Перейти к содержимому
Noroxi

Записи pwsphp

8 опубликованных записей вендора pwsphp.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
5
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

    Столбик: всего · тёмная часть: CISA KEV.

    Повторяющиеся классы

      Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

      CWE

      Все записи

      8 записей
      • CVE-2005-1511
        31Наблюдать

        PwsPHP 1.2.2 allows remote attackers to bypass authentication and post arbitrary comments via the Pseudo cookie.

        ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

        pwsphp · pwsphp11 мая 2005 г.

      • CVE-2005-1512
        30Наблюдать

        The Admin panel in PwsPHP 1.2.2 does not properly verify uploaded picture files, which allows remote attackers to upload and possibly execut

        ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

        pwsphp · pwsphp11 мая 2005 г.

      • CVE-2005-1510
        30Наблюдать

        PwsPHP 1.2.2 allows remote attackers to obtain sensitive information via a direct request to the admin directory, which reveals the path in

        ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

        pwsphp · pwsphp11 мая 2005 г.

      • CVE-2006-0943
        30Наблюдать

        SQL injection vulnerability in the sondages module in index.php in PwsPHP 1.2.3 allows remote attackers to execute arbitrary SQL commands vi

        ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

        pwsphp · pwsphp28 февр. 2006 г.

      • CVE-2005-1509
        30Наблюдать

        SQL injection vulnerability in profil.php in PwsPHP 1.2.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.

        ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

        pwsphp · pwsphp11 мая 2005 г.

      • CVE-2006-0668
        30Наблюдать

        SQL injection vulnerability in index.php in PwsPHP 1.2.3 allows remote attackers to execute arbitrary SQL commands via the id parameter, pos

        ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

        pwsphp · pwsphp13 февр. 2006 г.

      • CVE-2006-0942
        30Наблюдать

        SQL injection vulnerability in profil.php in PwsPHP 1.2.3, and possibly earlier versions, allows remote attackers to execute arbitrary SQL c

        ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

        pwsphp · pwsphp28 февр. 2006 г.

      • CVE-2005-1508
        28Наблюдать

        Multiple cross-site scripting (XSS) vulnerabilities in PwsPHP 1.2.2 allow remote attackers to inject arbitrary web script or HTML via the (1

        СредняяCVSS 6,8Эксплойта нетEPSS 2 %

        pwsphp · pwsphp11 мая 2005 г.