Записи ktools
6 опубликованных записей вендора ktools.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 6
- С записью об исправлении
- 33,3 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')4
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2016-4337Proof of concept | SQL injection vulnerability in the mgr.login.php file in Ktools.net Photostore before 4.7.5 allows remote attackers to execute arbitrary SQLktools · photostore · CWE-89 | Критическая9,8 | — | 2,3 % | 12 апр. 2017 г. |
32Наблюдать | CVE-2005-3863Эксплойта нет | Stack-based buffer overflow in kkstrtext.h in ktools library 0.3 and earlier, as used in products such as (1) centericq, (2) orpheus, (3) moktools · ktools · CWE-119 | Высокая7,5 | — | 5,2 % | 29 нояб. 2005 г. |
31Наблюдать | CVE-2009-0363Эксплойта нет | Multiple buffer overflows in (a) BarnOwl before 1.0.5 and (b) owl 2.1.11 allow remote attackers to execute arbitrary code via vectors involvbarnowl · barnowl · CWE-119 | Высокая7,5 | — | 3,4 % | 17 февр. 2009 г. |
31Наблюдать | CVE-2008-6649Proof of concept | SQL injection vulnerability in manager/image_details_editor.php in Ktools PhotoStore 2.5, 2.9.8, 3.1.0, and other versions through 3.5.2 allktools · photostore · CWE-89 | Высокая7,5 | — | 2,0 % | 7 апр. 2009 г. |
30Наблюдать | CVE-2008-6647Proof of concept | SQL injection vulnerability in gallery.php in Ktools PhotoStore 3.4.3 allows remote attackers to execute arbitrary SQL commands via the gid ktools · photostore · CWE-89 | Высокая7,5 | — | 1,0 % | 7 апр. 2009 г. |
30Наблюдать | CVE-2008-6648Proof of concept | SQL injection vulnerability in crumbs.php in Ktools PhotoStore 3.4.3 and 3.5.2 allows remote attackers to execute arbitrary SQL commands viaktools · photostore · CWE-89 | Высокая7,5 | — | 1,0 % | 7 апр. 2009 г. |
- CVE-2016-433740В плане
SQL injection vulnerability in the mgr.login.php file in Ktools.net Photostore before 4.7.5 allows remote attackers to execute arbitrary SQL
КритическаяCVSS 9,8Proof of conceptEPSS 2 %ktools · photostore12 апр. 2017 г.
- CVE-2005-386332Наблюдать
Stack-based buffer overflow in kkstrtext.h in ktools library 0.3 and earlier, as used in products such as (1) centericq, (2) orpheus, (3) mo
ВысокаяCVSS 7,5Эксплойта нетEPSS 5 %ktools · ktools29 нояб. 2005 г.
- CVE-2009-036331Наблюдать
Multiple buffer overflows in (a) BarnOwl before 1.0.5 and (b) owl 2.1.11 allow remote attackers to execute arbitrary code via vectors involv
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %barnowl · barnowl17 февр. 2009 г.
- CVE-2008-664931Наблюдать
SQL injection vulnerability in manager/image_details_editor.php in Ktools PhotoStore 2.5, 2.9.8, 3.1.0, and other versions through 3.5.2 all
ВысокаяCVSS 7,5Proof of conceptEPSS 2 %ktools · photostore7 апр. 2009 г.
- CVE-2008-664730Наблюдать
SQL injection vulnerability in gallery.php in Ktools PhotoStore 3.4.3 allows remote attackers to execute arbitrary SQL commands via the gid
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %ktools · photostore7 апр. 2009 г.
- CVE-2008-664830Наблюдать
SQL injection vulnerability in crumbs.php in Ktools PhotoStore 3.4.3 and 3.5.2 allows remote attackers to execute arbitrary SQL commands via
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %ktools · photostore7 апр. 2009 г.