Записи status
8 опубликованных записей вендора status.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-20 Improper Input Validation1
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-306 Missing Authentication for Critical Function1
- CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
8 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2019-12164Эксплойта нет | ubuntu-server.js in Status React Native Desktop before v0.57.8_mobile_ui allows Remote Code Execution.status · react native desktop | Критическая9,8 | — | 4,1 % | 23 июл. 2019 г. |
39Наблюдать | CVE-2010-4660Эксплойта нет | Unspecified vulnerability in statusnet through 2010 due to the way addslashes are used in SQL string escapes..status · statusnet · CWE-20 | Критическая9,8 | — | 1,3 % | 20 нояб. 2019 г. |
30Наблюдать | CVE-2013-4137Эксплойта нет | Multiple SQL injection vulnerabilities in StatusNet 1.0 before 1.0.2 and 1.1.0 allow remote attackers to execute arbitrary SQL commands via status · statusnet · CWE-89 | Высокая7,5 | — | 1,1 % | 11 окт. 2013 г. |
24Наблюдать | CVE-2011-3370Эксплойта нет | statusnet before 0.9.9 has XSSstatus · statusnet · CWE-79 | Средняя6,1 | — | 1,0 % | 12 нояб. 2019 г. |
24Наблюдать | CVE-2010-4659Эксплойта нет | Cross-site scripting (XSS) vulnerability in statusnet through 2010 in error message contents.status · statusnet · CWE-79 | Средняя6,1 | — | 0,9 % | 20 нояб. 2019 г. |
22Наблюдать | CVE-2023-25780Эксплойта нет | Status Internet Co.,Ltd. PowerBPM - Broken Access Controlstatus · powerbpm · CWE-306 | Средняя5,7 | — | 0,3 % | 2 июн. 2023 г. |
21Наблюдать | CVE-2010-4658Эксплойта нет | statusnet through 2010 allows attackers to spoof syslog messages via newline injection attacks.status · statusnet · CWE-74 | Средняя5,3 | — | 0,9 % | 7 февр. 2020 г. |
20Наблюдать | CVE-2011-3802Эксплойта нет | StatusNet 0.9.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation status · statusnet · CWE-200 | Средняя5,0 | — | 1,2 % | 23 сент. 2011 г. |
- CVE-2019-1216440В плане
ubuntu-server.js in Status React Native Desktop before v0.57.8_mobile_ui allows Remote Code Execution.
КритическаяCVSS 9,8Эксплойта нетEPSS 4 %status · react native desktop23 июл. 2019 г.
- CVE-2010-466039Наблюдать
Unspecified vulnerability in statusnet through 2010 due to the way addslashes are used in SQL string escapes..
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %status · statusnet20 нояб. 2019 г.
- CVE-2013-413730Наблюдать
Multiple SQL injection vulnerabilities in StatusNet 1.0 before 1.0.2 and 1.1.0 allow remote attackers to execute arbitrary SQL commands via
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %status · statusnet11 окт. 2013 г.
- CVE-2011-337024Наблюдать
statusnet before 0.9.9 has XSS
СредняяCVSS 6,1Эксплойта нетEPSS 1 %status · statusnet12 нояб. 2019 г.
- CVE-2010-465924Наблюдать
Cross-site scripting (XSS) vulnerability in statusnet through 2010 in error message contents.
СредняяCVSS 6,1Эксплойта нетEPSS 1 %status · statusnet20 нояб. 2019 г.
- CVE-2023-2578022Наблюдать
Status Internet Co.,Ltd. PowerBPM - Broken Access Control
СредняяCVSS 5,7Эксплойта нетEPSS 0 %status · powerbpm2 июн. 2023 г.
- CVE-2010-465821Наблюдать
statusnet through 2010 allows attackers to spoof syslog messages via newline injection attacks.
СредняяCVSS 5,3Эксплойта нетEPSS 1 %status · statusnet7 февр. 2020 г.
- CVE-2011-380220Наблюдать
StatusNet 0.9.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation
СредняяCVSS 5,0Эксплойта нетEPSS 1 %status · statusnet23 сент. 2011 г.