Перейти к содержимому
Noroxi

Записи hosting controller

37 опубликованных записей вендора hosting controller.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
4
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

    Столбик: всего · тёмная часть: CISA KEV.

    Повторяющиеся классы

    Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

    CWE

    Все записи

    37 записей
    • CVE-2007-6494
      44В плане

      Hosting Controller 6.1 Hot fix 3.3 and earlier allows remote attackers to obtain login access via a request to hosting/addreseller.asp with

      КритическаяCVSS 10,0Proof of conceptEPSS 12 %

      hosting controller · hosting controller20 дек. 2007 г.

    • CVE-2002-0773
      41В плане

      imp_rootdir.asp for Hosting Controller allows remote attackers to copy or delete arbitrary files and directories via a direct request to imp

      КритическаяCVSS 10,0Proof of conceptEPSS 4 %

      hosting controller · hosting controller12 авг. 2002 г.

    • CVE-2002-0465
      41В плане

      Directory traversal vulnerability in filemanager.asp for Hosting Controller 1.4.1 and earlier allows remote attackers to read and modify arb

      КритическаяCVSS 10,0Эксплойта нетEPSS 4 %

      hosting controller · hosting controller12 авг. 2002 г.

    • CVE-2002-0774
      41В плане

      Hosting Controller creates a default user AdvWebadmin with a default password, which could allow remote attackers to gain privileges if the

      КритическаяCVSS 10,0Эксплойта нетEPSS 3 %

      hosting controller · hosting controller12 авг. 2002 г.

    • CVE-2005-1784
      32Наблюдать

      Hosting Controller 6.1 HotFix 2.0 and earlier allows remote attackers to steal passwords and gain privileges via a modified emailaddress par

      ВысокаяCVSS 7,5Proof of conceptEPSS 6 %

      hosting controller · hosting controller27 мая 2005 г.

    • CVE-2006-5629
      31Наблюдать

      Multiple SQL injection vulnerabilities in Hosting Controller 6.1 before Hotfix 3.3 allow remote attackers to execute arbitrary SQL commands

      ВысокаяCVSS 7,5Proof of conceptEPSS 3 %

      hosting controller · hosting controller31 окт. 2006 г.

    • CVE-2007-6497
      31Наблюдать

      Hosting Controller 6.1 Hot fix 3.3 and earlier (1) allows remote attackers to change arbitrary user profiles via a request to Hosting/Addres

      ВысокаяCVSS 7,5Proof of conceptEPSS 3 %

      hosting controller · hosting controller20 дек. 2007 г.

    • CVE-2005-1788
      31Наблюдать

      SQL injection vulnerability in resellerresources.asp in Hosting Controller 6.1 Hotfix 2.0 allows remote attackers to execute arbitrary SQL c

      ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

      hosting controller · hosting controller1 июн. 2005 г.

    • CVE-2006-1229
      31Наблюдать

      SQL injection vulnerability in search.asp in Hosting Controller 6.1 (Hotfix 2.9) allows remote attackers to execute arbitrary SQL commands v

      ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

      hosting controller · hosting controller14 мар. 2006 г.

    • CVE-2006-5630
      31Наблюдать

      Hosting Controller 6.1 before Hotfix 3.3 allows remote attackers to (1) delete the virtual directory of an arbitrary site via a modified For

      ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

      hosting controller · hosting controller31 окт. 2006 г.

    • CVE-2002-0776
      31Наблюдать

      getuserdesc.asp in Hosting Controller 2002 allows remote attackers to change the passwords of arbitrary users and gain privileges by modifyi

      ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

      hosting controller · hosting controller12 авг. 2002 г.

    • CVE-2006-1764
      31Наблюдать

      Hosting Controller 6.1 stores forum/db/forum.mdb under the web document root with insufficient access control, which allows remote attackers

      ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %

      hosting controller · hosting controller12 апр. 2006 г.

    • CVE-2002-0212
      30Наблюдать

      The login for Hosting Controller 1.1 through 1.4.1 returns different error messages when a valid or invalid user is provided, which allows r

      ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

      hosting controller · hosting controller16 мая 2002 г.

