Записи myiosoft
21 опубликованных записей вендора myiosoft.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 14
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')12
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')7
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
21 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
31Наблюдать | CVE-2008-1651Proof of concept | Directory traversal vulnerability in admin/login.php in EasyNews 4.0 allows remote attackers to include and execute arbitrary local files vimyiosoft · easynews · CWE-22 | Высокая7,5 | — | 3,1 % | 2 апр. 2008 г. |
31Наблюдать | CVE-2008-5651Proof of concept | SQL injection vulnerability in plugins/bookmarker/bookmarker_backend.php in MyioSoft EasyBookMarker 4.0 allows remote attackers to execute amyiosoft · easybookmarker · CWE-89 | Высокая7,5 | — | 2,3 % | 17 дек. 2008 г. |
30Наблюдать | CVE-2008-1650Proof of concept | SQL injection vulnerability in dynamicpages/index.php in EasyNews 4.0 allows remote attackers to execute arbitrary SQL commands via the readmyiosoft · easynews · CWE-89 | Высокая7,5 | — | 1,3 % | 2 апр. 2008 г. |
30Наблюдать | CVE-2008-5652Proof of concept | SQL injection vulnerability in the loginADP function in ajaxp.php in MyioSoft EasyBookMarker 4.0 allows remote attackers to execute arbitrarmyiosoft · easybookmarker · CWE-89 | Высокая7,5 | — | 1,2 % | 17 дек. 2008 г. |
30Наблюдать | CVE-2009-2262Эксплойта нет | PHP remote file inclusion vulnerability in install/di.php in AjaxPortal 3.0 allows remote attackers to execute arbitrary PHP code via a URL myiosoft · ajaxportal · CWE-94 | Высокая7,5 | — | 1,2 % | 30 июн. 2009 г. |
30Наблюдать | CVE-2008-3347Proof of concept | SQL injection vulnerability in staticpages/easycalendar/index.php in MyioSoft EasyDynamicPages 3.0 trial edition (tr) allows remote attackermyiosoft · easydynamicpages · CWE-89 | Высокая7,5 | — | 1,2 % | 28 июл. 2008 г. |
30Наблюдать | CVE-2008-3343Proof of concept | SQL injection vulnerability in staticpages/easypublish/index.php in MyioSoft EasyPublish 3.0tr (trial edition) allows remote attackers to exmyiosoft · easypublish · CWE-89 | Высокая7,5 | — | 1,1 % | 28 июл. 2008 г. |
30Наблюдать | CVE-2008-5654Proof of concept | SQL injection vulnerability in the loginADP function in ajaxp.php in MyioSoft EasyCalendar 4.0 allows remote attackers to execute arbitrary myiosoft · easycalendar · CWE-89 | Высокая7,5 | — | 1,0 % | 17 дек. 2008 г. |
30Наблюдать | CVE-2008-1344Proof of concept | Multiple SQL injection vulnerabilities in MyioSoft EasyCalendar 4.0tr and earlier allow remote attackers to execute arbitrary SQL commands vmyiosoft · easycalendar · CWE-89 | Высокая7,5 | — | 1,0 % | 17 мар. 2008 г. |
30Наблюдать | CVE-2008-1346Proof of concept | SQL injection vulnerability in staticpages/easygallery/index.php in MyioSoft EasyGallery 5.0tr and earlier allows remote attackers to executmyiosoft · easycalendar · CWE-89 | Высокая7,5 | — | 1,0 % | 17 мар. 2008 г. |
30Наблюдать | CVE-2009-1509Proof of concept | SQL injection vulnerability in ajaxp_backend.php in MyioSoft AjaxPortal 3.0 allows remote attackers to execute arbitrary SQL commands via thmyiosoft · ajaxportal · CWE-89 | Высокая7,5 | — | 1,0 % | 1 мая 2009 г. |
30Наблюдать | CVE-2008-5655Proof of concept | Multiple SQL injection vulnerabilities in MyioSoft EasyBookMarker 4.0 allow remote attackers to execute arbitrary SQL commands via the (1) dmyiosoft · easybookmarker · CWE-89 | Высокая7,5 | — | 0,9 % | 17 дек. 2008 г. |
27Наблюдать | CVE-2008-4084Proof of concept | SQL injection vulnerability in staticpages/easyclassifields/index.php in MyioSoft EasyClassifields 3.0 allows remote attackers to execute armyiosoft · easyclassifields · CWE-89 | Средняя6,8 | — | 1,0 % | 15 сент. 2008 г. |
