Перейти к содержимому
Noroxi

Записи phpoutsourcing

23 опубликованных записей вендора phpoutsourcing.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
7
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

    Столбик: всего · тёмная часть: CISA KEV.

    Повторяющиеся классы

    Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

    CWE

    Все записи

    23 записей
    • CVE-2006-0881
      32Наблюдать

      Multiple PHP remote file include vulnerabilities in gorum/gorumlib.php in Noah's Classifieds 1.3, when register_globals is enabled, allow re

      ВысокаяCVSS 7,5Proof of conceptEPSS 8 %

      phpoutsourcing · noahs classifieds24 февр. 2006 г.

    • CVE-2005-2651
      32Наблюдать

      gorum/prod.php in Zorum 3.5 allows remote attackers to execute arbitrary code via shell metacharacters in the argv parameter.

      ВысокаяCVSS 7,5Proof of conceptEPSS 5 %

      phpoutsourcing · zorum23 авг. 2005 г.

    • CVE-2008-5199
      31Наблюдать

      PHP remote file inclusion vulnerability in include.php in PHPOutsourcing IdeaBox (aka IdeBox) 1.1 allows remote attackers to execute arbitra

      ВысокаяCVSS 7,5Proof of conceptEPSS 3 %

      phpoutsourcing · ideabox21 нояб. 2008 г.

    • CVE-2006-5431
      31Наблюдать

      PHP remote file inclusion vulnerability in gorum/dbproperty.php in PHPOutsourcing Zorum 3.5 and earlier allows remote attackers to execute a

      ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

      phpoutsourcing · zorum20 окт. 2006 г.

    • CVE-2005-0676
      30Наблюдать

      index.php in Zorum 3.5 allows remote attackers to trigger an SQL error, and possibly inject arbitrary SQL commands, via the search capabilit

      ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

      phpoutsourcing · zorum4 мая 2005 г.

    • CVE-2006-0879
      30Наблюдать

      SQL injection vulnerability in the search tool in Noah's Classifieds 1.3 allows remote attackers to execute arbitrary SQL commands via unspe

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      phpoutsourcing · noahs classifieds24 февр. 2006 г.

    • CVE-2006-3332
      30Наблюдать

      SQL injection vulnerability in index.php in Zorum Forum 3.5 allows remote attackers to execute arbitrary SQL commands via the (1) offset, (2

      ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

      phpoutsourcing · zorum30 июн. 2006 г.

    • CVE-2005-2979
      30Наблюдать

      SQL injection vulnerability in index.php in phpoutsourcing Noah's classifieds allows remote attackers to execute arbitrary SQL commands via

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      phpoutsourcing · noahs classifieds19 сент. 2005 г.

    • CVE-2005-4619
      30Наблюдать

      SQL injection vulnerability in index.php in phpoutsourcing Zorum Forum 3.5 and earlier allows remote attackers to execute arbitrary SQL comm

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      phpoutsourcing · zorum31 дек. 2005 г.

    • CVE-2006-1331
      27Наблюдать

      Multiple cross-site scripting (XSS) vulnerabilities in index.php in Noah's Classifieds 1.3 and earlier allow remote attackers to inject arbi

      СредняяCVSS 6,8Эксплойта нетEPSS 1 %

      phpoutsourcing · noahs classifieds20 мар. 2006 г.

    • CVE-2006-5293
      27Наблюдать

      Cross-site scripting (XSS) vulnerability in index.php in PhpOutsourcing Noah's Classifieds 1.3 and earlier allows remote attackers to inject

      СредняяCVSS 6,8Эксплойта нетEPSS 1 %

      phpoutsourcing · noahs classifieds16 окт. 2006 г.

    • CVE-2006-1332
      25Наблюдать

      Noah's Classifieds 1.3 and earlier allows remote attackers to obtain sensitive information via an invalid list parameter in the showdetails

      СредняяCVSS 6,4Эксплойта нетEPSS 2 %

      phpoutsourcing · noahs classifieds20 мар. 2006 г.

    • CVE-2003-1089
      21Наблюдать

      index.php for Zorum 3.4 allows remote attackers to determine the full path of the web root via invalid parameter names, which reveals the pa

      СредняяCVSS 5,0Proof of conceptEPSS 3 %

      phpoutsourcing · zorum31 дек. 2003 г.

    • CVE-2006-0882
      21Наблюдать

      Directory traversal vulnerability in include.php in Noah's Classifieds 1.3 allows remote attackers to include arbitrary local files via the

      СредняяCVSS 5,0Proof of conceptEPSS 3 %

      phpoutsourcing · noahs classifieds24 февр. 2006 г.

    • CVE-2005-2652
      20Наблюдать

      Zorum 3.5 allows remote attackers to obtain the full installation path via direct requests to (1) gorum/notification.php, (2) user.php, (3)

      СредняяCVSS 5,0Эксплойта нетEPSS 2 %

      phpoutsourcing · zorum23 авг. 2005 г.

    • CVE-2006-0878
      20Наблюдать

      Noah's Classifieds 1.3 allows remote attackers to obtain the installation path via a direct request to include files, as demonstrated by cla

      СредняяCVSS 5,0Эксплойта нетEPSS 2 %

      phpoutsourcing · noahs classifieds24 февр. 2006 г.

    • CVE-2005-0677
      20Наблюдать

      index.php for Zorum 3.5 allows remote attackers to perform certain actions as other users by modifying the id parameter.

      СредняяCVSS 5,0Эксплойта нетEPSS 1 %

      phpoutsourcing · zorum2 мая 2005 г.

    • CVE-2006-0880
      18Наблюдать

      Multiple cross-site scripting (XSS) vulnerabilities in index.php in Noah's Classifieds 1.3 allow remote attackers to inject arbitrary web sc

      СредняяCVSS 4,3Proof of conceptEPSS 2 %

      phpoutsourcing · noahs classifieds24 февр. 2006 г.

    • CVE-2005-2980
      18Наблюдать

      Cross-site scripting (XSS) vulnerability in index.php in phpoutsourcing Noah's classifieds 1.3 allows remote attackers to inject arbitrary w

      СредняяCVSS 4,3Proof of conceptEPSS 2 %

      phpoutsourcing · noahs classifieds19 сент. 2005 г.

    • CVE-2003-1088
      18Наблюдать

      Cross-site scripting (XSS) vulnerability in index.php for Zorum 3.4 and 3.5 allows remote attackers to inject arbitrary web script or HTML v

      СредняяCVSS 4,3Proof of conceptEPSS 2 %

      phpoutsourcing · zorum11 авг. 2003 г.

    • CVE-2005-0675
      17Наблюдать

      Cross-site scripting (XSS) vulnerability in index.php for Zorum 3.5 allows remote attackers to inject arbitrary web script or HTML via the (

      СредняяCVSS 4,3Эксплойта нетEPSS 1 %

      phpoutsourcing · zorum2 мая 2005 г.

    • CVE-2002-2350
      17Наблюдать

      Cross-site scripting (XSS) vulnerability in z_user_show.php in dbtreelistproperty_method.php in Zorum 2.4 allows remote attackers to inject

      СредняяCVSS 4,3Эксплойта нетEPSS 1 %

      phpoutsourcing · zorum31 дек. 2002 г.

    • CVE-2006-3333
      10Наблюдать

      Cross-site scripting (XSS) vulnerability in index.php in Zorum Forum 3.5 allows remote attackers to inject web script or HTML via the multip

      НизкаяCVSS 2,6Эксплойта нетEPSS 1 %

      phpoutsourcing · zorum30 июн. 2006 г.