Записи salims softhouse
9 опубликованных записей вендора salims softhouse.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
9 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
32Наблюдать | CVE-2006-7128Proof of concept | PHP remote file inclusion vulnerability in forum/forum.php JAF CMS 4.0 RC1 allows remote attackers to execute arbitrary PHP code via a URL isalims softhouse · jaf cms | Высокая7,5 | — | 7,4 % | 5 мар. 2007 г. |
31Наблюдать | CVE-2006-5131Эксплойта нет | module/shout/jafshout.php (aka the shoutbox) in ph03y3nk just another flat file (JAF) CMS 4.0 RC1 allows remote attackers to execute arbitrasalims softhouse · jaf cms | Высокая7,5 | — | 2,6 % | 3 окт. 2006 г. |
31Наблюдать | CVE-2004-1505Эксплойта нет | Directory traversal vulnerability in index.php in Just Another Flat file (JAF) CMS 3.0RC allows remote attackers to read arbitrary files andsalims softhouse · jaf cms | Высокая7,5 | — | 2,0 % | 31 дек. 2004 г. |
29Наблюдать | CVE-2006-7127Proof of concept | Multiple PHP remote file inclusion vulnerabilities in JAF CMS 4.0 and 4.0 RC2 allow remote attackers to execute arbitrary PHP code via a URLsalims softhouse · jaf cms · CWE-94 | Средняя6,8 | — | 5,6 % | 5 мар. 2007 г. |
27Наблюдать | CVE-2006-5129Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in ph03y3nk just another flat file (JAF) CMS 4.0 RC1 allow remote attackers to inject arsalims softhouse · jaf cms | Средняя6,8 | — | 1,3 % | 3 окт. 2006 г. |
27Наблюдать | CVE-2006-5130Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in ph03y3nk just another flat file (JAF) CMS 4.0 RC1 allow remote attackers to inject arsalims softhouse · jaf cms | Средняя6,8 | — | 1,1 % | 3 окт. 2006 г. |
21Наблюдать | CVE-2005-2053Эксплойта нет | Just another flat file (JAF) CMS before 3.0 Final allows remote attackers to obtain sensitive information via (1) an * (asterisk) in the id salims softhouse · jaf cms | Средняя5,0 | — | 1,7 % | 28 июн. 2005 г. |
20Наблюдать | CVE-2004-1504Эксплойта нет | The displaycontent function in config.php for Just Another Flat file (JAF) CMS 3.0RC allows remote attackers to gain sensitive information vsalims softhouse · jaf cms | Средняя5,0 | — | 1,6 % | 31 дек. 2004 г. |
17Наблюдать | CVE-2007-6142Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in ph03y3nk just another flat file (JAF) CMS 4.0 RC2 allow remote attackers to inject arsalims softhouse · jaf cms · CWE-79 | Средняя4,3 | — | 1,0 % | 27 нояб. 2007 г. |
- CVE-2006-712832Наблюдать
PHP remote file inclusion vulnerability in forum/forum.php JAF CMS 4.0 RC1 allows remote attackers to execute arbitrary PHP code via a URL i
ВысокаяCVSS 7,5Proof of conceptEPSS 7 %salims softhouse · jaf cms5 мар. 2007 г.
- CVE-2006-513131Наблюдать
module/shout/jafshout.php (aka the shoutbox) in ph03y3nk just another flat file (JAF) CMS 4.0 RC1 allows remote attackers to execute arbitra
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %salims softhouse · jaf cms3 окт. 2006 г.
- CVE-2004-150531Наблюдать
Directory traversal vulnerability in index.php in Just Another Flat file (JAF) CMS 3.0RC allows remote attackers to read arbitrary files and
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %salims softhouse · jaf cms31 дек. 2004 г.
- CVE-2006-712729Наблюдать
Multiple PHP remote file inclusion vulnerabilities in JAF CMS 4.0 and 4.0 RC2 allow remote attackers to execute arbitrary PHP code via a URL
СредняяCVSS 6,8Proof of conceptEPSS 6 %salims softhouse · jaf cms5 мар. 2007 г.
- CVE-2006-512927Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in ph03y3nk just another flat file (JAF) CMS 4.0 RC1 allow remote attackers to inject ar
СредняяCVSS 6,8Эксплойта нетEPSS 1 %salims softhouse · jaf cms3 окт. 2006 г.
- CVE-2006-513027Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in ph03y3nk just another flat file (JAF) CMS 4.0 RC1 allow remote attackers to inject ar
СредняяCVSS 6,8Эксплойта нетEPSS 1 %salims softhouse · jaf cms3 окт. 2006 г.
- CVE-2005-205321Наблюдать
Just another flat file (JAF) CMS before 3.0 Final allows remote attackers to obtain sensitive information via (1) an * (asterisk) in the id
СредняяCVSS 5,0Эксплойта нетEPSS 2 %salims softhouse · jaf cms28 июн. 2005 г.
- CVE-2004-150420Наблюдать
The displaycontent function in config.php for Just Another Flat file (JAF) CMS 3.0RC allows remote attackers to gain sensitive information v
СредняяCVSS 5,0Эксплойта нетEPSS 2 %salims softhouse · jaf cms31 дек. 2004 г.
- CVE-2007-614217Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in ph03y3nk just another flat file (JAF) CMS 4.0 RC2 allow remote attackers to inject ar
СредняяCVSS 4,3Эксплойта нетEPSS 1 %salims softhouse · jaf cms27 нояб. 2007 г.