27Наблюдать | CVE-2008-3345Proof of concept | SQL injection vulnerability in staticpages/easyecards/index.php in MyioSoft EasyE-Cards 3.5 trial edition (tr) and 3.10a, when magic_quotes_myiosoft · easye-cards · CWE-89 | Средняя6,8 | — | 0,9 % | 28 июл. 2008 г. |
18Наблюдать | CVE-2008-1649Proof of concept | Cross-site scripting (XSS) vulnerability in staticpages/easypublish/index.php in EasyNews 4.0 allows remote attackers to inject arbitrary wemyiosoft · easynews · CWE-79 | Средняя4,3 | — | 1,9 % | 2 апр. 2008 г. |
18Наблюдать | CVE-2008-3380Proof of concept | Cross-site scripting (XSS) vulnerability in ajaxp_backend.php in MyioSoft EasyBookMarker 4.0 trial edition (tr) allows remote attackers to imyiosoft · easybookmarker · CWE-79 | Средняя4,3 | — | 1,7 % | 30 июл. 2008 г. |
17Наблюдать | CVE-2008-1345Proof of concept | Cross-site scripting (XSS) vulnerability in plugins/calendar/calendar_backend.php in MyioSoft EasyCalendar 4.0tr and earlier allows remote amyiosoft · easycalendar · CWE-79 | Средняя4,3 | — | 1,5 % | 17 мар. 2008 г. |
17Наблюдать | CVE-2008-1347Proof of concept | Multiple cross-site scripting (XSS) vulnerabilities in staticpages/easygallery/index.php in MyioSoft EasyGallery 5.0tr and earlier allow remmyiosoft · easycalendar · CWE-79 | Средняя4,3 | — | 1,5 % | 17 мар. 2008 г. |
17Наблюдать | CVE-2008-3342Эксплойта нет | Cross-site scripting (XSS) vulnerability in staticpages/easypublish/index.php in MyioSoft EasyPublish 3.0tr allows remote attackers to injecmyiosoft · easypublish · CWE-79 | Средняя4,3 | — | 1,3 % | 28 июл. 2008 г. |
17Наблюдать | CVE-2008-3348Эксплойта нет | Cross-site scripting (XSS) vulnerability in staticpages/easycalendar/index.php in MyioSoft EasyDynamicPages 3.0 trial edition (tr) allows remyiosoft · easydynamicpages · CWE-79 | Средняя4,3 | — | 1,3 % | 28 июл. 2008 г. |
17Наблюдать | CVE-2008-3344Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in staticpages/easyecards/index.php in MyioSoft EasyE-Cards 3.5 trial edition (tr) and 3myiosoft · easye-cards · CWE-79 | Средняя4,3 | — | 1,1 % | 28 июл. 2008 г. |
- CVE-2008-165131Наблюдать
Directory traversal vulnerability in admin/login.php in EasyNews 4.0 allows remote attackers to include and execute arbitrary local files vi
ВысокаяCVSS 7,5Proof of conceptEPSS 3 %myiosoft · easynews2 апр. 2008 г.
- CVE-2008-565131Наблюдать
SQL injection vulnerability in plugins/bookmarker/bookmarker_backend.php in MyioSoft EasyBookMarker 4.0 allows remote attackers to execute a
ВысокаяCVSS 7,5Proof of conceptEPSS 2 %myiosoft · easybookmarker17 дек. 2008 г.
- CVE-2008-165030Наблюдать
SQL injection vulnerability in dynamicpages/index.php in EasyNews 4.0 allows remote attackers to execute arbitrary SQL commands via the read
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %myiosoft · easynews2 апр. 2008 г.
- CVE-2008-565230Наблюдать
SQL injection vulnerability in the loginADP function in ajaxp.php in MyioSoft EasyBookMarker 4.0 allows remote attackers to execute arbitrar
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %myiosoft · easybookmarker17 дек. 2008 г.
- CVE-2009-226230Наблюдать
PHP remote file inclusion vulnerability in install/di.php in AjaxPortal 3.0 allows remote attackers to execute arbitrary PHP code via a URL
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %myiosoft · ajaxportal30 июн. 2009 г.
- CVE-2008-334730Наблюдать
SQL injection vulnerability in staticpages/easycalendar/index.php in MyioSoft EasyDynamicPages 3.0 trial edition (tr) allows remote attacker
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %myiosoft · easydynamicpages28 июл. 2008 г.
