Записи softcomplex
6 опубликованных записей вендора softcomplex.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
31Наблюдать | CVE-2006-3684Эксплойта нет | PHP remote file inclusion vulnerability in calendar.php in SoftComplex PHP Event Calendar 1.4 allows remote attackers to execute arbitrary Psoftcomplex · php event calendar | Высокая7,5 | — | 2,1 % | 21 июл. 2006 г. |
30Наблюдать | CVE-2008-6485Proof of concept | SQL injection vulnerability in index.php in SoftComplex PHP Image Gallery allows remote attackers to execute arbitrary SQL commands via the softcomplex · php image gallery · CWE-89 | Высокая7,5 | — | 1,0 % | 18 мар. 2009 г. |
30Наблюдать | CVE-2008-6488Proof of concept | SQL injection vulnerability in index.php in SoftComplex PHP Image Gallery 1.0 allows remote attackers to execute arbitrary SQL commands via softcomplex · php image gallery · CWE-89 | Высокая7,5 | — | 1,0 % | 18 мар. 2009 г. |
18Наблюдать | CVE-2006-4825Proof of concept | Multiple cross-site scripting (XSS) vulnerabilities in cl_files/index.php in SoftComplex PHP Event Calendar 1.5.1, and possibly earlier, allsoftcomplex · php event calendar | Средняя4,3 | — | 4,0 % | 15 сент. 2006 г. |
17Наблюдать | CVE-2008-2675Эксплойта нет | Cross-site scripting (XSS) vulnerability in index.php in PHP Image Gallery allows remote attackers to inject arbitrary web script or HTML visoftcomplex · php image gallery · CWE-79 | Средняя4,3 | — | 1,0 % | 12 июн. 2008 г. |
14Наблюдать | CVE-2006-0657Эксплойта нет | Cross-site scripting (XSS) vulnerability in Softcomplex PHP Event Calendar 1.5 allows remote authenticated users to inject arbitrary web scrsoftcomplex · php event calendar | Низкая3,5 | — | 1,1 % | 13 февр. 2006 г. |
- CVE-2006-368431Наблюдать
PHP remote file inclusion vulnerability in calendar.php in SoftComplex PHP Event Calendar 1.4 allows remote attackers to execute arbitrary P
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %softcomplex · php event calendar21 июл. 2006 г.
- CVE-2008-648530Наблюдать
SQL injection vulnerability in index.php in SoftComplex PHP Image Gallery allows remote attackers to execute arbitrary SQL commands via the
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %softcomplex · php image gallery18 мар. 2009 г.
- CVE-2008-648830Наблюдать
SQL injection vulnerability in index.php in SoftComplex PHP Image Gallery 1.0 allows remote attackers to execute arbitrary SQL commands via
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %softcomplex · php image gallery18 мар. 2009 г.
- CVE-2006-482518Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in cl_files/index.php in SoftComplex PHP Event Calendar 1.5.1, and possibly earlier, all
СредняяCVSS 4,3Proof of conceptEPSS 4 %softcomplex · php event calendar15 сент. 2006 г.
- CVE-2008-267517Наблюдать
Cross-site scripting (XSS) vulnerability in index.php in PHP Image Gallery allows remote attackers to inject arbitrary web script or HTML vi
СредняяCVSS 4,3Эксплойта нетEPSS 1 %softcomplex · php image gallery12 июн. 2008 г.
- CVE-2006-065714Наблюдать
Cross-site scripting (XSS) vulnerability in Softcomplex PHP Event Calendar 1.5 allows remote authenticated users to inject arbitrary web scr
НизкаяCVSS 3,5Эксплойта нетEPSS 1 %softcomplex · php event calendar13 февр. 2006 г.