Перейти к содержимому
Noroxi

Записи itechscripts

24 опубликованных записей вендора itechscripts.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
8
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 17
  2. 22

Столбик: всего · тёмная часть: CISA KEV.

Повторяющиеся классы

Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

CWE

Все записи

24 записей
  • CVE-2017-15963
    40В плане

    iTech Gigs Script 1.21 allows SQL Injection via the browse-scategory.php sc parameter or the service-provider.php ser parameter.

    КритическаяCVSS 9,8Proof of conceptEPSS 2 %

    itechscripts · gigs script29 окт. 2017 г.

  • CVE-2017-20130
    39Наблюдать

    Itech Real Estate Script search_property.php sql injection

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    itechscripts · real estate script16 июл. 2022 г.

  • CVE-2017-20131
    39Наблюдать

    Itech News Portal information.php sql injection

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    itechscripts · news portal script16 июл. 2022 г.

  • CVE-2017-20135
    39Наблюдать

    Itech Dating Script see_more_details.php sql injection

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    itechscripts · dating script16 июл. 2022 г.

  • CVE-2017-20134
    39Наблюдать

    Itech Freelancer Script category.php sql injection

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    itechscripts · freelancer script16 июл. 2022 г.

  • CVE-2017-20132
    39Наблюдать

    Itech Multi Vendor Script product-list.php sql injection

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    itechscripts · multi vendor script16 июл. 2022 г.

  • CVE-2017-20133
    39Наблюдать

    Itech Job Portal Script admin improper authentication

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    itechscripts · job portal script16 июл. 2022 г.

  • CVE-2017-20138
    39Наблюдать

    Itech Auction Script mcategory.php Blind sql injection

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    itechscripts · auction script16 июл. 2022 г.

  • CVE-2012-4281
    31Наблюдать

    Multiple SQL injection vulnerabilities in Travelon Express 6.2.2 allow remote attackers to execute arbitrary SQL commands via the hid parame

    ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

    itechscripts · travelon express13 авг. 2012 г.

  • CVE-2014-100020
    30Наблюдать

    SQL injection vulnerability in ChangeEmail.php in iTechClassifieds 3.03.057 allows remote attackers to execute arbitrary SQL commands via th

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    itechscripts · itechclassifieds13 янв. 2015 г.

  • CVE-2008-3238
    30Наблюдать

    Multiple SQL injection vulnerabilities in ITechBids 7.0 Gold allow remote attackers to execute arbitrary SQL commands via (1) the seller_id

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    itechscripts · itechbids21 июл. 2008 г.

  • CVE-2008-0776
    30Наблюдать

    SQL injection vulnerability in detail.php in iTechBids Gold 6.0 allows remote attackers to execute arbitrary SQL commands via the item_id pa

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    itechscripts · itechbids13 февр. 2008 г.

  • CVE-2012-4265
    30Наблюдать

    SQL injection vulnerability in category_edit.php in Proman Xpress 5.0.1 allows remote attackers to execute arbitrary SQL commands via the ci

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    itechscripts · proman xpress13 авг. 2012 г.

  • CVE-2008-0692
    30Наблюдать

    SQL injection vulnerability in bidhistory.php in iTechBids 3 Gold and 5.0 allows remote attackers to execute arbitrary SQL commands via the

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    itechscripts · itechbids11 февр. 2008 г.

  • CVE-2008-0685
    30Наблюдать

    SQL injection vulnerability in ViewCat.php in iTechClassifieds 3.0 allows remote attackers to execute arbitrary SQL commands via the CatID p

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    itechscripts · itechclassifieds11 февр. 2008 г.

  • CVE-2009-3968
    30Наблюдать

    Multiple SQL injection vulnerabilities in ITechBids 8.0 allow remote attackers to execute arbitrary SQL commands via the (1) user_id paramet

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    itechscripts · itechbids18 нояб. 2009 г.

  • CVE-2017-20136
    30Наблюдать

    Itech Classifieds Script subpage.php sql injection

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    itechscripts · classifieds script16 июл. 2022 г.

  • CVE-2017-20137
    30Наблюдать

    Itech B2B Script catcompany.php sql injection

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    itechscripts · b2b script16 июл. 2022 г.

  • CVE-2012-2939
    27Наблюдать

    Multiple unrestricted file upload vulnerabilities in Travelon Express 6.2.2 allow remote authenticated users to execute arbitrary code by up

    СредняяCVSS 6,5Proof of conceptEPSS 4 %

    itechscripts · travelon express27 мая 2012 г.

  • CVE-2012-2938
    18Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in Travelon Express 6.2.2 allow remote attackers to inject arbitrary web script or HTML

    СредняяCVSS 4,3Proof of conceptEPSS 2 %

    itechscripts · travelon express27 мая 2012 г.

  • CVE-2008-3237
    18Наблюдать

    Cross-site scripting (XSS) vulnerability in forward_to_friend.php in ITechBids 7.0 Gold allows remote attackers to inject arbitrary web scri

    СредняяCVSS 4,3Proof of conceptEPSS 2 %

    itechscripts · itechbids21 июл. 2008 г.

  • CVE-2012-4266
    17Наблюдать

    Cross-site scripting (XSS) vulnerability in client_details.php in Proman Xpress 5.0.1 allows remote attackers to inject arbitrary web script

    СредняяCVSS 4,3Proof of conceptEPSS 2 %

    itechscripts · proman xpress13 авг. 2012 г.

  • CVE-2008-0684
    17Наблюдать

    Cross-site scripting (XSS) vulnerability in ViewCat.php in iTechClassifieds 3.0 allows remote attackers to inject arbitrary web script or HT

    СредняяCVSS 4,3Proof of conceptEPSS 1 %

    itechscripts · itechclassifieds11 февр. 2008 г.

  • CVE-2008-4872
    17Наблюдать

    Cross-site scripting (XSS) vulnerability in bidhistory.php in iTechBids Gold 5.0 allows remote attackers to inject arbitrary web script or H

    СредняяCVSS 4,3Эксплойта нетEPSS 1 %

    itechscripts · itechbids31 окт. 2008 г.