Записи thinkjs
2 опубликованных записей вендора thinkjs.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 50 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-1321 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
2 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2020-21176Эксплойта нет | SQL injection vulnerability in the model.increment and model.decrement function in ThinkJS 3.2.10 allows remote attackers to execute arbitrathinkjs · thinkjs · CWE-89 | Критическая9,8 | — | 1,5 % | 1 февр. 2021 г. |
30Наблюдать | CVE-2021-32736Эксплойта нет | Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in think-helperthinkjs · think-helper · CWE-1321 | Высокая7,5 | — | 1,0 % | 30 июн. 2021 г. |
- CVE-2020-2117639Наблюдать
SQL injection vulnerability in the model.increment and model.decrement function in ThinkJS 3.2.10 allows remote attackers to execute arbitra
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %thinkjs · thinkjs1 февр. 2021 г.
- CVE-2021-3273630Наблюдать
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in think-helper
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %thinkjs · think-helper30 июн. 2021 г.