Записи talentsoft
6 опубликованных записей вендора talentsoft.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
43В плане | CVE-2002-0449Эксплойта нет | Buffer overflow in webpsvc.exe for Talentsoft Web+ 5.0 and earlier allows remote attackers to execute arbitrary code via a long argument to talentsoft · web\+ server | Критическая10,0 | — | 9,0 % | 26 июл. 2002 г. |
42В плане | CVE-2002-0753Эксплойта нет | Buffer overflow in Talentsoft Web+ 5.0 allows remote attackers to execute arbitrary code via an HTTP request with a long cookie.talentsoft · web\+ server | Критическая10,0 | — | 5,9 % | 12 авг. 2002 г. |
42В плане | CVE-2002-0450Эксплойта нет | Buffer overflow in Talentsoft Web+ 5.0 and earlier allows remote attackers to execute arbitrary code via a long Web Markup Language (wml) fitalentsoft · web\+ server | Критическая10,0 | — | 5,3 % | 26 июл. 2002 г. |
22Наблюдать | CVE-2000-0282Proof of concept | TalentSoft webpsvr daemon in the Web+ shopping cart application allows remote attackers to read arbitrary files via a ..talentsoft · web\+ | Средняя5,0 | — | 7,8 % | 12 апр. 2000 г. |
21Наблюдать | CVE-2006-1897Эксплойта нет | Webplus (aka talentsoft) Web+Shop 5.3.6, when Redirect URL for "Script Not Found" Error is not configured, allows remote attackers to obtaintalentsoft · web\+ shop | Средняя5,0 | — | 1,7 % | 20 апр. 2006 г. |
18Наблюдать | CVE-2006-1682Proof of concept | Cross-site scripting (XSS) vulnerability in webplus.exe in TalentSoft Web+Shop 5.0 and earlier allows remote attackers to inject arbitrary wtalentsoft · web\+ shop | Средняя4,3 | — | 1,7 % | 10 апр. 2006 г. |
- CVE-2002-044943В плане
Buffer overflow in webpsvc.exe for Talentsoft Web+ 5.0 and earlier allows remote attackers to execute arbitrary code via a long argument to
КритическаяCVSS 10,0Эксплойта нетEPSS 9 %talentsoft · web\+ server26 июл. 2002 г.
- CVE-2002-075342В плане
Buffer overflow in Talentsoft Web+ 5.0 allows remote attackers to execute arbitrary code via an HTTP request with a long cookie.
КритическаяCVSS 10,0Эксплойта нетEPSS 6 %talentsoft · web\+ server12 авг. 2002 г.
- CVE-2002-045042В плане
Buffer overflow in Talentsoft Web+ 5.0 and earlier allows remote attackers to execute arbitrary code via a long Web Markup Language (wml) fi
КритическаяCVSS 10,0Эксплойта нетEPSS 5 %talentsoft · web\+ server26 июл. 2002 г.
- CVE-2000-028222Наблюдать
TalentSoft webpsvr daemon in the Web+ shopping cart application allows remote attackers to read arbitrary files via a ..
СредняяCVSS 5,0Proof of conceptEPSS 8 %talentsoft · web\+12 апр. 2000 г.
- CVE-2006-189721Наблюдать
Webplus (aka talentsoft) Web+Shop 5.3.6, when Redirect URL for "Script Not Found" Error is not configured, allows remote attackers to obtain
СредняяCVSS 5,0Эксплойта нетEPSS 2 %talentsoft · web\+ shop20 апр. 2006 г.
- CVE-2006-168218Наблюдать
Cross-site scripting (XSS) vulnerability in webplus.exe in TalentSoft Web+Shop 5.0 and earlier allows remote attackers to inject arbitrary w
СредняяCVSS 4,3Proof of conceptEPSS 2 %talentsoft · web\+ shop10 апр. 2006 г.