Записи WinterChenS
5 опубликованных записей вендора winterchens.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-284 Improper Access Control3
- CWE-287 Improper Authentication1
- CWE-288 Authentication Bypass Using an Alternate Path or Channel1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2024-53496Эксплойта нет | Incorrect access control in the doFilter function of my-site v1.0.2.RELEASE allows attackers to access sensitive components without authentiwinterchens · my-site · CWE-284 | Критическая9,8 | — | 0,6 % | 22 авг. 2025 г. |
39Наблюдать | CVE-2025-50904Эксплойта нет | There is an authentication bypass vulnerability in WinterChenS my-site thru commit 6c79286 (2025-06-11).winterchens · my-site · CWE-288 | Критическая9,8 | — | 0,4 % | 20 авг. 2025 г. |
30Наблюдать | CVE-2024-53495Эксплойта нет | Incorrect access control in the preHandle function of my-site v1.0.2.RELEASE allows attackers to access sensitive components without authentwinterchens · my-site · CWE-284 | Высокая7,5 | — | 0,4 % | 20 авг. 2025 г. |
30Наблюдать | CVE-2024-57152Эксплойта нет | Incorrect access control in the preHandle function of my-site v1.0.2 allows attackers to access sensitive components without authentication winterchens · my-site · CWE-284 | Высокая7,5 | — | 0,4 % | 20 авг. 2025 г. |
22Наблюдать | CVE-2025-8838Эксплойта нет | WinterChenS my-site Backend admin preHandle improper authenticationwinterchens · my-site · CWE-287 | Средняя5,5 | — | 0,5 % | 11 авг. 2025 г. |
- CVE-2024-5349639Наблюдать
Incorrect access control in the doFilter function of my-site v1.0.2.RELEASE allows attackers to access sensitive components without authenti
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %winterchens · my-site22 авг. 2025 г.
- CVE-2025-5090439Наблюдать
There is an authentication bypass vulnerability in WinterChenS my-site thru commit 6c79286 (2025-06-11).
КритическаяCVSS 9,8Эксплойта нетEPSS 0 %winterchens · my-site20 авг. 2025 г.
- CVE-2024-5349530Наблюдать
Incorrect access control in the preHandle function of my-site v1.0.2.RELEASE allows attackers to access sensitive components without authent
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %winterchens · my-site20 авг. 2025 г.
- CVE-2024-5715230Наблюдать
Incorrect access control in the preHandle function of my-site v1.0.2 allows attackers to access sensitive components without authentication
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %winterchens · my-site20 авг. 2025 г.
- CVE-2025-883822Наблюдать
WinterChenS my-site Backend admin preHandle improper authentication
СредняяCVSS 5,5Эксплойта нетEPSS 1 %winterchens · my-site11 авг. 2025 г.