Записи talkback
5 опубликованных записей вендора talkback.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-502 Deserialization of Untrusted Data1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2024-48033Эксплойта нет | WordPress Talkback plugin <= 1.0 - PHP Object Injection vulnerabilitybaptiste.gourdin · talkback · CWE-502 | Критическая9,8 | — | 0,6 % | 11 окт. 2024 г. |
31Наблюдать | CVE-2008-3371Proof of concept | Directory traversal vulnerability in install/help.php in TalkBack 2.3.5, and other versions before 2.3.6.2, allows remote attackers to inclutalkback · talkback · CWE-22 | Высокая7,5 | — | 3,5 % | 30 июл. 2008 г. |
31Наблюдать | CVE-2008-4346Proof of concept | Directory traversal vulnerability in TalkBack 2.3.6 and 2.3.6.4 allows remote attackers to include and execute arbitrary local files via a .talkback · talkback · CWE-22 | Высокая7,5 | — | 2,8 % | 30 сент. 2008 г. |
29Наблюдать | CVE-2007-6105Proof of concept | Multiple PHP remote file inclusion vulnerabilities in TalkBack 2.2.7 allow remote attackers to execute arbitrary PHP code via a URL in the (talkback · talkback · CWE-94 | Средняя6,8 | — | 6,7 % | 23 нояб. 2007 г. |
21Наблюдать | CVE-2008-4115Proof of concept | TalkBack 2.3.6 allows remote attackers to obtain configuration information via a direct request to install/info.php, which calls the phpinfotalkback · talkback · CWE-200 | Средняя5,0 | — | 2,6 % | 16 сент. 2008 г. |
- CVE-2024-4803339Наблюдать
WordPress Talkback plugin <= 1.0 - PHP Object Injection vulnerability
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %baptiste.gourdin · talkback11 окт. 2024 г.
- CVE-2008-337131Наблюдать
Directory traversal vulnerability in install/help.php in TalkBack 2.3.5, and other versions before 2.3.6.2, allows remote attackers to inclu
ВысокаяCVSS 7,5Proof of conceptEPSS 4 %talkback · talkback30 июл. 2008 г.
- CVE-2008-434631Наблюдать
Directory traversal vulnerability in TalkBack 2.3.6 and 2.3.6.4 allows remote attackers to include and execute arbitrary local files via a .
ВысокаяCVSS 7,5Proof of conceptEPSS 3 %talkback · talkback30 сент. 2008 г.
- CVE-2007-610529Наблюдать
Multiple PHP remote file inclusion vulnerabilities in TalkBack 2.2.7 allow remote attackers to execute arbitrary PHP code via a URL in the (
СредняяCVSS 6,8Proof of conceptEPSS 7 %talkback · talkback23 нояб. 2007 г.
- CVE-2008-411521Наблюдать
TalkBack 2.3.6 allows remote attackers to obtain configuration information via a direct request to install/info.php, which calls the phpinfo
СредняяCVSS 5,0Proof of conceptEPSS 3 %talkback · talkback16 сент. 2008 г.