Перейти к содержимому
Noroxi

Записи Weberp

11 опубликованных записей вендора weberp.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
1
С записью об исправлении
9,1 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 18
  2. 19
  3. 20
  4. 21
  5. 23
  6. 25
  7. 26

Столбик: всего · тёмная часть: CISA KEV.

Повторяющиеся классы

Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

CWE

Все записи

11 записей
  • CVE-2019-13292
    42В плане

    A SQL Injection issue was discovered in webERP 4.15.

    КритическаяCVSS 9,8Proof of conceptEPSS 9 %

    weberp · weberp4 июл. 2019 г.

  • CVE-2015-10018
    39Наблюдать

    DBRisinajumi d2files D2filesController.php actionDownloadFile sql injection

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    weberp · d2files6 янв. 2023 г.

  • CVE-2025-46052
    39Наблюдать

    An error-based SQL Injection (SQLi) vulnerability in WebERP v4.15.2 allows attackers to execute arbitrary SQL command and extract sensitive

    КритическаяCVSS 9,8Эксплойта нетEPSS 0 %

    weberp · weberp15 мая 2025 г.

  • CVE-2019-7755
    36Наблюдать

    In webERP 4.15, the Import Bank Transactions function fails to sanitize the content of imported MT940 bank statement files, resulting in the

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    weberp · weberp30 мар. 2020 г.

  • CVE-2020-37082
    34Наблюдать

    webERP 4.15.1 - Unauthenticated Backup File Access

    ВысокаяCVSS 8,6Эксплойта нетEPSS 1 %

    weberp · weberp3 февр. 2026 г.

  • CVE-2018-19435
    28Наблюдать

    An issue was discovered in the Sales component in webERP 4.15.

    ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %

    weberp · weberp22 нояб. 2018 г.

  • CVE-2018-19436
    28Наблюдать

    An issue was discovered in the Manufacturing component in webERP 4.15.

    ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %

    weberp · weberp22 нояб. 2018 г.

  • CVE-2018-19434
    28Наблюдать

    An issue was discovered on the "Bank Account Matching - Receipts" screen of the General Ledger component in webERP 4.15.

    ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %

    weberp · weberp22 нояб. 2018 г.

  • CVE-2020-22474
    26Наблюдать

    In webERP 4.15, the ManualContents.php file allows users to specify the "Language" parameter, which can lead to local file inclusion.

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    weberp · weberp22 февр. 2021 г.

  • CVE-2025-46053
    20Наблюдать

    A SQL Injection vulnerability in WebERP v4.15.2 allows attackers to execute arbitrary SQL commands and extract sensitive data by injecting a

    СредняяCVSS 5,1Эксплойта нетEPSS 0 %

    weberp · weberp15 мая 2025 г.

  • CVE-2018-20420
    19Наблюдать

    In webERP 4.15, Z_CreateCompanyTemplateFile.php has Incorrect Access Control, leading to the overwrite of an existing .sql file on the targe

    СредняяCVSS 4,9Эксплойта нетEPSS 1 %

    weberp · weberp23 дек. 2018 г.