Записи monitorr
5 опубликованных записей вендора monitorr.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 1 · 20 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-434 Unrestricted Upload of File with Dangerous Type2
- CWE-20 Improper Input Validation1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-863 Incorrect Authorization1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
65На этой неделе | CVE-2020-28871Готовый эксплойт | Remote code execution in Monitorr v1.7.6m in upload.php allows an unauthorized person to execute arbitrary code on the server-side via an inmonitorr · monitorr · CWE-434 | Критическая9,8 | — | 85,8 % | 9 февр. 2021 г. |
46В плане | CVE-2023-26775Эксплойта нет | File Upload vulnerability found in Monitorr v.1.7.6 allows a remote attacker t oexecute arbitrary code via a crafted file upload to the assemonitorr · monitorr · CWE-434 | Высокая7,8 | — | 49,4 % | 4 апр. 2023 г. |
40В плане | CVE-2020-28872Эксплойта нет | An authorization bypass vulnerability in Monitorr v1.7.6m in Monitorr/assets/config/_installation/_register.php allows an unauthorized persomonitorr · monitorr · CWE-863 | Критическая9,8 | — | 3,3 % | 12 апр. 2021 г. |
24Наблюдать | CVE-2023-26776Эксплойта нет | Cross Site Scripting vulnerability found in Monitorr v.1.7.6 allows a remote attacker to execute arbitrary code via the title parameter of tmonitorr · monitorr · CWE-79 | Средняя6,1 | — | 1,2 % | 4 апр. 2023 г. |
4Наблюдать | CVE-2025-7060Эксплойта нет | Monitorr Installer mkdbajax.php input validationmonitorr · monitorr · CWE-20 | Низкая1,2 | — | 0,5 % | 4 июл. 2025 г. |
- CVE-2020-2887165На этой неделе
Remote code execution in Monitorr v1.7.6m in upload.php allows an unauthorized person to execute arbitrary code on the server-side via an in
КритическаяCVSS 9,8Готовый эксплойтEPSS 86 %monitorr · monitorr9 февр. 2021 г.
- CVE-2023-2677546В плане
File Upload vulnerability found in Monitorr v.1.7.6 allows a remote attacker t oexecute arbitrary code via a crafted file upload to the asse
ВысокаяCVSS 7,8Эксплойта нетEPSS 49 %monitorr · monitorr4 апр. 2023 г.
- CVE-2020-2887240В плане
An authorization bypass vulnerability in Monitorr v1.7.6m in Monitorr/assets/config/_installation/_register.php allows an unauthorized perso
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %monitorr · monitorr12 апр. 2021 г.
- CVE-2023-2677624Наблюдать
Cross Site Scripting vulnerability found in Monitorr v.1.7.6 allows a remote attacker to execute arbitrary code via the title parameter of t
СредняяCVSS 6,1Эксплойта нетEPSS 1 %monitorr · monitorr4 апр. 2023 г.
- CVE-2025-70604Наблюдать
Monitorr Installer mkdbajax.php input validation
НизкаяCVSS 1,2Эксплойта нетEPSS 0 %monitorr · monitorr4 июл. 2025 г.