Перейти к содержимому
Noroxi

Записи nch

9 опубликованных записей вендора nch.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
1
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 18
  2. 21

Столбик: всего · тёмная часть: CISA KEV.

Повторяющиеся классы

Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

CWE

Все записи

9 записей
  • CVE-2021-37441
    35Наблюдать

    NCH Axon PBX v2.22 and earlier allows path traversal for file deletion via the logdelete?file=/..

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    nch · axon pbx25 июл. 2021 г.

  • CVE-2018-11552
    33Наблюдать

    There is a reflected XSS vulnerability in AXON PBX 2.02 via the "AXON->Auto-Dialer->Agents->Name" field.

    СредняяCVSS 6,1Эксплойта нетEPSS 29 %

    nch · axon pbx1 июн. 2018 г.

  • CVE-2018-11551
    32Наблюдать

    AXON PBX 2.02 contains a DLL hijacking vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on a tar

    ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %

    nch · axon pbx1 июн. 2018 г.

  • CVE-2021-37469
    26Наблюдать

    In NCH WebDictate v2.13 and earlier, authenticated users can abuse logprop?file=/..

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    nch · webdictate25 июл. 2021 г.

  • CVE-2021-37440
    26Наблюдать

    NCH Axon PBX v2.22 and earlier allows path traversal for file disclosure via the logprop?file=/..

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    nch · axon pbx25 июл. 2021 г.

  • CVE-2021-37439
    26Наблюдать

    NCH FlexiServer v6.00 suffers from a syslog?file=/..

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    nch · flexiserver25 июл. 2021 г.

  • CVE-2021-37452
    22Наблюдать

    NCH Quorum v2.03 and earlier allows local users to discover cleartext login information relating to users by reading the local .dat configur

    СредняяCVSS 5,5Эксплойта нетEPSS 0 %

    nch · quorum25 июл. 2021 г.

  • CVE-2009-4038
    18Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in NCH Software Axon Virtual PBX 2.10 and 2.11 allow remote attackers to inject arbitrar

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    nch · axon virtual pbx20 нояб. 2009 г.

  • CVE-2021-37468
    13Наблюдать

    NCH Reflect CRM 3.01 allows local users to discover cleartext user account information by reading the configuration files.

    НизкаяCVSS 3,3Эксплойта нетEPSS 0 %

    nch · reflect customer relationship management25 июл. 2021 г.