Записи in2code
10 опубликованных записей вендора in2code.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 90 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-306 Missing Authentication for Critical Function2
- CWE-639 Authorization Bypass Through User-Controlled Key2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-284 Improper Access Control1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
10 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
47В плане | CVE-2022-35628Эксплойта нет | A SQL injection issue was discovered in the lux extension before 17.6.1, and 18.x through 24.x before 24.0.2, for TYPO3.in2code · living user experience · CWE-89 | Критическая9,8 | — | 26,8 % | 12 июл. 2022 г. |
39Наблюдать | CVE-2024-45233Эксплойта нет | An issue was discovered in powermail extension through 12.3.5 for TYPO3.in2code · powermail · CWE-284 | Критическая9,8 | — | 0,4 % | 28 авг. 2024 г. |
30Наблюдать | CVE-2023-25013Эксплойта нет | An issue was discovered in the femanager extension before 5.5.3, 6.x before 6.3.4, and 7.x before 7.1.0 for TYPO3.in2code · femanager · CWE-306 | Высокая7,5 | — | 0,5 % | 1 февр. 2023 г. |
30Наблюдать | CVE-2023-25014Эксплойта нет | An issue was discovered in the femanager extension before 5.5.3, 6.x before 6.3.4, and 7.x before 7.1.0 for TYPO3.in2code · femanager · CWE-306 | Высокая7,5 | — | 0,5 % | 1 февр. 2023 г. |
30Наблюдать | CVE-2024-47047Эксплойта нет | An issue was discovered in the powermail extension through 12.4.0 for TYPO3.in2code · powermail · CWE-639 | Высокая7,5 | — | 0,5 % | 17 сент. 2024 г. |
25Наблюдать | CVE-2014-6292Эксплойта нет | The femanager extension before 1.0.9 for TYPO3 allows remote frontend users to modify or delete the records of other frontend users via unspin2code · femanager | Средняя6,4 | — | 1,3 % | 3 окт. 2014 г. |
21Наблюдать | CVE-2021-36787Эксплойта нет | The femanager extension before 5.5.1 and 6.x before 6.3.1 for TYPO3 allows XSS via a crafted SVG document.in2code · femanager · CWE-79 | Средняя5,4 | — | 1,3 % | 13 авг. 2021 г. |
21Наблюдать | CVE-2022-44543Эксплойта нет | The femanager extension before 5.5.2, 6.x before 6.3.3, and 7.x before 7.0.1 for TYPO3 allows creation of frontend users in restricted groupin2code · femanager | Средняя5,3 | — | 0,6 % | 12 дек. 2023 г. |
21Наблюдать | CVE-2024-45232Эксплойта нет | An issue was discovered in powermail extension through 12.3.5 for TYPO3.in2code · powermail · CWE-639 | Средняя5,3 | — | 0,3 % | 28 авг. 2024 г. |
17Наблюдать | CVE-2008-2182Эксплойта нет | Cross-site scripting (XSS) vulnerability in the powermail extension before 1.1.10 for TYPO3 allows remote attackers to inject arbitrary web in2code · powermail · CWE-79 | Средняя4,3 | — | 1,3 % | 13 мая 2008 г. |
- CVE-2022-3562847В плане
A SQL injection issue was discovered in the lux extension before 17.6.1, and 18.x through 24.x before 24.0.2, for TYPO3.
КритическаяCVSS 9,8Эксплойта нетEPSS 27 %in2code · living user experience12 июл. 2022 г.
- CVE-2024-4523339Наблюдать
An issue was discovered in powermail extension through 12.3.5 for TYPO3.
КритическаяCVSS 9,8Эксплойта нетEPSS 0 %in2code · powermail28 авг. 2024 г.
- CVE-2023-2501330Наблюдать
An issue was discovered in the femanager extension before 5.5.3, 6.x before 6.3.4, and 7.x before 7.1.0 for TYPO3.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %in2code · femanager1 февр. 2023 г.
- CVE-2023-2501430Наблюдать
An issue was discovered in the femanager extension before 5.5.3, 6.x before 6.3.4, and 7.x before 7.1.0 for TYPO3.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %in2code · femanager1 февр. 2023 г.
- CVE-2024-4704730Наблюдать
An issue was discovered in the powermail extension through 12.4.0 for TYPO3.
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %in2code · powermail17 сент. 2024 г.
- CVE-2014-629225Наблюдать
The femanager extension before 1.0.9 for TYPO3 allows remote frontend users to modify or delete the records of other frontend users via unsp
СредняяCVSS 6,4Эксплойта нетEPSS 1 %in2code · femanager3 окт. 2014 г.
- CVE-2021-3678721Наблюдать
The femanager extension before 5.5.1 and 6.x before 6.3.1 for TYPO3 allows XSS via a crafted SVG document.
СредняяCVSS 5,4Эксплойта нетEPSS 1 %in2code · femanager13 авг. 2021 г.
- CVE-2022-4454321Наблюдать
The femanager extension before 5.5.2, 6.x before 6.3.3, and 7.x before 7.0.1 for TYPO3 allows creation of frontend users in restricted group
СредняяCVSS 5,3Эксплойта нетEPSS 1 %in2code · femanager12 дек. 2023 г.
- CVE-2024-4523221Наблюдать
An issue was discovered in powermail extension through 12.3.5 for TYPO3.
СредняяCVSS 5,3Эксплойта нетEPSS 0 %in2code · powermail28 авг. 2024 г.
- CVE-2008-218217Наблюдать
Cross-site scripting (XSS) vulnerability in the powermail extension before 1.1.10 for TYPO3 allows remote attackers to inject arbitrary web
СредняяCVSS 4,3Эксплойта нетEPSS 1 %in2code · powermail13 мая 2008 г.