Записи lanol
4 опубликованных записей вендора lanol.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-24 Path Traversal: '../filedir'1
- CWE-305 Authentication Bypass by Primary Weakness1
- CWE-591 Sensitive Data Storage in Improperly Locked Memory1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
4 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
30Наблюдать | CVE-2025-51661Эксплойта нет | A path Traversal vulnerability found in FileCodeBox v2.2 and earlier allows arbitrary file writes when application is configured to use localanol · filecodebox · CWE-24 | Высокая7,5 | — | 0,5 % | 19 нояб. 2025 г. |
30Наблюдать | CVE-2025-51663Эксплойта нет | A vulnerability found in IPRateLimit implementation of FileCodeBox up to 2.2 allows remote attackers to bypass ip-based rate limit protectiolanol · filecodebox · CWE-305 | Высокая7,5 | — | 0,4 % | 19 нояб. 2025 г. |
21Наблюдать | CVE-2025-51662Эксплойта нет | A stored cross-site scripting (XSS) vulnerability is found in the text sharing feature of FileCodeBox version 2.2 and earlier.lanol · filecodebox · CWE-79 | Средняя5,4 | — | 0,2 % | 19 нояб. 2025 г. |
21Наблюдать | CVE-2024-34525Эксплойта нет | FileCodeBox 2.0 stores a OneDrive password and AWS key in a cleartext env file.lanol · filecodebox · CWE-591 | Средняя5,3 | — | 0,2 % | 5 мая 2024 г. |
- CVE-2025-5166130Наблюдать
A path Traversal vulnerability found in FileCodeBox v2.2 and earlier allows arbitrary file writes when application is configured to use loca
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %lanol · filecodebox19 нояб. 2025 г.
- CVE-2025-5166330Наблюдать
A vulnerability found in IPRateLimit implementation of FileCodeBox up to 2.2 allows remote attackers to bypass ip-based rate limit protectio
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %lanol · filecodebox19 нояб. 2025 г.
- CVE-2025-5166221Наблюдать
A stored cross-site scripting (XSS) vulnerability is found in the text sharing feature of FileCodeBox version 2.2 and earlier.
СредняяCVSS 5,4Эксплойта нетEPSS 0 %lanol · filecodebox19 нояб. 2025 г.
- CVE-2024-3452521Наблюдать
FileCodeBox 2.0 stores a OneDrive password and AWS key in a cleartext env file.
СредняяCVSS 5,3Эксплойта нетEPSS 0 %lanol · filecodebox5 мая 2024 г.