Записи hotplug cms
3 опубликованных записей вендора hotplug cms.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
3 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
30Наблюдать | CVE-2006-3190Эксплойта нет | SQL injection vulnerability in administration/includes/login/auth.php in HotPlug CMS 1.0 allows remote attackers to execute arbitrary SQL cohotplug cms · hotplug cms | Высокая7,5 | — | 1,4 % | 22 июн. 2006 г. |
24Наблюдать | CVE-2006-3189Proof of concept | Cross-site scripting (XSS) vulnerability in administration/tblcontent/login1.php in HotPlug CMS 1.0 allows remote attackers to inject arbitrhotplug cms · hotplug cms | Средняя5,8 | — | 1,7 % | 22 июн. 2006 г. |
20Наблюдать | CVE-2006-4772Эксплойта нет | HotPlug CMS stores sensitive information under the web root with insufficient access control, which allows remote attackers to read the admihotplug cms · hotplug cms | Средняя5,0 | — | 1,2 % | 13 сент. 2006 г. |
- CVE-2006-319030Наблюдать
SQL injection vulnerability in administration/includes/login/auth.php in HotPlug CMS 1.0 allows remote attackers to execute arbitrary SQL co
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %hotplug cms · hotplug cms22 июн. 2006 г.
- CVE-2006-318924Наблюдать
Cross-site scripting (XSS) vulnerability in administration/tblcontent/login1.php in HotPlug CMS 1.0 allows remote attackers to inject arbitr
СредняяCVSS 5,8Proof of conceptEPSS 2 %hotplug cms · hotplug cms22 июн. 2006 г.
- CVE-2006-477220Наблюдать
HotPlug CMS stores sensitive information under the web root with insufficient access control, which allows remote attackers to read the admi
СредняяCVSS 5,0Эксплойта нетEPSS 1 %hotplug cms · hotplug cms13 сент. 2006 г.