    • CVE-2007-6498
      30Наблюдать

      Multiple SQL injection vulnerabilities in Hosting Controller 6.1 Hot fix 3.3 and earlier allow remote authenticated users to execute arbitra

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      hosting controller · hosting controller20 дек. 2007 г.

    • CVE-2002-0772
      28Наблюдать

      Directory traversal vulnerability in dsnmanager.asp for Hosting Controller allows remote attackers to read arbitrary files and directories v

      СредняяCVSS 6,4Proof of conceptEPSS 9 %

      hosting controller · hosting controller12 авг. 2002 г.

    • CVE-2007-6496
      28Наблюдать

      Hosting Controller 6.1 Hot fix 3.3 and earlier allows remote attackers to register arbitrary users via a request to hosting/addsubsite.asp w

      СредняяCVSS 6,8Proof of conceptEPSS 3 %

      hosting controller · hosting controller20 дек. 2007 г.

    • CVE-2007-6495
      27Наблюдать

      inc_newuser.asp in Hosting Controller 6.1 Hot fix 3.3 and earlier allows remote authenticated users to change the permissions of directories

      СредняяCVSS 6,5Proof of conceptEPSS 4 %

      hosting controller · hosting controller20 дек. 2007 г.

    • CVE-2006-3147
      27Наблюдать

      Unspecified vulnerability in Hosting Controller before 6.1 (aka Hotfix 3.2) allows remote authenticated attackers to gain host admin privile

      СредняяCVSS 6,5Proof of conceptEPSS 3 %

      hosting controller · hosting controller22 июн. 2006 г.

    • CVE-2006-0581
      27Наблюдать

      SQL injection vulnerability in Hosting Controller 6.1 Hotfix 2.8 allows remote authenticated users to execute arbitrary SQL commands via the

      СредняяCVSS 6,5Эксплойта нетEPSS 2 %

      hosting controller · hosting controller7 февр. 2006 г.

    • CVE-2002-0464
      26Наблюдать

      Directory traversal vulnerability in Hosting Controller 1.4.1 and earlier allows remote attackers to read and modify arbitrary files and dir

      СредняяCVSS 6,4Эксплойта нетEPSS 2 %

      hosting controller · hosting controller12 авг. 2002 г.

    • CVE-2006-6814
      26Наблюдать

      Directory traversal vulnerability in FolderManager/FolderManager.aspx in Hosting Controller 7c allows remote authenticated users to read and

      СредняяCVSS 6,3Proof of conceptEPSS 2 %

      hosting controller · hosting controller29 дек. 2006 г.

    • CVE-2007-6502
      23Наблюдать

      Hosting Controller 6.1 Hot fix 3.3 and earlier allows remote authenticated users to obtain sensitive information via (1) the AdminName and A

      СредняяCVSS 5,5Proof of conceptEPSS 3 %

      hosting controller · hosting controller20 дек. 2007 г.

    • CVE-2007-6499
      23Наблюдать

      Unspecified vulnerability in Hosting Controller 6.1 Hot fix 3.3 and earlier allows remote authenticated users to uninstall the FrontPage ext

      СредняяCVSS 5,5Proof of conceptEPSS 3 %

      hosting controller · hosting controller20 дек. 2007 г.

    • CVE-2007-6501
      23Наблюдать

      Unspecified vulnerability in Hosting Controller 6.1 Hot fix 3.3 and earlier allows remote authenticated users to enable or disable "pay type

      СредняяCVSS 5,5Proof of conceptEPSS 2 %

      hosting controller · hosting controller20 дек. 2007 г.

    • CVE-2007-6503
      23Наблюдать

      Multiple unspecified vulnerabilities in Hosting Controller 6.1 Hot fix 3.3 and earlier allow remote authenticated users to (1) import an arb

      СредняяCVSS 5,5Proof of conceptEPSS 2 %

      hosting controller · hosting controller20 дек. 2007 г.