Записи perfsonar
8 опубликованных записей вендора perfsonar.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor4
- CWE-918 Server-Side Request Forgery (SSRF)2
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-73 External Control of File Name or Path1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
8 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
35Наблюдать | CVE-2022-41412Proof of concept | An issue in the graphData.cgi component of perfSONAR v4.4.5 and prior allows attackers to access sensitive data and execute Server-Side Requperfsonar · perfsonar · CWE-918 | Высокая8,6 | — | 4,2 % | 30 нояб. 2022 г. |
23Наблюдать | CVE-2018-12523Proof of concept | An issue was discovered in perfSONAR Monitoring and Debugging Dashboard (MaDDash) 2.0.2.perfsonar · monitoring and debugging dashboard · CWE-200 | Средняя5,3 | — | 7,1 % | 18 июн. 2018 г. |
23Наблюдать | CVE-2018-12524Proof of concept | An issue was discovered in perfSONAR Monitoring and Debugging Dashboard (MaDDash) 2.0.2.perfsonar · monitoring and debugging dashboard · CWE-200 | Средняя5,3 | — | 7,1 % | 18 июн. 2018 г. |
23Наблюдать | CVE-2018-12525Proof of concept | An issue was discovered in perfSONAR Monitoring and Debugging Dashboard (MaDDash) 2.0.2.perfsonar · monitoring and debugging dashboard · CWE-200 | Средняя5,3 | — | 7,1 % | 18 июн. 2018 г. |
23Наблюдать | CVE-2018-12522Proof of concept | An issue was discovered in perfSONAR Monitoring and Debugging Dashboard (MaDDash) 2.0.2.perfsonar · monitoring and debugging dashboard · CWE-200 | Средняя5,3 | — | 7,1 % | 18 июн. 2018 г. |
21Наблюдать | CVE-2022-45213Эксплойта нет | perfSONAR before 4.4.6 inadvertently supports the parse option for a file:// URL.perfsonar · perfsonar · CWE-73 | Средняя5,3 | — | 0,6 % | 1 янв. 2023 г. |
21Наблюдать | CVE-2022-45027Эксплойта нет | perfSONAR before 4.4.6, when performing participant discovery, incorrectly uses an HTTP request header value to determine a local address.perfsonar · perfsonar · CWE-918 | Средняя5,3 | — | 0,6 % | 1 янв. 2023 г. |
18Наблюдать | CVE-2022-41413Proof of concept | perfSONAR v4.x <= v4.4.5 was discovered to contain a Cross-Site Request Forgery (CSRF) which is triggered when an attacker injects crafted iperfsonar · perfsonar · CWE-352 | Средняя4,3 | — | 2,1 % | 30 нояб. 2022 г. |
- CVE-2022-4141235Наблюдать
An issue in the graphData.cgi component of perfSONAR v4.4.5 and prior allows attackers to access sensitive data and execute Server-Side Requ
ВысокаяCVSS 8,6Proof of conceptEPSS 4 %perfsonar · perfsonar30 нояб. 2022 г.
- CVE-2018-1252323Наблюдать
An issue was discovered in perfSONAR Monitoring and Debugging Dashboard (MaDDash) 2.0.2.
СредняяCVSS 5,3Proof of conceptEPSS 7 %perfsonar · monitoring and debugging dashboard18 июн. 2018 г.
- CVE-2018-1252423Наблюдать
An issue was discovered in perfSONAR Monitoring and Debugging Dashboard (MaDDash) 2.0.2.
СредняяCVSS 5,3Proof of conceptEPSS 7 %perfsonar · monitoring and debugging dashboard18 июн. 2018 г.
- CVE-2018-1252523Наблюдать
An issue was discovered in perfSONAR Monitoring and Debugging Dashboard (MaDDash) 2.0.2.
СредняяCVSS 5,3Proof of conceptEPSS 7 %perfsonar · monitoring and debugging dashboard18 июн. 2018 г.
- CVE-2018-1252223Наблюдать
An issue was discovered in perfSONAR Monitoring and Debugging Dashboard (MaDDash) 2.0.2.
СредняяCVSS 5,3Proof of conceptEPSS 7 %perfsonar · monitoring and debugging dashboard18 июн. 2018 г.
- CVE-2022-4521321Наблюдать
perfSONAR before 4.4.6 inadvertently supports the parse option for a file:// URL.
СредняяCVSS 5,3Эксплойта нетEPSS 1 %perfsonar · perfsonar1 янв. 2023 г.
- CVE-2022-4502721Наблюдать
perfSONAR before 4.4.6, when performing participant discovery, incorrectly uses an HTTP request header value to determine a local address.
СредняяCVSS 5,3Эксплойта нетEPSS 1 %perfsonar · perfsonar1 янв. 2023 г.
- CVE-2022-4141318Наблюдать
perfSONAR v4.x <= v4.4.5 was discovered to contain a Cross-Site Request Forgery (CSRF) which is triggered when an attacker injects crafted i
СредняяCVSS 4,3Proof of conceptEPSS 2 %perfsonar · perfsonar30 нояб. 2022 г.