Записи phpslash
4 опубликованных записей вендора phpslash.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
4 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
55В плане | CVE-2009-0517Proof of concept | Eval injection vulnerability in index.php in phpSlash 0.8.1.1 and earlier allows remote attackers to execute arbitrary PHP code via the fielphpslash · phpslash · CWE-94 | Критическая10,0 | — | 48,9 % | 10 февр. 2009 г. |
41В плане | CVE-2005-2257Эксплойта нет | The saveProfile function in PhpSlash 0.8.0 allows remote attackers to modify arbitrary profiles and gain privileges by modifying the author_phpslash · phpslash | Критическая10,0 | — | 2,8 % | 13 июл. 2005 г. |
30Наблюдать | CVE-2005-4479Proof of concept | SQL injection vulnerability in article.php in phpSlash 0.8.1 and earlier allows remote attackers to execute arbitrary SQL commands via the sphpslash · phpslash | Высокая7,5 | — | 1,2 % | 22 дек. 2005 г. |
21Наблюдать | CVE-2001-1334Proof of concept | Block_render_url.class in PHPSlash 0.6.1 allows remote attackers with PHPSlash administrator privileges to read arbitrary files by creating phpslash · phpslash | Средняя5,0 | — | 3,1 % | 19 мая 2002 г. |
- CVE-2009-051755В плане
Eval injection vulnerability in index.php in phpSlash 0.8.1.1 and earlier allows remote attackers to execute arbitrary PHP code via the fiel
КритическаяCVSS 10,0Proof of conceptEPSS 49 %phpslash · phpslash10 февр. 2009 г.
- CVE-2005-225741В плане
The saveProfile function in PhpSlash 0.8.0 allows remote attackers to modify arbitrary profiles and gain privileges by modifying the author_
КритическаяCVSS 10,0Эксплойта нетEPSS 3 %phpslash · phpslash13 июл. 2005 г.
- CVE-2005-447930Наблюдать
SQL injection vulnerability in article.php in phpSlash 0.8.1 and earlier allows remote attackers to execute arbitrary SQL commands via the s
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %phpslash · phpslash22 дек. 2005 г.
- CVE-2001-133421Наблюдать
Block_render_url.class in PHPSlash 0.6.1 allows remote attackers with PHPSlash administrator privileges to read arbitrary files by creating
СредняяCVSS 5,0Proof of conceptEPSS 3 %phpslash · phpslash19 мая 2002 г.