Записи v-webmail
8 опубликованных записей вендора v-webmail.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
8 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
33Наблюдать | CVE-2006-2665Proof of concept | PHP remote file inclusion vulnerability in includes/mailaccess/pop3/core.php in V-Webmail 1.3 allows remote attackers to execute arbitrary Pv-webmail · v-webmail | Высокая7,5 | — | 8,8 % | 30 мая 2006 г. |
31Наблюдать | CVE-2006-2666Proof of concept | PHP remote file inclusion vulnerability in includes/mailaccess/pop3.php in V-Webmail 1.5 through 1.6.4 allows remote attackers to execute arv-webmail · v-webmail | Высокая7,5 | — | 3,6 % | 30 мая 2006 г. |
30Наблюдать | CVE-2008-3063Эксплойта нет | SQL injection vulnerability in login.php in V-webmail 1.5.0 might allow remote attackers to execute arbitrary SQL commands via the username v-webmail · v-webmail · CWE-89 | Высокая7,5 | — | 1,1 % | 7 окт. 2008 г. |
20Наблюдать | CVE-2006-0793Эксплойта нет | frameset.php in V-webmail 1.6.2 allows remote attackers to conduct phishing attacks by referencing arbitrary websites in the rframe parametev-webmail · v-webmail | Средняя5,0 | — | 1,4 % | 19 февр. 2006 г. |
20Наблюдать | CVE-2006-0794Эксплойта нет | help.php in V-webmail 1.6.2 allows remote attackers to obtain the installation path via unspecified invalid parameters.v-webmail · v-webmail | Средняя5,0 | — | 1,4 % | 19 февр. 2006 г. |
20Наблюдать | CVE-2008-3060Эксплойта нет | V-webmail 1.5.0 allows remote attackers to obtain sensitive information via (1) malformed input in the login page (includes/local.hooks.php)v-webmail · v-webmail · CWE-200 | Средняя5,0 | — | 1,2 % | 7 окт. 2008 г. |
18Наблюдать | CVE-2006-0792Proof of concept | Cross-site scripting (XSS) vulnerability in preferences.personal.php in V-webmail 1.6.2 allows remote attackers to inject arbitrary web scriv-webmail · v-webmail | Средняя4,3 | — | 1,8 % | 19 февр. 2006 г. |
17Наблюдать | CVE-2008-3061Эксплойта нет | Open redirect vulnerability in redirect.php in V-webmail 1.5.0 allows remote attackers to redirect users to arbitrary web sites and conduct v-webmail · v-webmail | Средняя4,3 | — | 1,0 % | 7 окт. 2008 г. |
- CVE-2006-266533Наблюдать
PHP remote file inclusion vulnerability in includes/mailaccess/pop3/core.php in V-Webmail 1.3 allows remote attackers to execute arbitrary P
ВысокаяCVSS 7,5Proof of conceptEPSS 9 %v-webmail · v-webmail30 мая 2006 г.
- CVE-2006-266631Наблюдать
PHP remote file inclusion vulnerability in includes/mailaccess/pop3.php in V-Webmail 1.5 through 1.6.4 allows remote attackers to execute ar
ВысокаяCVSS 7,5Proof of conceptEPSS 4 %v-webmail · v-webmail30 мая 2006 г.
- CVE-2008-306330Наблюдать
SQL injection vulnerability in login.php in V-webmail 1.5.0 might allow remote attackers to execute arbitrary SQL commands via the username
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %v-webmail · v-webmail7 окт. 2008 г.
- CVE-2006-079320Наблюдать
frameset.php in V-webmail 1.6.2 allows remote attackers to conduct phishing attacks by referencing arbitrary websites in the rframe paramete
СредняяCVSS 5,0Эксплойта нетEPSS 1 %v-webmail · v-webmail19 февр. 2006 г.
- CVE-2006-079420Наблюдать
help.php in V-webmail 1.6.2 allows remote attackers to obtain the installation path via unspecified invalid parameters.
СредняяCVSS 5,0Эксплойта нетEPSS 1 %v-webmail · v-webmail19 февр. 2006 г.
- CVE-2008-306020Наблюдать
V-webmail 1.5.0 allows remote attackers to obtain sensitive information via (1) malformed input in the login page (includes/local.hooks.php)
СредняяCVSS 5,0Эксплойта нетEPSS 1 %v-webmail · v-webmail7 окт. 2008 г.
- CVE-2006-079218Наблюдать
Cross-site scripting (XSS) vulnerability in preferences.personal.php in V-webmail 1.6.2 allows remote attackers to inject arbitrary web scri
СредняяCVSS 4,3Proof of conceptEPSS 2 %v-webmail · v-webmail19 февр. 2006 г.
- CVE-2008-306117Наблюдать
Open redirect vulnerability in redirect.php in V-webmail 1.5.0 allows remote attackers to redirect users to arbitrary web sites and conduct
СредняяCVSS 4,3Эксплойта нетEPSS 1 %v-webmail · v-webmail7 окт. 2008 г.