Перейти к содержимому
Noroxi

Записи php-stats

12 опубликованных записей вендора php-stats.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
6
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

    Столбик: всего · тёмная часть: CISA KEV.

    Повторяющиеся классы

    Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

    CWE

    Все записи

    12 записей
    • CVE-2006-7173
      41В плане

      Direct static code injection vulnerability in admin.php in PHP-Stats 0.1.9.1b and earlier allows remote attackers to execute arbitrary PHP c

      КритическаяCVSS 10,0Proof of conceptEPSS 4 %

      php-stats · php-stats20 мар. 2007 г.

    • CVE-2006-1085
      41В плане

      admin.php in PHP-Stats 0.1.9.1 and earlier allows remote attackers to bypass authentication, gain administrator privileges, and execute arbi

      КритическаяCVSS 10,0Эксплойта нетEPSS 4 %

      php-stats · php-stats8 мар. 2006 г.

    • CVE-2007-5452
      41В плане

      Multiple SQL injection vulnerabilities in php-stats.recjs.php in Php-Stats 0.1.9.2 allow remote attackers to execute arbitrary SQL commands

      КритическаяCVSS 10,0Proof of conceptEPSS 3 %

      php-stats · php-stats14 окт. 2007 г.

    • CVE-2007-5453
      35Наблюдать

      Multiple eval injection vulnerabilities in Php-Stats 0.1.9.2 allow remote authenticated administrators to execute arbitrary code by writing

      ВысокаяCVSS 8,5Proof of conceptEPSS 4 %

      php-stats · php-stats14 окт. 2007 г.

    • CVE-2006-7172
      31Наблюдать

      Multiple SQL injection vulnerabilities in php-stats.recphp.php in PHP-Stats 0.1.9.1b and earlier allow remote attackers to execute arbitrary

      ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

      php-stats · php-stats20 мар. 2007 г.

    • CVE-2006-1083
      31Наблюдать

      Multiple directory traversal vulnerabilities in PHP-Stats 0.1.9.1 and earlier allow remote attackers to read and possibly execute arbitrary

      ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

      php-stats · php-stats8 мар. 2006 г.

    • CVE-2006-1084
      30Наблюдать

      Multiple SQL injection vulnerabilities in PHP-Stats 0.1.9.1 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the

      ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

      php-stats · php-stats8 мар. 2006 г.

    • CVE-2006-1087
      27Наблюдать

      Direct static code injection vulnerability in the modify_config action in admin.php for PHP-Stats 0.1.9.1 and earlier allows remote authenti

      СредняяCVSS 6,5Эксплойта нетEPSS 2 %

      php-stats · php-stats8 мар. 2006 г.

    • CVE-2006-1088
      21Наблюдать

      PHP-Stats 0.1.9.1 and earlier allows remote attackers to obtain potentially sensitive information via a direct request to checktables.php, w

      СредняяCVSS 5,0Эксплойта нетEPSS 2 %

      php-stats · php-stats8 мар. 2006 г.

    • CVE-2007-4334
      18Наблюдать

      Cross-site scripting (XSS) vulnerability in whois.php in Php-stats 0.1.9.2 allows remote attackers to inject arbitrary web script or HTML vi

      СредняяCVSS 4,3Proof of conceptEPSS 2 %

      php-stats · php-stats14 авг. 2007 г.

    • CVE-2007-4917
      17Наблюдать

      Cross-site scripting (XSS) vulnerability in tracking.php in PHP-Stats 0.1.9.2 allows remote attackers to inject arbitrary web script or HTML

      СредняяCVSS 4,3Proof of conceptEPSS 1 %

      php-stats · php-stats17 сент. 2007 г.

    • CVE-2008-6212
      17Наблюдать

      Cross-site scripting (XSS) vulnerability in admin.php in Php-Stats 0.1.9.1 allows remote attackers to inject arbitrary web script or HTML vi

      СредняяCVSS 4,3Proof of conceptEPSS 1 %

      php-stats · php-stats19 февр. 2009 г.