Перейти к содержимому
Noroxi

Записи sixapart

50 опубликованных записей вендора sixapart.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
2 · 4 %
Pre-auth RCE
9
С записью об исправлении
22 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

50 записей
  • CVE-2021-20837
    65На этой неделе

    Movable Type 7 r.5002 and earlier (Movable Type 7 Series), Movable Type 6.8.2 and earlier (Movable Type 6 Series), Movable Type Advanced 7 r

    КритическаяCVSS 9,8Proof of conceptEPSS 88 %

    sixapart · movable type26 окт. 2021 г.

  • CVE-2015-1592
    53В плане

    Movable Type Pro, Open Source, and Advanced before 5.2.12 and Pro and Advanced 6.0.x before 6.0.7 does not properly use the Perl Storable::t

    ВысокаяCVSS 7,5Готовый эксплойтEPSS 75 %

    debian · debian linux19 февр. 2015 г.

  • CVE-2013-0209
    44В плане

    lib/MT/Upgrade.pm in mt-upgrade.cgi in Movable Type 4.2x and 4.3x through 4.38 does not require authentication for requests to database-migr

    ВысокаяCVSS 7,5Готовый эксплойтEPSS 45 %

    sixapart · movable type22 янв. 2013 г.

  • CVE-2022-38078
    40В плане

    Movable Type XMLRPC API provided by Six Apart Ltd.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    sixapart · movable type24 авг. 2022 г.

  • CVE-2010-4511
    40В плане

    Unspecified vulnerability in Movable Type 4.x before 4.35 and 5.x before 5.04 has unknown impact and attack vectors related to the "dynamic

    КритическаяCVSS 10,0Эксплойта нетEPSS 2 %

    sixapart · movabletype9 дек. 2010 г.

  • CVE-2010-4509
    40В плане

    Multiple unspecified vulnerabilities in Movable Type 4.x before 4.35 and 5.x before 5.04 have unknown impact and attack vectors related to t

    КритическаяCVSS 10,0Эксплойта нетEPSS 2 %

    sixapart · movabletype9 дек. 2010 г.

  • CVE-2009-0752
    40В плане

    Unspecified vulnerability in Movable Type Pro and Community Solution 4.x before 4.24 has unknown impact and attack vectors, possibly related

    КритическаяCVSS 10,0Эксплойта нетEPSS 1 %

    sixapart · movable type2 мар. 2009 г.

  • CVE-2016-5742
    39Наблюдать

    SQL injection vulnerability in the XML-RPC interface in Movable Type Pro and Advanced 6.x before 6.1.3 and 6.2.x before 6.2.6 and Movable Ty

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    sixapart · movable type23 янв. 2017 г.

  • CVE-2026-25776
    37Наблюдать

    Movable Type provided by Six Apart Ltd.

    КритическаяCVSS 9,3Эксплойта нетEPSS 1 %

    sixapart · movable type8 апр. 2026 г.

  • CVE-2020-5577
    36Наблюдать

    Movable Type series (Movable Type 7 r.4606 (7.2.1) and earlier (Movable Type 7), Movable Type Advanced 7 r.4606 (7.2.1) and earlier (Movable

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    sixapart · movable type13 мая 2020 г.

  • CVE-2020-5576
    35Наблюдать

    Cross-site request forgery (CSRF) vulnerability in Movable Type series (Movable Type 7 r.4606 (7.2.1) and earlier (Movable Type 7), Movable

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    sixapart · movable type13 мая 2020 г.

  • CVE-2015-0845
    31Наблюдать

    Format string vulnerability in Movable Type Pro, Open Source, and Advanced before 5.2.13 and Pro and Advanced 6.0.x before 6.0.8 allows remo

    ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %

    sixapart · movabletype17 апр. 2015 г.

  • CVE-2013-2184
    31Наблюдать

    Movable Type before 5.2.6 does not properly use the Storable::thaw function, which allows remote attackers to execute arbitrary code via the

    ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %

    sixapart · movable type27 мар. 2015 г.

  • CVE-2012-0320
    31Наблюдать

    Movable Type before 4.38, 5.0x before 5.07, and 5.1x before 5.13 allows remote attackers to take control of sessions via unspecified vectors

    ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %

    sixapart · movable type3 мар. 2012 г.

  • CVE-2011-5085
    31Наблюдать

    Unspecified vulnerability in Movable Type 4.x before 4.36 and 5.x before 5.05 allows remote attackers to read or modify data via unknown vec

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    sixapart · movable type2 апр. 2012 г.

  • CVE-2014-9057
    31Наблюдать

    SQL injection vulnerability in the XML-RPC interface in Movable Type before 5.18, 5.2.x before 5.2.11, and 6.x before 6.0.6 allows remote at

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    debian · debian linux16 дек. 2014 г.

  • CVE-2010-3922
    30Наблюдать

    SQL injection vulnerability in Movable Type 4.x before 4.35 and 5.x before 5.04 allows remote attackers to execute arbitrary SQL commands vi

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    sixapart · movabletype9 дек. 2010 г.

  • CVE-2022-43660
    28Наблюдать

    Improper neutralization of Server-Side Includes (SSW) within a web page in Movable Type series allows a remote authenticated attacker with P

    ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %

    sixapart · movable type7 дек. 2022 г.

  • CVE-2012-0317
    27Наблюдать

    Multiple cross-site request forgery (CSRF) vulnerabilities in Movable Type before 4.38, 5.0x before 5.07, and 5.1x before 5.13 allow remote

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    sixapart · movable type3 мар. 2012 г.

  • CVE-2026-33088
    27Наблюдать

    Movable Type provided by Six Apart Ltd.

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    sixapart · movable type8 апр. 2026 г.

  • CVE-2022-45113
    26Наблюдать

    Improper validation of syntactic correctness of input vulnerability exist in Movable Type series.

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    sixapart · movable type7 дек. 2022 г.

  • CVE-2020-5575
    24Наблюдать

    Cross-site scripting vulnerability in Movable Type series (Movable Type 7 r.4606 (7.2.1) and earlier (Movable Type 7), Movable Type Advanced

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    sixapart · movable type13 мая 2020 г.

  • CVE-2021-20810
    24Наблюдать

    Cross-site scripting vulnerability in Website Management screen of Movable Type (Movable Type 7 r.4903 and earlier (Movable Type 7 Series),

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    sixapart · movable type25 авг. 2021 г.

  • CVE-2021-20814
    24Наблюдать

    Cross-site scripting vulnerability in Setting screen of ContentType Information Widget Plugin of Movable Type (Movable Type 7 r.4903 and ear

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    sixapart · movable type25 авг. 2021 г.

  • CVE-2021-20812
    24Наблюдать

    Cross-site scripting vulnerability in Setting screen of Server Sync of Movable Type (Movable Type Advanced 7 r.4903 and earlier (Movable Typ

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    sixapart · movable type25 авг. 2021 г.