allows remote attackers to

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    gforge · gforge2 янв. 2009 г.

  • CVE-2008-6188
    30Наблюдать

    SQL injection vulnerability in people/editprofile.php in Gforge 4.6 rc1 and earlier allows remote attackers to execute arbitrary SQL command

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    gforge · gforge19 февр. 2009 г.

  • CVE-2008-6187
    30Наблюдать

    SQL injection vulnerability in frs/shownotes.php in Gforge 4.5.19 and earlier allows remote attackers to execute arbitrary SQL commands via

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    gforge · gforge19 февр. 2009 г.

  • CVE-2007-0176
    28Наблюдать

    Cross-site scripting (XSS) vulnerability in search/advanced_search.php in GForge 4.5.11 allows remote attackers to inject arbitrary web scri

    СредняяCVSS 6,8Эксплойта нетEPSS 2 %

    gforge · gforge10 янв. 2007 г.

  • CVE-2007-0246
    28Наблюдать

    plugins/scmcvs/www/cvsweb.php in the CVSWeb CGI in GForge 4.5.16 before 20070524, aka gforge-plugin-scmcvs, allows remote attackers to execu

    СредняяCVSS 6,8Эксплойта нетEPSS 2 %

    gforge · gforge29 мая 2007 г.

  • CVE-2007-4966
    27Наблюдать

    SQL injection vulnerability in www/people/editprofile.php in GForge 4.6b2 and earlier allows remote attackers to execute arbitrary SQL comma

    СредняяCVSS 6,8Proof of conceptEPSS 1 %

    gforge · gforge18 сент. 2007 г.

  • CVE-2005-1752
    26Наблюдать

    viewFile.php in the scm component of Gforge before 4.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the

    СредняяCVSS 6,4Proof of conceptEPSS 4 %

    gforge · gforge31 дек. 2005 г.

  • CVE-2019-10016
    24Наблюдать

    GForge Advanced Server 6.4.4 allows XSS via the commonsearch.php words parameter, as demonstrated by a snippet/search/?words= substring.

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    gforge · advanced server24 мар. 2019 г.

  • CVE-2005-0299
    21Наблюдать

    Directory traversal vulnerability in GForge 3.3 and earlier allows remote attackers to list arbitrary directories via a ..

    СредняяCVSS 5,0Эксплойта нетEPSS 2 %

    gforge · gforge2 мая 2005 г.

  • CVE-2005-2431
    20Наблюдать

    The (1) lost password and (2) account pending features in GForge 4.5 do not properly set a limit on the number of e-mails sent to an e-mail

    СредняяCVSS 5,0Эксплойта нетEPSS 1 %

    gforge · gforge3 авг. 2005 г.

  • CVE-2005-2430
    18Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in GForge 4.5 allow remote attackers to inject arbitrary web script or HTML via the (1)

    СредняяCVSS 4,3Эксплойта нетEPSS 3 %

    gforge · gforge3 авг. 2005 г.

  • CVE-2009-4069
    18Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in GForge 4.5.14, 4.7.3, and possibly other versions allow remote attackers to inject ar

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    gforge · gforge24 нояб. 2009 г.

  • CVE-2009-3303
    18Наблюдать

    Cross-site scripting (XSS) vulnerability in www/help/tracker.php in GForge 4.5.14, 4.7 rc2, and 4.8.1 allows remote attackers to inject arbi

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    gforge · gforge24 нояб. 2009 г.

  • CVE-2008-0167
    18Наблюдать

    The write_array_file function in utils/include.pl in GForge 4.5.14 updates configuration files by truncating them to zero length and then wr

    СредняяCVSS 4,6Proof of conceptEPSS 1 %

    gforge · gforge18 мая 2008 г.

  • CVE-2007-3918
    17Наблюдать

    Cross-site scripting (XSS) vulnerability in account/verify.php in GForge 4.6b2 allows remote attackers to inject arbitrary web script or HTM

    СредняяCVSS 4,3Эксплойта нетEPSS 1 %

    gforge · gforge5 окт. 2007 г.

  • CVE-2009-3304
    13Наблюдать

    GForge 4.5.14, 4.7 rc2, and 4.8.2 allows local users to overwrite arbitrary files via a symlink attack on authorized_keys files in users' ho

    НизкаяCVSS 3,3Эксплойта нетEPSS 0 %

    gforge · gforge4 дек. 2009 г.

  • CVE-2007-3921
    13Наблюдать

    gforge 3.1 and 4.5.14 allows local users to truncate arbitrary files via a symlink attack on temporary files.

    НизкаяCVSS 3,3Эксплойта нетEPSS 0 %

    gforge · gforge8 нояб. 2007 г.