Записи midasolutions
7 опубликованных записей вендора midasolutions.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 1 · 14,3 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-287 Improper Authentication1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
68На этой неделе | CVE-2020-15920Готовый эксплойт | There is an OS Command Injection in Mida eFramework through 2.9.0 that allows an attacker to achieve Remote Code Execution (RCE) with adminimidasolutions · eframework · CWE-78 | Критическая9,8 | — | 98,2 % | 23 июл. 2020 г. |
56В плане | CVE-2020-15922Proof of concept | There is an OS Command Injection in Mida eFramework 2.9.0 that allows an attacker to achieve Remote Code Execution (RCE) with administrativemidasolutions · eframework · CWE-78 | Критическая9,8 | — | 57,3 % | 23 июл. 2020 г. |
44В плане | CVE-2020-15921Proof of concept | Mida eFramework through 2.9.0 has a back door that permits a change of the administrative password and access to restricted functionalities,midasolutions · eframework · CWE-287 | Критическая9,8 | — | 18,3 % | 23 июл. 2020 г. |
31Наблюдать | CVE-2020-15923Эксплойта нет | Mida eFramework through 2.9.0 allows unauthenticated ../ directory traversal.midasolutions · eframework · CWE-22 | Высокая7,5 | — | 3,3 % | 23 июл. 2020 г. |
31Наблюдать | CVE-2020-15924Эксплойта нет | There is a SQL Injection in Mida eFramework through 2.9.0 that leads to Information Disclosure.midasolutions · eframework · CWE-89 | Высокая7,5 | — | 1,9 % | 23 июл. 2020 г. |
24Наблюдать | CVE-2020-15919Эксплойта нет | A Reflected Cross Site Scripting (XSS) vulnerability was discovered in Mida eFramework through 2.9.0.midasolutions · eframework · CWE-79 | Средняя6,1 | — | 0,9 % | 23 июл. 2020 г. |
21Наблюдать | CVE-2020-15918Эксплойта нет | Multiple Stored Cross Site Scripting (XSS) vulnerabilities were discovered in Mida eFramework through 2.9.0.midasolutions · eframework · CWE-79 | Средняя5,4 | — | 0,6 % | 23 июл. 2020 г. |
- CVE-2020-1592068На этой неделе
There is an OS Command Injection in Mida eFramework through 2.9.0 that allows an attacker to achieve Remote Code Execution (RCE) with admini
КритическаяCVSS 9,8Готовый эксплойтEPSS 98 %midasolutions · eframework23 июл. 2020 г.
- CVE-2020-1592256В плане
There is an OS Command Injection in Mida eFramework 2.9.0 that allows an attacker to achieve Remote Code Execution (RCE) with administrative
КритическаяCVSS 9,8Proof of conceptEPSS 57 %midasolutions · eframework23 июл. 2020 г.
- CVE-2020-1592144В плане
Mida eFramework through 2.9.0 has a back door that permits a change of the administrative password and access to restricted functionalities,
КритическаяCVSS 9,8Proof of conceptEPSS 18 %midasolutions · eframework23 июл. 2020 г.
- CVE-2020-1592331Наблюдать
Mida eFramework through 2.9.0 allows unauthenticated ../ directory traversal.
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %midasolutions · eframework23 июл. 2020 г.
- CVE-2020-1592431Наблюдать
There is a SQL Injection in Mida eFramework through 2.9.0 that leads to Information Disclosure.
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %midasolutions · eframework23 июл. 2020 г.
- CVE-2020-1591924Наблюдать
A Reflected Cross Site Scripting (XSS) vulnerability was discovered in Mida eFramework through 2.9.0.
СредняяCVSS 6,1Эксплойта нетEPSS 1 %midasolutions · eframework23 июл. 2020 г.
- CVE-2020-1591821Наблюдать
Multiple Stored Cross Site Scripting (XSS) vulnerabilities were discovered in Mida eFramework through 2.9.0.
СредняяCVSS 5,4Эксплойта нетEPSS 1 %midasolutions · eframework23 июл. 2020 г.