Записи smartstore
7 опубликованных записей вендора smartstore.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-287 Improper Authentication1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-601 URL Redirection to Untrusted Site ('Open Redirect')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
49В плане | CVE-2021-32608Эксплойта нет | An issue was discovered in Smartstore (aka SmartStoreNET) through 4.1.1.smartstore · smartstore | Критическая9,8 | — | 33,4 % | 12 мая 2021 г. |
49В плане | CVE-2021-32607Эксплойта нет | An issue was discovered in Smartstore (aka SmartStoreNET) through 4.1.1.smartstore · smartstore | Критическая9,8 | — | 33,4 % | 12 мая 2021 г. |
39Наблюдать | CVE-2020-15243Эксплойта нет | WebApi Authentication attribute missing in Smartstoresmartstore · smartstore · CWE-287 | Критическая9,8 | — | 1,2 % | 8 окт. 2020 г. |
37Наблюдать | CVE-2020-36364Эксплойта нет | An issue was discovered in Smartstore (aka SmartStoreNET) before 4.1.0.smartstore · smartstorenet · CWE-22 | Критическая9,1 | — | 1,8 % | 19 мая 2021 г. |
36Наблюдать | CVE-2020-27996Эксплойта нет | An issue was discovered in SmartStoreNET before 4.0.1.smartstore · smartstorenet | Высокая8,8 | — | 2,2 % | 29 окт. 2020 г. |
35Наблюдать | CVE-2020-27997Эксплойта нет | An issue was discovered in SmartStoreNET before 4.1.0.smartstore · smartstorenet · CWE-352 | Высокая8,8 | — | 0,8 % | 19 февр. 2021 г. |
25Наблюдать | CVE-2020-36365Proof of concept | Smartstore (aka SmartStoreNET) before 4.1.0 allows CommonController.ClearCache, ClearDatabaseCache, RestartApplication, and ScheduleTaskContsmartstore · smartstorenet · CWE-601 | Средняя6,1 | — | 3,0 % | 19 мая 2021 г. |
- CVE-2021-3260849В плане
An issue was discovered in Smartstore (aka SmartStoreNET) through 4.1.1.
КритическаяCVSS 9,8Эксплойта нетEPSS 33 %smartstore · smartstore12 мая 2021 г.
- CVE-2021-3260749В плане
An issue was discovered in Smartstore (aka SmartStoreNET) through 4.1.1.
КритическаяCVSS 9,8Эксплойта нетEPSS 33 %smartstore · smartstore12 мая 2021 г.
- CVE-2020-1524339Наблюдать
WebApi Authentication attribute missing in Smartstore
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %smartstore · smartstore8 окт. 2020 г.
- CVE-2020-3636437Наблюдать
An issue was discovered in Smartstore (aka SmartStoreNET) before 4.1.0.
КритическаяCVSS 9,1Эксплойта нетEPSS 2 %smartstore · smartstorenet19 мая 2021 г.
- CVE-2020-2799636Наблюдать
An issue was discovered in SmartStoreNET before 4.0.1.
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %smartstore · smartstorenet29 окт. 2020 г.
- CVE-2020-2799735Наблюдать
An issue was discovered in SmartStoreNET before 4.1.0.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %smartstore · smartstorenet19 февр. 2021 г.
- CVE-2020-3636525Наблюдать
Smartstore (aka SmartStoreNET) before 4.1.0 allows CommonController.ClearCache, ClearDatabaseCache, RestartApplication, and ScheduleTaskCont
СредняяCVSS 6,1Proof of conceptEPSS 3 %smartstore · smartstorenet19 мая 2021 г.