Записи pilotgroup
6 опубликованных записей вендора pilotgroup.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')3
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2017-15969Proof of concept | PG All Share Video 1.0 allows SQL Injection via the PATH_INFO to search/tag, friends/index, users/profile, or video_catalog/category.pilotgroup · allsharevideo · CWE-89 | Критическая9,8 | — | 2,1 % | 29 окт. 2017 г. |
30Наблюдать | CVE-2010-2354Proof of concept | SQL injection vulnerability in subscribe.php in Pilot Group (PG) eLMS Pro allows remote attackers to execute arbitrary SQL commands via the pilotgroup · elms pro · CWE-89 | Высокая7,5 | — | 1,2 % | 21 июн. 2010 г. |
30Наблюдать | CVE-2008-6117Proof of concept | SQL injection vulnerability in homepage.php in PG Job Site Pro allows remote attackers to execute arbitrary SQL commands via the poll_view_ipilotgroup · pg job site pro · CWE-89 | Высокая7,5 | — | 1,0 % | 11 февр. 2009 г. |
17Наблюдать | CVE-2009-3513Proof of concept | Multiple cross-site scripting (XSS) vulnerabilities in Pilot Group (PG) eTraining allow remote attackers to inject arbitrary web script or Hpilotgroup · pg etraining · CWE-79 | Средняя4,3 | — | 1,5 % | 1 окт. 2009 г. |
17Наблюдать | CVE-2010-2355Proof of concept | Cross-site scripting (XSS) vulnerability in error.php in Pilot Group (PG) eLMS Pro allows remote attackers to inject arbitrary web script orpilotgroup · elms pro · CWE-79 | Средняя4,3 | — | 1,5 % | 21 июн. 2010 г. |
17Наблюдать | CVE-2010-2356Proof of concept | Cross-site scripting (XSS) vulnerability in subscribe.php in Pilot Group (PG) eLMS Pro allows remote attackers to inject arbitrary web scrippilotgroup · elms pro · CWE-79 | Средняя4,3 | — | 1,4 % | 21 июн. 2010 г. |
- CVE-2017-1596940В плане
PG All Share Video 1.0 allows SQL Injection via the PATH_INFO to search/tag, friends/index, users/profile, or video_catalog/category.
КритическаяCVSS 9,8Proof of conceptEPSS 2 %pilotgroup · allsharevideo29 окт. 2017 г.
- CVE-2010-235430Наблюдать
SQL injection vulnerability in subscribe.php in Pilot Group (PG) eLMS Pro allows remote attackers to execute arbitrary SQL commands via the
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %pilotgroup · elms pro21 июн. 2010 г.
- CVE-2008-611730Наблюдать
SQL injection vulnerability in homepage.php in PG Job Site Pro allows remote attackers to execute arbitrary SQL commands via the poll_view_i
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %pilotgroup · pg job site pro11 февр. 2009 г.
- CVE-2009-351317Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in Pilot Group (PG) eTraining allow remote attackers to inject arbitrary web script or H
СредняяCVSS 4,3Proof of conceptEPSS 2 %pilotgroup · pg etraining1 окт. 2009 г.
- CVE-2010-235517Наблюдать
Cross-site scripting (XSS) vulnerability in error.php in Pilot Group (PG) eLMS Pro allows remote attackers to inject arbitrary web script or
СредняяCVSS 4,3Proof of conceptEPSS 1 %pilotgroup · elms pro21 июн. 2010 г.
- CVE-2010-235617Наблюдать
Cross-site scripting (XSS) vulnerability in subscribe.php in Pilot Group (PG) eLMS Pro allows remote attackers to inject arbitrary web scrip
СредняяCVSS 4,3Proof of conceptEPSS 1 %pilotgroup · elms pro21 июн. 2010 г.