Записи VISAM
16 опубликованных записей вендора visam.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-611 Improper Restriction of XML External Entity Reference8
- CWE-23 Relative Path Traversal1
- CWE-276 Incorrect Default Permissions1
- CWE-284 Improper Access Control1
- CWE-326 Inadequate Encryption Strength1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
16 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2020-10599Эксплойта нет | VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow a vulnerable ActiveX component to be exploited resulting in a buffvisam · vbase editor · CWE-121 | Критическая9,8 | — | 2,6 % | 3 апр. 2020 г. |
35Наблюдать | CVE-2020-7004Эксплойта нет | VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow weak or insecure permissions on the VBASE directory resulting in evisam · vbase editor · CWE-276 | Высокая8,8 | — | 0,4 % | 3 апр. 2020 г. |
31Наблюдать | CVE-2020-7008Эксплойта нет | VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow input passed in the URL that is not properly verified before use, visam · vbase editor · CWE-23 | Высокая7,5 | — | 1,9 % | 3 апр. 2020 г. |
31Наблюдать | CVE-2020-10601Эксплойта нет | VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module allow weak hashing algorithm and insecure permissions which may allow a locavisam · vbase editor · CWE-326 | Высокая7,8 | — | 0,3 % | 3 апр. 2020 г. |
30Наблюдать | CVE-2022-3217Эксплойта нет | When logging in to a VBASE runtime project via Web-Remote, the product uses XOR with a static initial key to obfuscate login messages.visam · vbase | Высокая7,5 | — | 1,3 % | 16 сент. 2022 г. |
30Наблюдать | CVE-2020-7000Эксплойта нет | VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow an unauthenticated attacker to discover the cryptographic key fromvisam · vbase editor · CWE-922 | Высокая7,5 | — | 1,1 % | 3 апр. 2020 г. |
30Наблюдать | CVE-2021-38417Эксплойта нет | VISAM VBASE Editor Improper Access Controlvisam · vbase web-remote · CWE-284 | Высокая7,5 | — | 0,8 % | 27 июл. 2022 г. |
30Наблюдать | CVE-2021-42537Эксплойта нет | VISAM VBASE Editor Improper Restriction of XMLvisam · vbase web-remote · CWE-611 | Высокая7,5 | — | 0,5 % | 27 июл. 2022 г. |
24Наблюдать | CVE-2021-42535Эксплойта нет | VISAM VBASE Editor Cross Site Scriptingvisam · vbase web-remote · CWE-79 | Средняя6,1 | — | 0,5 % | 27 июл. 2022 г. |
23Наблюдать | CVE-2022-46300Эксплойта нет | Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.visam · vbase automation base · CWE-611 | Средняя5,5 | — | 4,1 % | 21 мар. 2023 г. |
23Наблюдать | CVE-2022-45876Эксплойта нет | Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.visam · vbase · CWE-611 | Средняя5,5 | — | 3,3 % | 26 апр. 2023 г. |
23Наблюдать | CVE-2022-45468Эксплойта нет | Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.visam · vbase automation base · CWE-611 | Средняя5,5 | — | 1,8 % | 21 мар. 2023 г. |
23Наблюдать | CVE-2022-46286Эксплойта нет | Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.visam · vbase automation base · CWE-611 | Средняя5,5 | — | 1,8 % | 21 мар. 2023 г. |
22Наблюдать | CVE-2022-43512Эксплойта нет | Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.visam · vbase automation base · CWE-611 | Средняя5,5 | — | 0,3 % | 21 мар. 2023 г. |
22Наблюдать | CVE-2022-45121Эксплойта нет | Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.visam · vbase automation base · CWE-611 | Средняя5,5 | — | 0,3 % | 21 мар. 2023 г. |
22Наблюдать | CVE-2022-41696Эксплойта нет | Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.visam · vbase automation base · CWE-611 | Средняя5,5 | — | 0,3 % | 21 мар. 2023 г. |
- CVE-2020-1059940В плане
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow a vulnerable ActiveX component to be exploited resulting in a buff
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %visam · vbase editor3 апр. 2020 г.
- CVE-2020-700435Наблюдать
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow weak or insecure permissions on the VBASE directory resulting in e
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %visam · vbase editor3 апр. 2020 г.
- CVE-2020-700831Наблюдать
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow input passed in the URL that is not properly verified before use,
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %visam · vbase editor3 апр. 2020 г.
- CVE-2020-1060131Наблюдать
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module allow weak hashing algorithm and insecure permissions which may allow a loca
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %visam · vbase editor3 апр. 2020 г.
- CVE-2022-321730Наблюдать
When logging in to a VBASE runtime project via Web-Remote, the product uses XOR with a static initial key to obfuscate login messages.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %visam · vbase16 сент. 2022 г.
- CVE-2020-700030Наблюдать
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow an unauthenticated attacker to discover the cryptographic key from
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %visam · vbase editor3 апр. 2020 г.
- CVE-2021-3841730Наблюдать
VISAM VBASE Editor Improper Access Control
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %visam · vbase web-remote27 июл. 2022 г.
- CVE-2021-4253730Наблюдать
VISAM VBASE Editor Improper Restriction of XML
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %visam · vbase web-remote27 июл. 2022 г.
- CVE-2021-4253524Наблюдать
VISAM VBASE Editor Cross Site Scripting
СредняяCVSS 6,1Эксплойта нетEPSS 0 %visam · vbase web-remote27 июл. 2022 г.
- CVE-2022-4630023Наблюдать
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
СредняяCVSS 5,5Эксплойта нетEPSS 4 %visam · vbase automation base21 мар. 2023 г.
- CVE-2022-4587623Наблюдать
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
СредняяCVSS 5,5Эксплойта нетEPSS 3 %visam · vbase26 апр. 2023 г.
- CVE-2022-4546823Наблюдать
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
СредняяCVSS 5,5Эксплойта нетEPSS 2 %visam · vbase automation base21 мар. 2023 г.
- CVE-2022-4628623Наблюдать
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
СредняяCVSS 5,5Эксплойта нетEPSS 2 %visam · vbase automation base21 мар. 2023 г.
- CVE-2022-4351222Наблюдать
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
СредняяCVSS 5,5Эксплойта нетEPSS 0 %visam · vbase automation base21 мар. 2023 г.
- CVE-2022-4512122Наблюдать
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
СредняяCVSS 5,5Эксплойта нетEPSS 0 %visam · vbase automation base21 мар. 2023 г.
- CVE-2022-4169622Наблюдать
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
СредняяCVSS 5,5Эксплойта нетEPSS 0 %visam · vbase automation base21 мар. 2023 г.