- CVE-2008-334330Наблюдать
SQL injection vulnerability in staticpages/easypublish/index.php in MyioSoft EasyPublish 3.0tr (trial edition) allows remote attackers to ex
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %myiosoft · easypublish28 июл. 2008 г.
- CVE-2008-565430Наблюдать
SQL injection vulnerability in the loginADP function in ajaxp.php in MyioSoft EasyCalendar 4.0 allows remote attackers to execute arbitrary
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %myiosoft · easycalendar17 дек. 2008 г.
- CVE-2008-134430Наблюдать
Multiple SQL injection vulnerabilities in MyioSoft EasyCalendar 4.0tr and earlier allow remote attackers to execute arbitrary SQL commands v
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %myiosoft · easycalendar17 мар. 2008 г.
- CVE-2008-134630Наблюдать
SQL injection vulnerability in staticpages/easygallery/index.php in MyioSoft EasyGallery 5.0tr and earlier allows remote attackers to execut
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %myiosoft · easycalendar17 мар. 2008 г.
- CVE-2009-150930Наблюдать
SQL injection vulnerability in ajaxp_backend.php in MyioSoft AjaxPortal 3.0 allows remote attackers to execute arbitrary SQL commands via th
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %myiosoft · ajaxportal1 мая 2009 г.
- CVE-2008-565530Наблюдать
Multiple SQL injection vulnerabilities in MyioSoft EasyBookMarker 4.0 allow remote attackers to execute arbitrary SQL commands via the (1) d
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %myiosoft · easybookmarker17 дек. 2008 г.
- CVE-2008-408427Наблюдать
SQL injection vulnerability in staticpages/easyclassifields/index.php in MyioSoft EasyClassifields 3.0 allows remote attackers to execute ar
СредняяCVSS 6,8Proof of conceptEPSS 1 %myiosoft · easyclassifields15 сент. 2008 г.
- CVE-2008-334527Наблюдать
SQL injection vulnerability in staticpages/easyecards/index.php in MyioSoft EasyE-Cards 3.5 trial edition (tr) and 3.10a, when magic_quotes_
СредняяCVSS 6,8Proof of conceptEPSS 1 %myiosoft · easye-cards28 июл. 2008 г.
- CVE-2008-164918Наблюдать
Cross-site scripting (XSS) vulnerability in staticpages/easypublish/index.php in EasyNews 4.0 allows remote attackers to inject arbitrary we
СредняяCVSS 4,3Proof of conceptEPSS 2 %myiosoft · easynews2 апр. 2008 г.
- CVE-2008-338018Наблюдать
Cross-site scripting (XSS) vulnerability in ajaxp_backend.php in MyioSoft EasyBookMarker 4.0 trial edition (tr) allows remote attackers to i
СредняяCVSS 4,3Proof of conceptEPSS 2 %myiosoft · easybookmarker30 июл. 2008 г.
- CVE-2008-134517Наблюдать
Cross-site scripting (XSS) vulnerability in plugins/calendar/calendar_backend.php in MyioSoft EasyCalendar 4.0tr and earlier allows remote a
СредняяCVSS 4,3Proof of conceptEPSS 1 %myiosoft · easycalendar17 мар. 2008 г.
- CVE-2008-134717Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in staticpages/easygallery/index.php in MyioSoft EasyGallery 5.0tr and earlier allow rem
СредняяCVSS 4,3Proof of conceptEPSS 1 %myiosoft · easycalendar17 мар. 2008 г.
- CVE-2008-334217Наблюдать
Cross-site scripting (XSS) vulnerability in staticpages/easypublish/index.php in MyioSoft EasyPublish 3.0tr allows remote attackers to injec
СредняяCVSS 4,3Эксплойта нетEPSS 1 %myiosoft · easypublish28 июл. 2008 г.
- CVE-2008-334817Наблюдать
Cross-site scripting (XSS) vulnerability in staticpages/easycalendar/index.php in MyioSoft EasyDynamicPages 3.0 trial edition (tr) allows re
СредняяCVSS 4,3Эксплойта нетEPSS 1 %myiosoft · easydynamicpages28 июл. 2008 г.
- CVE-2008-334417Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in staticpages/easyecards/index.php in MyioSoft EasyE-Cards 3.5 trial edition (tr) and 3
СредняяCVSS 4,3Эксплойта нетEPSS 1 %myiosoft · easye-cards28 июл. 2008 г.