Перейти к содержимому
Noroxi

Записи pear

22 опубликованных записей вендора pear.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
6
С записью об исправлении
72,7 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

22 записей
  • CVE-2009-4025
    42В плане

    Argument injection vulnerability in the traceroute function in Traceroute.php in the Net_Traceroute package before 0.21.2 for PEAR allows re

    КритическаяCVSS 10,0Эксплойта нетEPSS 6 %

    pear · pear29 нояб. 2009 г.

  • CVE-2009-4024
    42В плане

    Argument injection vulnerability in the ping function in Ping.php in the Net_Ping package before 2.4.5 for PEAR allows remote attackers to e

    КритическаяCVSS 10,0Эксплойта нетEPSS 6 %

    pear · pear29 нояб. 2009 г.

  • CVE-2017-5677
    40В плане

    PEAR HTML_AJAX 0.3.0 through 0.5.7 has a PHP Object Injection Vulnerability in the PHP Serializer.

    КритическаяCVSS 9,8Эксплойта нетEPSS 5 %

    pear · html ajax6 февр. 2017 г.

  • CVE-2005-4730
    40В плане

    Unspecified vulnerability in PEAR Text_Password 1.0 has unknown impact and attack vectors, related to "problematic seeding" of the random nu

    КритическаяCVSS 10,0Эксплойта нетEPSS 1 %

    pear · text password31 дек. 2005 г.

  • CVE-2026-25241
    37Наблюдать

    PEAR is Vulnerable to SQL Injection in /get/<package>/<version> Endpoint

    КритическаяCVSS 9,3Эксплойта нетEPSS 0 %

    pear · pearweb3 февр. 2026 г.

  • CVE-2026-25237
    36Наблюдать

    PEAR is Vulnerable to PHP Code Execution via preg_replace /e in Bug Update Emails

    КритическаяCVSS 9,2Эксплойта нетEPSS 0 %

    pear · pearweb3 февр. 2026 г.

  • CVE-2026-25238
    36Наблюдать

    PEAR is Vulnerable to SQL Injection in Bug Subscription Deletion via Weak Email Validation

    КритическаяCVSS 9,2Эксплойта нетEPSS 0 %

    pear · pearweb3 февр. 2026 г.

  • CVE-2026-25235
    32Наблюдать

    PEAR Has a Predictable Verification Hash in Election Account Requests

    ВысокаяCVSS 8,2Эксплойта нетEPSS 0 %

    pear · pearweb3 февр. 2026 г.

  • CVE-2026-25239
    32Наблюдать

    PEAR is Vulnerable to SQL Injection in apidoc_queue Insert via Unescaped Filename

    ВысокаяCVSS 8,2Эксплойта нетEPSS 0 %

    pear · pearweb3 февр. 2026 г.

  • CVE-2006-0868
    31Наблюдать

    Multiple unspecified injection vulnerabilities in unspecified Auth Container back ends for PEAR::Auth before 1.2.4, and 1.3.x before 1.3.0r4

    ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %

    pear · xml rpc23 февр. 2006 г.

  • CVE-2009-4023
    31Наблюдать

    Argument injection vulnerability in the sendmail implementation of the Mail::Send method (Mail/sendmail.php) in the Mail package 1.1.14 for

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    pear · pear29 нояб. 2009 г.

  • CVE-2026-25233
    28Наблюдать

    PEAR Has a Roadmap Authorization Bypass via Operator Precedence Bug

    ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %

    pear · pearweb3 февр. 2026 г.

  • CVE-2009-4111
    27Наблюдать

    Argument injection vulnerability in Mail/sendmail.php in the Mail package 1.1.14, 1.2.0b2, and possibly other versions for PEAR allows remot

    СредняяCVSS 6,8Эксплойта нетEPSS 2 %

    pear · mail29 нояб. 2009 г.

  • CVE-2026-25240
    27Наблюдать

    PEAR is Vulnerable to SQL Injection in user::maintains() Role IN() Filter

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    pear · pearweb3 февр. 2026 г.

  • CVE-2026-25236
    27Наблюдать

    PEAR is Vulnerable to SQL Injection in Damblan_Karma IN() Query via Literal Substitution

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    pear · pearweb3 февр. 2026 г.

  • CVE-2006-0869
    26Наблюдать

    Directory traversal vulnerability in the "remember me" feature in liveuser.php in PHP Extension and Application Repository (PEAR) LiveUser 0

    СредняяCVSS 6,4Proof of conceptEPSS 4 %

    pear · pear liveuser23 февр. 2006 г.

  • CVE-2006-0931
    21Наблюдать

    Directory traversal vulnerability in PEAR::Archive_Tar 1.2, and other versions before 1.3.2, allows remote attackers to create and overwrite

    СредняяCVSS 5,0Эксплойта нетEPSS 2 %

    pear · pear archive tar28 февр. 2006 г.

  • CVE-2006-0932
    21Наблюдать

    Directory traversal vulnerability in zip.lib.php 0.1.1 in PEAR::Archive_Zip allows remote attackers to create and overwrite arbitrary files

    СредняяCVSS 5,0Эксплойта нетEPSS 2 %

    pear · pear archive zip28 февр. 2006 г.

  • CVE-2022-24953
    21Наблюдать

    The Crypt_GPG extension before 1.6.7 for PHP does not prevent additional options in GPG calls, which presents a risk for certain environment

    СредняяCVSS 5,3Эксплойта нетEPSS 1 %

    pear · crypt gpg17 февр. 2022 г.

  • CVE-2026-25234
    21Наблюдать

    PEAR is Vulnerable to SQL Injection in Category Deletion

    СредняяCVSS 5,3Эксплойта нетEPSS 0 %

    pear · pearweb3 февр. 2026 г.

  • CVE-2007-3628
    20Наблюдать

    Unspecified vulnerability in the fetch function in MDB2.php in PEAR Structures-DataGrid-DataSource-MDB2 0.1.9 and earlier allows attackers t

    СредняяCVSS 5,0Эксплойта нетEPSS 1 %

    pear · structures datagrid datasource mdb29 июл. 2007 г.

  • CVE-2007-5934
    17Наблюдать

    The LOB functionality in PEAR MDB2 before 2.5.0a1 interprets a request to store a URL string as a request to retrieve and store the contents

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    pear · structures datagrid datasource mdb213 нояб. 2007 г.