Записи quicksilver forums
6 опубликованных записей вендора quicksilver forums.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 4
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
32Наблюдать | CVE-2006-4824Proof of concept | PHP remote file inclusion vulnerability in lib/activeutil.php in Quicksilver Forums (QSF) 1.2.1 and earlier allows remote attackers to execuquicksilver forums · quicksilver forums | Высокая7,5 | — | 7,8 % | 15 сент. 2006 г. |
31Наблюдать | CVE-2008-7064Proof of concept | Directory traversal vulnerability in the get_lang function in global.php in Quicksilver Forums 1.4.2 and earlier, as used in QSF Portal befoquicksilver forums · quicksilver forums · CWE-22 | Высокая7,5 | — | 3,2 % | 25 авг. 2009 г. |
30Наблюдать | CVE-2008-3601Proof of concept | SQL injection vulnerability in index.php in Quicksilver Forums 1.4.1 allows remote attackers to execute arbitrary SQL commands via the forumquicksilver forums · quicksilver forums · CWE-89 | Высокая7,5 | — | 1,0 % | 12 авг. 2008 г. |
20Наблюдать | CVE-2007-5172Эксплойта нет | Quicksilver Forums before 1.4.1 allows remote attackers to obtain sensitive information by causing unspecified connection errors, which revequicksilver forums · quicksilver forums · CWE-200 | Средняя5,0 | — | 1,2 % | 1 окт. 2007 г. |
20Наблюдать | CVE-2007-5171Эксплойта нет | Unspecified vulnerability in Quicksilver Forums before 1.4.1 allows remote attackers to delete arbitrary PMs via unspecified vectors.quicksilver forums · quicksilver forums · CWE-264 | Средняя5,0 | — | 1,2 % | 1 окт. 2007 г. |
20Наблюдать | CVE-2005-4030Эксплойта нет | SQL injection vulnerability in Quicksilver Forums before 1.5.1 allows remote attackers to execute arbitrary SQL commands via the HTTP_USER_Aquicksilver forums · quicksilver forums | Средняя5,1 | — | 1,1 % | 6 дек. 2005 г. |
- CVE-2006-482432Наблюдать
PHP remote file inclusion vulnerability in lib/activeutil.php in Quicksilver Forums (QSF) 1.2.1 and earlier allows remote attackers to execu
ВысокаяCVSS 7,5Proof of conceptEPSS 8 %quicksilver forums · quicksilver forums15 сент. 2006 г.
- CVE-2008-706431Наблюдать
Directory traversal vulnerability in the get_lang function in global.php in Quicksilver Forums 1.4.2 and earlier, as used in QSF Portal befo
ВысокаяCVSS 7,5Proof of conceptEPSS 3 %quicksilver forums · quicksilver forums25 авг. 2009 г.
- CVE-2008-360130Наблюдать
SQL injection vulnerability in index.php in Quicksilver Forums 1.4.1 allows remote attackers to execute arbitrary SQL commands via the forum
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %quicksilver forums · quicksilver forums12 авг. 2008 г.
- CVE-2007-517220Наблюдать
Quicksilver Forums before 1.4.1 allows remote attackers to obtain sensitive information by causing unspecified connection errors, which reve
СредняяCVSS 5,0Эксплойта нетEPSS 1 %quicksilver forums · quicksilver forums1 окт. 2007 г.
- CVE-2007-517120Наблюдать
Unspecified vulnerability in Quicksilver Forums before 1.4.1 allows remote attackers to delete arbitrary PMs via unspecified vectors.
СредняяCVSS 5,0Эксплойта нетEPSS 1 %quicksilver forums · quicksilver forums1 окт. 2007 г.
- CVE-2005-403020Наблюдать
SQL injection vulnerability in Quicksilver Forums before 1.5.1 allows remote attackers to execute arbitrary SQL commands via the HTTP_USER_A
СредняяCVSS 5,1Эксплойта нетEPSS 1 %quicksilver forums · quicksilver forums6 дек. 2005 г.