Записи subex
2 опубликованных записей вендора subex.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-639 Authorization Bypass Through User-Controlled Key1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
2 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
36Наблюдать | CVE-2020-9384Эксплойта нет | An Insecure Direct Object Reference (IDOR) vulnerability in the Change Password feature of Subex ROC Partner Settlement 10.5 allows remote asubex · roc partner settlement · CWE-639 | Высокая8,8 | — | 1,9 % | 14 апр. 2020 г. |
30Наблюдать | CVE-2014-8728Proof of concept | SQL injection vulnerability in the login page (login/login) in Subex ROC Fraud Management (aka Fraud Management System and FMS) 7.4 and earlsubex · roc fraud management system · CWE-89 | Высокая7,5 | — | 1,2 % | 2 дек. 2014 г. |
- CVE-2020-938436Наблюдать
An Insecure Direct Object Reference (IDOR) vulnerability in the Change Password feature of Subex ROC Partner Settlement 10.5 allows remote a
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %subex · roc partner settlement14 апр. 2020 г.
- CVE-2014-872830Наблюдать
SQL injection vulnerability in the login page (login/login) in Subex ROC Fraud Management (aka Fraud Management System and FMS) 7.4 and earl
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %subex · roc fraud management system2 дек. 2014 г.