Перейти к содержимому
Noroxi

Записи TeamPass

50 опубликованных записей вендора teampass.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
4
С записью об исправлении
62 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

50 записей
  • CVE-2015-7564
    40В плане

    Multiple SQL injection vulnerabilities in TeamPass 2.1.24 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) i

    КритическаяCVSS 9,8Proof of conceptEPSS 3 %

    teampass · teampass12 апр. 2017 г.

  • CVE-2019-1000001
    40В плане

    TeamPass version 2.1.27 and earlier contains a Storing Passwords in a Recoverable Format vulnerability in Shared password vaults that can re

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    teampass · teampass4 февр. 2019 г.

  • CVE-2017-9436
    39Наблюдать

    TeamPass before 2.1.27.4 is vulnerable to a SQL injection in users.queries.php.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    teampass · teampass5 июн. 2017 г.

  • CVE-2026-3106
    37Наблюдать

    Multiple vulnerabilities in Teampass

    КритическаяCVSS 9,3Эксплойта нетEPSS 0 %

    teampass · teampass31 мар. 2026 г.

  • CVE-2026-3107
    37Наблюдать

    Multiple vulnerabilities in Teampass

    КритическаяCVSS 9,3Эксплойта нетEPSS 0 %

    teampass · teampass31 мар. 2026 г.

  • CVE-2015-7563
    36Наблюдать

    Cross-site request forgery (CSRF) vulnerability in TeamPass 2.1.24 and earlier allows remote attackers to hijack the authentication of an au

    ВысокаяCVSS 8,8Proof of conceptEPSS 3 %

    teampass · teampass12 апр. 2017 г.

  • CVE-2020-12479
    36Наблюдать

    TeamPass 2.1.27.36 allows any authenticated TeamPass user to trigger a PHP file include vulnerability via a crafted HTTP request with source

    ВысокаяCVSS 8,8Эксплойта нетEPSS 3 %

    teampass · teampass29 апр. 2020 г.

  • CVE-2023-3086
    36Наблюдать

    Cross-site Scripting (XSS) - Stored in nilsteampassnet/teampass

    КритическаяCVSS 9,0Эксплойта нетEPSS 1 %

    teampass · teampass3 июн. 2023 г.

  • CVE-2023-2859
    35Наблюдать

    Code Injection in nilsteampassnet/teampass

    ВысокаяCVSS 8,8Proof of conceptEPSS 2 %

    teampass · teampass24 мая 2023 г.

  • CVE-2023-3083
    34Наблюдать

    Cross-site Scripting (XSS) - Stored in nilsteampassnet/teampass

    ВысокаяCVSS 8,7Эксплойта нетEPSS 1 %

    teampass · teampass3 июн. 2023 г.

  • CVE-2020-12478
    33Наблюдать

    TeamPass 2.1.27.36 allows an unauthenticated attacker to retrieve files from the TeamPass web root.

    ВысокаяCVSS 7,5Proof of conceptEPSS 9 %

    teampass · teampass29 апр. 2020 г.

  • CVE-2023-1545
    33Наблюдать

    SQL Injection in nilsteampassnet/teampass

    ВысокаяCVSS 7,5Proof of conceptEPSS 8 %

    teampass · teampass21 мар. 2023 г.

  • CVE-2020-11671
    32Наблюдать

    Lack of authorization controls in REST API functions in TeamPass through 2.1.27.36 allows any TeamPass user with a valid API token to become

    ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %

    teampass · teampass4 мая 2020 г.

  • CVE-2017-15055
    32Наблюдать

    TeamPass before 2.1.27.9 does not properly enforce item access control when requesting items.queries.php.

    ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %

    teampass · teampass27 нояб. 2017 г.

  • CVE-2023-3084
    32Наблюдать

    Cross-site Scripting (XSS) - Stored in nilsteampassnet/teampass

    ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %

    teampass · teampass3 июн. 2023 г.

  • CVE-2024-50703
    32Наблюдать

    TeamPass before 3.1.3.1 does not properly prevent a user from acting with the privileges of a different user_id.

    ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %

    teampass · teampass30 дек. 2024 г.

  • CVE-2017-15054
    31Наблюдать

    An arbitrary file upload vulnerability, present in TeamPass before 2.1.27.9, allows remote authenticated users to upload arbitrary files lea

    ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %

    teampass · teampass27 нояб. 2017 г.

  • CVE-2014-3772
    31Наблюдать

    TeamPass before 2.1.20 allows remote attackers to bypass access restrictions via a request to index.php followed by a direct request to a fi

    ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %

    teampass · teampass7 авг. 2014 г.

  • CVE-2014-3771
    31Наблюдать

    TeamPass before 2.1.20 allows remote attackers to bypass access restrictions via the language file path in a (1) request to index.php or (2)

    ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %

    teampass · teampass7 авг. 2014 г.

  • CVE-2014-3773
    31Наблюдать

    Multiple SQL injection vulnerabilities in TeamPass before 2.1.20 allow remote attackers to execute arbitrary SQL commands via the login para

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    teampass · teampass7 авг. 2014 г.

  • CVE-2020-12477
    31Наблюдать

    The REST API functions in TeamPass 2.1.27.36 allow any user with a valid API token to bypass IP address whitelist restrictions via an X-Forw

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    teampass · teampass29 апр. 2020 г.

  • CVE-2023-3553
    30Наблюдать

    Exposure of Sensitive Information to an Unauthorized Actor in nilsteampassnet/teampass

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    teampass · teampass8 июл. 2023 г.

  • CVE-2023-3551
    28Наблюдать

    Code Injection in nilsteampassnet/teampass

    ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %

    teampass · teampass8 июл. 2023 г.

  • CVE-2023-1070
    28Наблюдать

    External Control of File Name or Path in nilsteampassnet/teampass

    ВысокаяCVSS 7,1Эксплойта нетEPSS 1 %

    teampass · teampass27 февр. 2023 г.

  • CVE-2023-3095
    26Наблюдать

    Improper Access Control in nilsteampassnet/teampass

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    teampass · teampass4 июн. 2023 г.