Перейти к содержимому
Noroxi

Записи hotwebscripts

8 опубликованных записей вендора hotwebscripts.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
6
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

    Столбик: всего · тёмная часть: CISA KEV.

    Повторяющиеся классы

    Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

    CWE

    Все записи

    8 записей
    • CVE-2006-3135
      31Наблюдать

      Multiple SQL injection vulnerabilities in CMS Mundo 1.0 build 008, and possibly other versions, allow remote attackers to execute arbitrary

      ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

      hotwebscripts · cms mundo13 июл. 2006 г.

    • CVE-2006-2911
      30Наблюдать

      SQL injection vulnerability in controlpanel/index.php in CMS Mundo before 1.0 build 008 allows remote attackers to execute arbitrary SQL com

      ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

      hotwebscripts · cms mundo21 июн. 2006 г.

    • CVE-2010-4703
      30Наблюдать

      SQL injection vulnerability in default.asp in HotWebScripts HotWeb Rentals allows remote attackers to execute arbitrary SQL commands via the

      ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

      hotwebscripts · hotweb rentals20 янв. 2011 г.

    • CVE-2010-4737
      30Наблюдать

      SQL injection vulnerability in resorts.asp in HotWebScripts HotWeb Rentals allows remote attackers to execute arbitrary SQL commands via the

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      hotwebscripts · hotweb rentals15 февр. 2011 г.

    • CVE-2009-3343
      30Наблюдать

      SQL injection vulnerability in details.asp in HotWeb Rentals allows remote attackers to execute arbitrary SQL commands via the PropId parame

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      hotwebscripts · hotweb rentals24 сент. 2009 г.

    • CVE-2006-2684
      23Наблюдать

      Cross-site scripting (XSS) vulnerability in the search module in CMS Mundo 1.0 allows remote attackers to inject arbitrary web script or HTM

      СредняяCVSS 5,8Эксплойта нетEPSS 1 %

      hotwebscripts · cms mundo31 мая 2006 г.

    • CVE-2006-2931
      20Наблюдать

      CMS Mundo before 1.0 build 008 does not properly verify uploaded image files, which allows remote attackers to execute arbitrary PHP code by

      СредняяCVSS 5,1Эксплойта нетEPSS 2 %

      hotwebscripts · cms mundo21 июн. 2006 г.

    • CVE-2006-2820
      17Наблюдать

      Cross-site scripting (XSS) vulnerability in HotWebScripts.com Weblog Oggi 1.0 allows remote attackers to inject arbitrary web script or HTML

      СредняяCVSS 4,3Эксплойта нетEPSS 1 %

      hotwebscripts · weblog oggi5 июн. 2006 г.