Перейти к содержимому
Noroxi

Записи gplhost

16 опубликованных записей вендора gplhost.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
3
С записью об исправлении
56,3 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

16 записей
  • CVE-2011-5274
    31Наблюдать

    The drawAdminTools_PackageInstaller function in shared/inc/forms/packager.php in Domain Technologie Control (DTC) before 0.32.11 allows remo

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    gplhost · domain technologie control21 мар. 2014 г.

  • CVE-2011-0434
    30Наблюдать

    Multiple SQL injection vulnerabilities in Domain Technologie Control (DTC) before 0.32.9 allow remote attackers to execute arbitrary SQL com

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    gplhost · domain technologie control7 мар. 2011 г.

  • CVE-2009-0402
    30Наблюдать

    SQL injection vulnerability in client/new_account.php in Domain Technologie Control (DTC) before 0.29.16 allows remote attackers to execute

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    gplhost · domain technologie control3 февр. 2009 г.

  • CVE-2011-5275
    30Наблюдать

    The install script in Domain Technologie Control (DTC) before 0.34.1 gives sudo permissions for chrootuid to the dtc user, which makes it ea

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    gplhost · domain technologie control21 мар. 2014 г.

  • CVE-2008-4951
    27Наблюдать

    dtc 0.29.6 allows local users to overwrite arbitrary files via a symlink attack on (a) /tmp/awstats.log, (b) /tmp/spam.log.#####, and (c) /t

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    gplhost · dtc-common5 нояб. 2008 г.

  • CVE-2011-3195
    26Наблюдать

    shared/inc/sql/lists.php in Domain Technologie Control (DTC) before 0.34.1 allows remote authenticated users to execute arbitrary commands v

    СредняяCVSS 6,5Эксплойта нетEPSS 2 %

    gplhost · domain technologie control21 мар. 2014 г.

  • CVE-2011-5273
    26Наблюдать

    Directory traversal vulnerability in shared/package-installer in Domain Technologie Control (DTC) before 0.34.1 allows remote authenticated

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    gplhost · domain technologie control21 мар. 2014 г.

  • CVE-2011-3197
    26Наблюдать

    SQL injection vulnerability in Domain Technologie Control (DTC) before 0.34.1 allows remote authenticated users to execute arbitrary SQL com

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    gplhost · domain technologie control21 мар. 2014 г.

  • CVE-2011-5276
    26Наблюдать

    SQL injection vulnerability in the drawAdminTools_PackageInstaller function in shared/inc/forms/packager.php in Domain Technologie Control (

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    gplhost · domain technologie control21 мар. 2014 г.

  • CVE-2011-5272
    26Наблюдать

    SQL injection vulnerability in Domain Technologie Control (DTC) before 0.34.1 allows remote authenticated users to execute arbitrary SQL com

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    gplhost · domain technologie control21 мар. 2014 г.

  • CVE-2011-0435
    21Наблюдать

    Domain Technologie Control (DTC) before 0.32.9 does not require authentication for (1) admin/bw_per_month.php and (2) client/bw_per_month.ph

    СредняяCVSS 5,0Эксплойта нетEPSS 2 %

    gplhost · domain technologie control7 мар. 2011 г.

  • CVE-2011-0436
    21Наблюдать

    The register_user function in client/new_account_form.php in Domain Technologie Control (DTC) before 0.32.9 includes a cleartext password in

    СредняяCVSS 5,0Эксплойта нетEPSS 2 %

    gplhost · domain technologie control7 мар. 2011 г.

  • CVE-2011-0437
    16Наблюдать

    shared/inc/sql/ssh.php in the SSH accounts management implementation in Domain Technologie Control (DTC) before 0.32.9 allows remote authent

    СредняяCVSS 4,0Эксплойта нетEPSS 2 %

    gplhost · domain technologie control7 мар. 2011 г.

  • CVE-2011-3199
    14Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in Domain Technologie Control (DTC) before 0.34.1 allow remote authenticated users to in

    НизкаяCVSS 3,5Эксплойта нетEPSS 1 %

    gplhost · domain technologie control21 мар. 2014 г.

  • CVE-2011-3196
    8Наблюдать

    The setup script in Domain Technologie Control (DTC) before 0.34.1 uses world-readable permissions for /etc/apache2/apache2.conf, which allo

    НизкаяCVSS 2,1Эксплойта нетEPSS 0 %

    gplhost · domain technologie control21 мар. 2014 г.

  • CVE-2011-3198
    8Наблюдать

    Domain Technologie Control (DTC) before 0.34.1 includes a password in the -b command line argument to htpasswd, which might allow local user

    НизкаяCVSS 2,1Эксплойта нетEPSS 0 %

    gplhost · domain technologie control21 мар. 2014 г.