Перейти к содержимому
Noroxi

Записи midasolutions

7 опубликованных записей вендора midasolutions.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
1 · 14,3 %
Pre-auth RCE
2
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

7 записей
  • CVE-2020-15920
    68На этой неделе

    There is an OS Command Injection in Mida eFramework through 2.9.0 that allows an attacker to achieve Remote Code Execution (RCE) with admini

    КритическаяCVSS 9,8Готовый эксплойтEPSS 98 %

    midasolutions · eframework23 июл. 2020 г.

  • CVE-2020-15922
    56В плане

    There is an OS Command Injection in Mida eFramework 2.9.0 that allows an attacker to achieve Remote Code Execution (RCE) with administrative

    КритическаяCVSS 9,8Proof of conceptEPSS 57 %

    midasolutions · eframework23 июл. 2020 г.

  • CVE-2020-15921
    44В плане

    Mida eFramework through 2.9.0 has a back door that permits a change of the administrative password and access to restricted functionalities,

    КритическаяCVSS 9,8Proof of conceptEPSS 18 %

    midasolutions · eframework23 июл. 2020 г.

  • CVE-2020-15923
    31Наблюдать

    Mida eFramework through 2.9.0 allows unauthenticated ../ directory traversal.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %

    midasolutions · eframework23 июл. 2020 г.

  • CVE-2020-15924
    31Наблюдать

    There is a SQL Injection in Mida eFramework through 2.9.0 that leads to Information Disclosure.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    midasolutions · eframework23 июл. 2020 г.

  • CVE-2020-15919
    24Наблюдать

    A Reflected Cross Site Scripting (XSS) vulnerability was discovered in Mida eFramework through 2.9.0.

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    midasolutions · eframework23 июл. 2020 г.

  • CVE-2020-15918
    21Наблюдать

    Multiple Stored Cross Site Scripting (XSS) vulnerabilities were discovered in Mida eFramework through 2.9.0.

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    midasolutions · eframework23 июл. 2020 г.