Записи TOBESOFT
18 опубликованных записей вендора tobesoft.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 10
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-20 Improper Input Validation7
- CWE-494 Download of Code Without Integrity Check4
- CWE-345 Insufficient Verification of Data Authenticity1
- CWE-416 Use After Free1
- CWE-470 Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection')1
- CWE-125 Out-of-bounds Read1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
18 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2020-7825Эксплойта нет | A vulnerability exists that could allow the execution of operating system commands on systems running MiPlatform 2019.05.16 and earlier.tobesoft · miplatform · CWE-78 | Критическая9,8 | — | 2,1 % | 17 июл. 2020 г. |
40В плане | CVE-2021-26607Эксплойта нет | TOBESOFT NEXACRO17 arbitrary command execution vulnerabilitytobesoft · nexacro · CWE-20 | Критическая9,8 | — | 1,9 % | 26 окт. 2021 г. |
39Наблюдать | CVE-2021-26612Эксплойта нет | tobesoft Nexacro platform arbitrary file creation vulnerabilitytobesoft · nexacro · CWE-20 | Критическая9,8 | — | 1,2 % | 30 нояб. 2021 г. |
39Наблюдать | CVE-2020-7815Эксплойта нет | XPLATFORM v9.2.260 and eariler versions contain a vulnerability that could allow remote files to be downloaded by setting the arguments to ttobesoft · xplatform | Критическая9,8 | — | 1,2 % | 10 июл. 2020 г. |
39Наблюдать | CVE-2020-7857Эксплойта нет | A vulnerability of XPlatform could allow an unauthenticated attacker to execute arbitrary command.tobesoft · xplatform · CWE-470 | Критическая9,8 | — | 1,0 % | 20 апр. 2021 г. |
39Наблюдать | CVE-2020-7866Эксплойта нет | Tobesoft XPLATFORM Arbitrary Command Execution Vulnerabilitytobesoft · xplatform · CWE-20 | Критическая9,8 | — | 1,0 % | 20 июл. 2021 г. |
39Наблюдать | CVE-2020-7853Эксплойта нет | TOBESOFT XPLATFORM Out-of-Bounds Read/Write Vulnerabilitiestobesoft · xplatform · CWE-125 | Критическая9,8 | — | 0,8 % | 24 мар. 2021 г. |
39Наблюдать | CVE-2020-7806Эксплойта нет | Tobesoft Xplatform ActiveX File Download Vulnerabilitytobesoft · xplatform · CWE-494 | Критическая9,8 | — | 0,7 % | 6 мая 2020 г. |
39Наблюдать | CVE-2019-19167Эксплойта нет | Tobesoft Nexacro14 ActiveX File Download Vulnerabilitytobesoft · nexacro · CWE-494 | Критическая9,8 | — | 0,7 % | 6 мая 2020 г. |
35Наблюдать | CVE-2020-7841Эксплойта нет | TOBESOFT XPLATFORM arbitrary hta file execution vulnerabilitytobesoft · xplatform · CWE-20 | Высокая8,8 | — | 1,6 % | 17 нояб. 2020 г. |
35Наблюдать | CVE-2021-26629Эксплойта нет | tobesoft XPLATFORM Path Traversal Vulnerabilitytobesoft · xplatform · CWE-22 | Высокая8,8 | — | 1,6 % | 26 апр. 2022 г. |
35Наблюдать | CVE-2021-26626Эксплойта нет | tobesoft XPLATFORM Arbitrary file execution Vulnerabilitytobesoft · xplatform · CWE-20 | Высокая8,8 | — | 1,3 % | 19 апр. 2022 г. |
35Наблюдать | CVE-2021-26625Эксплойта нет | tobesoft Nexacro arbitrary file download vulnerabilitytobesoft · nexacro · CWE-345 | Высокая8,8 | — | 0,6 % | 19 апр. 2022 г. |
35Наблюдать | CVE-2020-7874Эксплойта нет | NEXACRO14 Runtime arbitrary file download and execution vulnerabilitytobesoft · nexacro · CWE-494 | Высокая8,8 | — | 0,6 % | 9 сент. 2021 г. |
31Наблюдать | CVE-2019-19162Эксплойта нет | A use-after-free vulnerability in the TOBESOFT XPLATFORM versions 9.1 to 9.2.2 may lead to code execution on a system running it.tobesoft · xplatform · CWE-416 | Высокая7,8 | — | 1,2 % | 11 мая 2020 г. |
31Наблюдать | CVE-2018-5197Эксплойта нет | A vulnerability in the ExtCommon.dll user extension module version 9.2, 9.2.1, 9.2.2 of Xplatform ActiveX could allow attacker to perform a tobesoft · xplatform · CWE-20 | Высокая7,8 | — | 1,1 % | 2 янв. 2019 г. |
31Наблюдать | CVE-2019-19166Эксплойта нет | Tobesoft XPlatform Arbitrary File Execution Vulnerabilitytobesoft · xplatform · CWE-494 | Высокая7,8 | — | 0,4 % | 6 мая 2020 г. |
30Наблюдать | CVE-2021-26613Эксплойта нет | tobesoft nexacro arbitrary file creation vulnerabilitytobesoft · nexacro · CWE-20 | Высокая7,5 | — | 0,8 % | 9 февр. 2022 г. |
- CVE-2020-782540В плане
A vulnerability exists that could allow the execution of operating system commands on systems running MiPlatform 2019.05.16 and earlier.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %tobesoft · miplatform17 июл. 2020 г.
