Перейти к содержимому
Noroxi

Записи minibb

18 опубликованных записей вендора minibb.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
11
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 18

Столбик: всего · тёмная часть: CISA KEV.

Повторяющиеся классы

Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

CWE

Все записи

18 записей
  • CVE-2006-7156
    41В плане

    PHP remote file inclusion vulnerability in addon_keywords.php in Keyword Replacer (keyword_replacer) 1.0 and earlier, a module for miniBB, a

    КритическаяCVSS 10,0Proof of conceptEPSS 5 %

    minibb · keyword replacer7 мар. 2007 г.

  • CVE-2006-7153
    41В плане

    PHP remote file inclusion vulnerability in index.php in MiniBB Forum 2 allows remote attackers to execute arbitrary code via a URL in the pa

    КритическаяCVSS 10,0Эксплойта нетEPSS 4 %

    minibb · forum7 мар. 2007 г.

  • CVE-2006-3955
    33Наблюдать

    Multiple PHP remote file inclusion vulnerabilities in MiniBB Forum 1.5a allow remote attackers to execute arbitrary PHP code via a URL in th

    ВысокаяCVSS 7,5Proof of conceptEPSS 10 %

    minibb · minibb1 авг. 2006 г.

  • CVE-2007-2317
    32Наблюдать

    Multiple PHP remote file inclusion vulnerabilities in MiniBB Forum 1.5a and earlier, as used by TOSMO/Mambo 4.0.12 and probably other produc

    ВысокаяCVSS 7,5Proof of conceptEPSS 8 %

    minibb · minibb26 апр. 2007 г.

  • CVE-2007-3272
    32Наблюдать

    Directory traversal vulnerability in index.php in MiniBB 2.0.5 allows remote attackers to read arbitrary files via a ..

    ВысокаяCVSS 7,8Proof of conceptEPSS 3 %

    minibb · minibb19 июн. 2007 г.

  • CVE-2006-3690
    31Наблюдать

    Multiple PHP remote file inclusion vulnerabilities in MiniBB Forum 1.5a and earlier allow remote attackers to execute arbitrary PHP code via

    ВысокаяCVSS 7,5Proof of conceptEPSS 4 %

    minibb · forum21 июл. 2006 г.

  • CVE-2004-2456
    31Наблюдать

    SQL injection vulnerability in index.php in miniBB 1.7f and earlier allows remote attackers to execute arbitrary SQL commands via the user p

    ВысокаяCVSS 7,5Proof of conceptEPSS 3 %

    minibb · minibb31 дек. 2004 г.

  • CVE-2008-2067
    30Наблюдать

    SQL injection vulnerability in bb_admin.php in miniBB 2.2a allows remote attackers to execute arbitrary SQL commands via the whatus paramete

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    minibb · minibb2 мая 2008 г.

  • CVE-2006-5674
    30Наблюдать

    Multiple PHP remote file inclusion vulnerabilities in miniBB 2.0.2 and earlier, when register_globals is enabled, allow remote attackers to

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    minibb · minibb2 нояб. 2006 г.

  • CVE-2014-9254
    30Наблюдать

    bb_func_unsub.php in MiniBB 3.1 before 20141127 uses an incorrect regular expression, which allows remote attackers to conduct SQl injection

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    minibb · minibb31 дек. 2014 г.

  • CVE-2007-5719
    30Наблюдать

    SQL injection vulnerability in bb_func_search.php in miniBB 2.1 allows remote attackers to execute arbitrary SQL commands via the table para

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    minibb · minibb30 окт. 2007 г.

  • CVE-2006-5673
    29Наблюдать

    PHP remote file inclusion vulnerability in bb_func_txt.php in miniBB 2.0.2 and earlier, when register_globals is enabled, allows remote atta

    СредняяCVSS 6,8Proof of conceptEPSS 6 %

    minibb · minibb2 нояб. 2006 г.

  • CVE-2008-2029
    27Наблюдать

    Multiple SQL injection vulnerabilities in (1) setup_mysql.php and (2) setup_options.php in miniBB 2.2 and possibly earlier, when register_gl

    СредняяCVSS 6,8Proof of conceptEPSS 1 %

    minibb · minibb30 апр. 2008 г.

  • CVE-2018-6506
    19Наблюдать

    Cross-Site Scripting (XSS) exists in the Add Forum feature in the Administrative Panel in miniBB 3.2.2 via crafted use of an onload attribut

    СредняяCVSS 4,8Эксплойта нетEPSS 1 %

    minibb · minibb12 февр. 2018 г.

  • CVE-2008-2028
    18Наблюдать

    miniBB 2.2, and possibly earlier, when register_globals is enabled, allows remote attackers to obtain the full path via a direct request to

    СредняяCVSS 4,3Proof of conceptEPSS 2 %

    minibb · minibb30 апр. 2008 г.

  • CVE-2013-5020
    18Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in bb_admin.php in MiniBB before 3.0.1 allow remote attackers to inject arbitrary web sc

    СредняяCVSS 4,3Proof of conceptEPSS 2 %

    minibb · minibb31 июл. 2013 г.

  • CVE-2008-2066
    17Наблюдать

    Cross-site scripting (XSS) vulnerability in bb_admin.php in miniBB 2.2a allows remote attackers to inject arbitrary web script or HTML via t

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    minibb · minibb2 мая 2008 г.

  • CVE-2008-2024
    17Наблюдать

    Cross-site scripting (XSS) vulnerability in index.php in miniBB 2.2, and possibly earlier, when register_globals is enabled, allows remote a

    СредняяCVSS 4,3Proof of conceptEPSS 2 %

    minibb · minibb30 апр. 2008 г.