Записи open source development network
6 опубликованных записей вендора open source development network.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
31Наблюдать | CVE-2000-1015Эксплойта нет | The default configuration of Slashcode before version 2.0 Alpha has a default administrative password, which allows remote attackers to gainopen source development network · slashcode | Высокая7,5 | — | 2,2 % | 11 дек. 2000 г. |
28Наблюдать | CVE-2002-1748Эксплойта нет | Unknown vulnerability in Slash 2.1.x and 2.2 through 2.2.2, as used in Slashcode, allows remote authenticated users to gain access to arbitropen source development network · slashcode | Высокая7,2 | — | 0,8 % | 31 дек. 2002 г. |
27Наблюдать | CVE-2002-1681Эксплойта нет | Cross-site scripting (XSS) vulnerability in Slashcode CVS releases June 17 through July 1 2002 allows remote attackers to execute arbitrary open source development network · slashcode | Средняя6,8 | — | 1,3 % | 31 дек. 2002 г. |
18Наблюдать | CVE-2001-1535Эксплойта нет | Slashcode 2.0 creates new accounts with an 8-character random password, which could allow local users to obtain session ID's from cookies anopen source development network · slashcode | Средняя4,6 | — | 0,3 % | 31 дек. 2001 г. |
17Наблюдать | CVE-2004-2656Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in Slashdot Like Automated Storytelling Homepage (Slash) (aka Slashcode) before R_2_5_0_open source development network · slashcode | Средняя4,3 | — | 1,4 % | 31 дек. 2004 г. |
10Наблюдать | CVE-2002-0292Эксплойта нет | Cross-site scripting vulnerability in Slash before 2.2.5, as used in Slashcode and elsewhere, allows remote attackers to steal cookies and aopen source development network · slashcode | Низкая2,6 | — | 1,3 % | 31 мая 2002 г. |
- CVE-2000-101531Наблюдать
The default configuration of Slashcode before version 2.0 Alpha has a default administrative password, which allows remote attackers to gain
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %open source development network · slashcode11 дек. 2000 г.
- CVE-2002-174828Наблюдать
Unknown vulnerability in Slash 2.1.x and 2.2 through 2.2.2, as used in Slashcode, allows remote authenticated users to gain access to arbitr
ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %open source development network · slashcode31 дек. 2002 г.
- CVE-2002-168127Наблюдать
Cross-site scripting (XSS) vulnerability in Slashcode CVS releases June 17 through July 1 2002 allows remote attackers to execute arbitrary
СредняяCVSS 6,8Эксплойта нетEPSS 1 %open source development network · slashcode31 дек. 2002 г.
- CVE-2001-153518Наблюдать
Slashcode 2.0 creates new accounts with an 8-character random password, which could allow local users to obtain session ID's from cookies an
СредняяCVSS 4,6Эксплойта нетEPSS 0 %open source development network · slashcode31 дек. 2001 г.
- CVE-2004-265617Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in Slashdot Like Automated Storytelling Homepage (Slash) (aka Slashcode) before R_2_5_0_
СредняяCVSS 4,3Эксплойта нетEPSS 1 %open source development network · slashcode31 дек. 2004 г.
- CVE-2002-029210Наблюдать
Cross-site scripting vulnerability in Slash before 2.2.5, as used in Slashcode and elsewhere, allows remote attackers to steal cookies and a
НизкаяCVSS 2,6Эксплойта нетEPSS 1 %open source development network · slashcode31 мая 2002 г.