- CVE-2021-2660740В плане
TOBESOFT NEXACRO17 arbitrary command execution vulnerability
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %tobesoft · nexacro26 окт. 2021 г.
- CVE-2021-2661239Наблюдать
tobesoft Nexacro platform arbitrary file creation vulnerability
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %tobesoft · nexacro30 нояб. 2021 г.
- CVE-2020-781539Наблюдать
XPLATFORM v9.2.260 and eariler versions contain a vulnerability that could allow remote files to be downloaded by setting the arguments to t
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %tobesoft · xplatform10 июл. 2020 г.
- CVE-2020-785739Наблюдать
A vulnerability of XPlatform could allow an unauthenticated attacker to execute arbitrary command.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %tobesoft · xplatform20 апр. 2021 г.
- CVE-2020-786639Наблюдать
Tobesoft XPLATFORM Arbitrary Command Execution Vulnerability
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %tobesoft · xplatform20 июл. 2021 г.
- CVE-2020-785339Наблюдать
TOBESOFT XPLATFORM Out-of-Bounds Read/Write Vulnerabilities
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %tobesoft · xplatform24 мар. 2021 г.
- CVE-2020-780639Наблюдать
Tobesoft Xplatform ActiveX File Download Vulnerability
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %tobesoft · xplatform6 мая 2020 г.
- CVE-2019-1916739Наблюдать
Tobesoft Nexacro14 ActiveX File Download Vulnerability
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %tobesoft · nexacro6 мая 2020 г.
- CVE-2020-784135Наблюдать
TOBESOFT XPLATFORM arbitrary hta file execution vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %tobesoft · xplatform17 нояб. 2020 г.
- CVE-2021-2662935Наблюдать
tobesoft XPLATFORM Path Traversal Vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %tobesoft · xplatform26 апр. 2022 г.
- CVE-2021-2662635Наблюдать
tobesoft XPLATFORM Arbitrary file execution Vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %tobesoft · xplatform19 апр. 2022 г.
- CVE-2021-2662535Наблюдать
tobesoft Nexacro arbitrary file download vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %tobesoft · nexacro19 апр. 2022 г.
- CVE-2020-787435Наблюдать
NEXACRO14 Runtime arbitrary file download and execution vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %tobesoft · nexacro9 сент. 2021 г.
- CVE-2019-1916231Наблюдать
A use-after-free vulnerability in the TOBESOFT XPLATFORM versions 9.1 to 9.2.2 may lead to code execution on a system running it.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %tobesoft · xplatform11 мая 2020 г.
- CVE-2018-519731Наблюдать
A vulnerability in the ExtCommon.dll user extension module version 9.2, 9.2.1, 9.2.2 of Xplatform ActiveX could allow attacker to perform a
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %tobesoft · xplatform2 янв. 2019 г.
- CVE-2019-1916631Наблюдать
Tobesoft XPlatform Arbitrary File Execution Vulnerability
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %tobesoft · xplatform6 мая 2020 г.
- CVE-2021-2661330Наблюдать
tobesoft nexacro arbitrary file creation vulnerability
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %tobesoft · nexacro9 февр. 2022 г.