Записи imagevue
5 опубликованных записей вендора imagevue.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
22Наблюдать | CVE-2006-0701Proof of concept | readfolder.php in imageVue 16.1 allows remote attackers to list directories via modified path and ext parameters.imagevue · imagevue | Средняя5,0 | — | 7,9 % | 15 февр. 2006 г. |
22Наблюдать | CVE-2006-0702Proof of concept | admin/upload.php in imageVue 16.1 allows remote attackers to upload arbitrary files to certain allowed folders via ..imagevue · imagevue | Средняя5,0 | — | 7,3 % | 15 февр. 2006 г. |
22Наблюдать | CVE-2006-0700Proof of concept | imageVue 16.1 allows remote attackers to obtain folder permission settings via a direct request to dir.php, which returns an XML document thimagevue · imagevue · CWE-264 | Средняя5,0 | — | 6,7 % | 15 февр. 2006 г. |
18Наблюдать | CVE-2006-0703Proof of concept | Unspecified vulnerability in index.php in imageVue 16.1 has unknown impact, probably a cross-site scripting (XSS) vulnerability involving thimagevue · imagevue | Средняя4,3 | — | 4,5 % | 15 февр. 2006 г. |
17Наблюдать | CVE-2008-1273Proof of concept | Multiple cross-site scripting (XSS) vulnerabilities in imageVue 1.7 allow remote attackers to inject arbitrary web script or HTML via the paimagevue · imagevue · CWE-79 | Средняя4,3 | — | 1,5 % | 10 мар. 2008 г. |
- CVE-2006-070122Наблюдать
readfolder.php in imageVue 16.1 allows remote attackers to list directories via modified path and ext parameters.
СредняяCVSS 5,0Proof of conceptEPSS 8 %imagevue · imagevue15 февр. 2006 г.
- CVE-2006-070222Наблюдать
admin/upload.php in imageVue 16.1 allows remote attackers to upload arbitrary files to certain allowed folders via ..
СредняяCVSS 5,0Proof of conceptEPSS 7 %imagevue · imagevue15 февр. 2006 г.
- CVE-2006-070022Наблюдать
imageVue 16.1 allows remote attackers to obtain folder permission settings via a direct request to dir.php, which returns an XML document th
СредняяCVSS 5,0Proof of conceptEPSS 7 %imagevue · imagevue15 февр. 2006 г.
- CVE-2006-070318Наблюдать
Unspecified vulnerability in index.php in imageVue 16.1 has unknown impact, probably a cross-site scripting (XSS) vulnerability involving th
СредняяCVSS 4,3Proof of conceptEPSS 5 %imagevue · imagevue15 февр. 2006 г.
- CVE-2008-127317Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in imageVue 1.7 allow remote attackers to inject arbitrary web script or HTML via the pa
СредняяCVSS 4,3Proof of conceptEPSS 1 %imagevue · imagevue10 мар. 2008 г.