Перейти к содержимому
Noroxi

Записи simplog

14 опубликованных записей вендора simplog.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
6
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

    Столбик: всего · тёмная часть: CISA KEV.

    Повторяющиеся классы

    Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

    CWE

    Все записи

    14 записей
    • CVE-2006-1776
      34Наблюдать

      PHP remote file inclusion vulnerability in doc/index.php in Jeremy Ashcraft Simplog 0.9.2 and earlier allows remote attackers to execute arb

      ВысокаяCVSS 7,5Proof of conceptEPSS 13 %

      simplog · simplog13 апр. 2006 г.

    • CVE-2006-1777
      33Наблюдать

      Directory traversal vulnerability in doc/index.php in Jeremy Ashcraft Simplog 0.9.2 and earlier allows remote attackers to include and execu

      ВысокаяCVSS 7,5Proof of conceptEPSS 10 %

      simplog · simplog13 апр. 2006 г.

    • CVE-2006-1778
      31Наблюдать

      Multiple SQL injection vulnerabilities in Jeremy Ashcraft Simplog 0.9.2 and earlier allow remote attackers to execute arbitrary SQL commands

      ВысокаяCVSS 7,5Proof of conceptEPSS 4 %

      simplog · simplog13 апр. 2006 г.

    • CVE-2005-3076
      30Наблюдать

      Simplog 0.9.1 might allow remote attackers to execute arbitrary SQL commands or trigger SQL error messages via invalid (1) pid, (2) blogid,

      ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

      simplog · simplog27 сент. 2005 г.

    • CVE-2006-5398
      30Наблюдать

      SQL injection vulnerability in comments.php in Simplog 0.9.3.1 allows remote attackers to execute arbitrary SQL commands via the cid paramet

      ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

      simplog · simplog18 окт. 2006 г.

    • CVE-2006-1779
      29Наблюдать

      Cross-site scripting (XSS) vulnerability in login.php in Jeremy Ashcraft Simplog 0.9.2 and earlier allows remote attackers to inject arbitra

      СредняяCVSS 6,8Proof of conceptEPSS 6 %

      simplog · simplog13 апр. 2006 г.

    • CVE-2009-4092
      29Наблюдать

      Cross-site request forgery (CSRF) vulnerability in user.php in Simplog 0.9.3.2, and possibly earlier, allows remote attackers to hijack the

      СредняяCVSS 6,8Proof of conceptEPSS 5 %

      simplog · simplog29 нояб. 2009 г.

    • CVE-2006-4058
      27Наблюдать

      Cross-site scripting (XSS) vulnerability in archive.php in Simplog 0.9.3 and earlier allows remote attackers to inject arbitrary web script

      СредняяCVSS 6,8Эксплойта нетEPSS 1 %

      simplog · simplog9 авг. 2006 г.

    • CVE-2006-1073
      26Наблюдать

      Directory traversal vulnerability in index.php in Daverave Simplog 1.0.2 and earlier allows remote attackers to include or read arbitrary .t

      СредняяCVSS 6,4Proof of conceptEPSS 3 %

      simplog · simplog7 мар. 2006 г.

    • CVE-2006-2029
      26Наблюдать

      Multiple SQL injection vulnerabilities in Jeremy Ashcraft Simplog 0.9.3 and earlier allow remote attackers to execute arbitrary SQL commands

      СредняяCVSS 6,4Proof of conceptEPSS 2 %

      simplog · simplog25 апр. 2006 г.

    • CVE-2006-2028
      24Наблюдать

      Cross-site scripting (XSS) vulnerability in imagelist.php in Jeremy Ashcraft Simplog 0.9.3 and earlier allows remote attackers to inject arb

      СредняяCVSS 5,8Proof of conceptEPSS 3 %

      simplog · simplog25 апр. 2006 г.

    • CVE-2009-4091
      22Наблюдать

      comments.php in Simplog 0.9.3.2, and possibly earlier, does not properly restrict access, which allows remote attackers to edit or delete co

      СредняяCVSS 5,0Proof of conceptEPSS 6 %

      simplog · simplog29 нояб. 2009 г.

    • CVE-2009-4093
      18Наблюдать

      Multiple cross-site scripting (XSS) vulnerabilities in comments.php in Simplog 0.9.3.2, and possibly earlier, allow remote attackers to inje

      СредняяCVSS 4,3Proof of conceptEPSS 4 %

      simplog · simplog29 нояб. 2009 г.

    • CVE-2006-1072
      17Наблюдать

      Cross-site scripting (XSS) vulnerability in Daverave Simplog 1.0.2 and earlier allows remote attackers to inject arbitrary web script or HTM

      СредняяCVSS 4,3Эксплойта нетEPSS 1 %

      simplog · simplog7 мар. 2006 г.