Записи labkey
6 опубликованных записей вендора labkey.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-601 URL Redirection to Untrusted Site ('Open Redirect')1
- CWE-611 Improper Restriction of XML External Entity Reference1
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
41В плане | CVE-2019-9757Proof of concept | An issue was discovered in LabKey Server 19.1.0.labkey · labkey server · CWE-611 | Высокая7,5 | — | 37,3 % | 29 окт. 2019 г. |
36Наблюдать | CVE-2019-9926Эксплойта нет | An issue was discovered in LabKey Server 19.1.0.labkey · labkey server · CWE-352 | Высокая8,8 | — | 1,9 % | 29 окт. 2019 г. |
25Наблюдать | CVE-2019-3912Proof of concept | An open redirect vulnerability in LabKey Server Community Edition before 18.3.0-61806.763 via the /__r1/ returnURL parameter allows an unautlabkey · labkey server · CWE-601 | Средняя6,1 | — | 4,8 % | 30 янв. 2019 г. |
25Наблюдать | CVE-2019-3911Proof of concept | Reflected cross-site scripting (XSS) vulnerability in LabKey Server Community Edition before 18.3.0-61806.763 allows an unauthenticated remolabkey · labkey server · CWE-79 | Средняя6,1 | — | 3,8 % | 30 янв. 2019 г. |
21Наблюдать | CVE-2019-9758Эксплойта нет | An issue was discovered in LabKey Server 19.1.0.labkey · labkey server · CWE-79 | Средняя5,4 | — | 1,0 % | 29 окт. 2019 г. |
20Наблюдать | CVE-2019-3913Эксплойта нет | Command manipulation in LabKey Server Community Edition before 18.3.0-61806.763 allows an authenticated remote attacker to unmount any drivelabkey · labkey server · CWE-77 | Средняя4,9 | — | 1,7 % | 30 янв. 2019 г. |
- CVE-2019-975741В плане
An issue was discovered in LabKey Server 19.1.0.
ВысокаяCVSS 7,5Proof of conceptEPSS 37 %labkey · labkey server29 окт. 2019 г.
- CVE-2019-992636Наблюдать
An issue was discovered in LabKey Server 19.1.0.
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %labkey · labkey server29 окт. 2019 г.
- CVE-2019-391225Наблюдать
An open redirect vulnerability in LabKey Server Community Edition before 18.3.0-61806.763 via the /__r1/ returnURL parameter allows an unaut
СредняяCVSS 6,1Proof of conceptEPSS 5 %labkey · labkey server30 янв. 2019 г.
- CVE-2019-391125Наблюдать
Reflected cross-site scripting (XSS) vulnerability in LabKey Server Community Edition before 18.3.0-61806.763 allows an unauthenticated remo
СредняяCVSS 6,1Proof of conceptEPSS 4 %labkey · labkey server30 янв. 2019 г.
- CVE-2019-975821Наблюдать
An issue was discovered in LabKey Server 19.1.0.
СредняяCVSS 5,4Эксплойта нетEPSS 1 %labkey · labkey server29 окт. 2019 г.
- CVE-2019-391320Наблюдать
Command manipulation in LabKey Server Community Edition before 18.3.0-61806.763 allows an authenticated remote attacker to unmount any drive
СредняяCVSS 4,9Эксплойта нетEPSS 2 %labkey · labkey server30 янв. 2019 г.