Записи magicbug
6 опубликованных записей вендора magicbug.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2024-48253Эксплойта нет | Cloudlog 2.6.15 allows Oqrs.php delete_oqrs_line id SQL injection.magicbug · cloudlog · CWE-89 | Критическая9,8 | — | 0,4 % | 14 окт. 2024 г. |
39Наблюдать | CVE-2024-48255Эксплойта нет | Cloudlog 2.6.15 allows Oqrs.php get_station_info station_id SQL injection.magicbug · cloudlog · CWE-89 | Критическая9,8 | — | 0,4 % | 14 окт. 2024 г. |
39Наблюдать | CVE-2024-44065Эксплойта нет | Time-based blind SQL Injection vulnerability in Cloudlog v2.6.15 at the endpoint /index.php/logbookadvanced/search in the qsoresults parametmagicbug · cloudlog · CWE-89 | Критическая9,8 | — | 0,4 % | 26 дек. 2025 г. |
39Наблюдать | CVE-2024-45999Эксплойта нет | A SQL Injection vulnerability was discovered in Cloudlog 2.6.15, specifically within the get_station_info()function located in the file /appmagicbug · cloudlog · CWE-89 | Критическая9,8 | — | 0,4 % | 1 окт. 2024 г. |
29Наблюдать | CVE-2024-48259Proof of concept | Cloudlog 2.6.15 allows Oqrs.php request_form SQL injection via station_id or callsign.magicbug · cloudlog · CWE-89 | Высокая7,3 | — | 0,9 % | 14 окт. 2024 г. |
21Наблюдать | CVE-2025-64084Эксплойта нет | An authenticated SQL injection vulnerability exists in Cloudlog 2.7.5 and earlier.magicbug · cloudlog · CWE-89 | Средняя5,4 | — | 0,3 % | 14 нояб. 2025 г. |
- CVE-2024-4825339Наблюдать
Cloudlog 2.6.15 allows Oqrs.php delete_oqrs_line id SQL injection.
КритическаяCVSS 9,8Эксплойта нетEPSS 0 %magicbug · cloudlog14 окт. 2024 г.
- CVE-2024-4825539Наблюдать
Cloudlog 2.6.15 allows Oqrs.php get_station_info station_id SQL injection.
КритическаяCVSS 9,8Эксплойта нетEPSS 0 %magicbug · cloudlog14 окт. 2024 г.
- CVE-2024-4406539Наблюдать
Time-based blind SQL Injection vulnerability in Cloudlog v2.6.15 at the endpoint /index.php/logbookadvanced/search in the qsoresults paramet
КритическаяCVSS 9,8Эксплойта нетEPSS 0 %magicbug · cloudlog26 дек. 2025 г.
- CVE-2024-4599939Наблюдать
A SQL Injection vulnerability was discovered in Cloudlog 2.6.15, specifically within the get_station_info()function located in the file /app
КритическаяCVSS 9,8Эксплойта нетEPSS 0 %magicbug · cloudlog1 окт. 2024 г.
- CVE-2024-4825929Наблюдать
Cloudlog 2.6.15 allows Oqrs.php request_form SQL injection via station_id or callsign.
ВысокаяCVSS 7,3Proof of conceptEPSS 1 %magicbug · cloudlog14 окт. 2024 г.
- CVE-2025-6408421Наблюдать
An authenticated SQL injection vulnerability exists in Cloudlog 2.7.5 and earlier.
СредняяCVSS 5,4Эксплойта нетEPSS 0 %magicbug · cloudlog14 нояб. 2025 г.