Записи woltlab
46 опубликованных записей вендора woltlab.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 27
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')6
- CWE-352 Cross-Site Request Forgery (CSRF)3
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
46 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
31Наблюдать | CVE-2006-6237Proof of concept | SQL injection vulnerability in the decode_cookie function in thread.php in Woltlab Burning Board Lite 1.0.2 allows remote attackers to execuwoltlab · burning board lite | Высокая7,5 | — | 2,6 % | 3 дек. 2006 г. |
31Наблюдать | CVE-2002-1505Proof of concept | SQL injection vulnerability in board.php for WoltLab Burning Board (wBB) 2.0 RC 1 and earlier allows remote attackers to modify the databasewoltlab · burning board | Высокая7,5 | — | 2,4 % | 2 апр. 2003 г. |
31Наблюдать | CVE-2006-1094Proof of concept | SQL injection vulnerability in Datenbank MOD 2.7 and earlier for Woltlab Burning Board allows remote attackers to execute arbitrary SQL commwoltlab · burning board | Высокая7,5 | — | 2,4 % | 9 мар. 2006 г. |
31Наблюдать | CVE-2007-6518Proof of concept | Multiple SQL injection vulnerabilities in search.php in WoltLab Burning Board (wBB) Lite 1.0.2 pl3e allow remote attackers to execute arbitrwoltlab · burning board lite · CWE-89 | Высокая7,5 | — | 2,3 % | 24 дек. 2007 г. |
31Наблюдать | CVE-2002-0903Эксплойта нет | register.php for WoltLab Burning Board (wbboard) 1.1.1 uses a small number of random values for the "code" parameter that is provided to actwoltlab · burning board | Высокая7,5 | — | 1,8 % | 4 окт. 2002 г. |
30Наблюдать | CVE-2010-1338Proof of concept | SQL injection vulnerability in ts_other.php in the Teamsite Hack plugin 3.0 and earlier for WoltLab Burning Board allows remote attackers towoltlab · burning board · CWE-89 | Высокая7,5 | — | 1,6 % | 9 апр. 2010 г. |
30Наблюдать | CVE-2005-3369Proof of concept | Multiple SQL injection vulnerabilities in the Info-DB module (info_db.php) in Woltlab Burning Board 2.7 and earlier allow remote attackers twoltlab · burning board | Высокая7,5 | — | 1,3 % | 30 окт. 2005 г. |
30Наблюдать | CVE-2005-1642Proof of concept | SQL injection vulnerability in the verify_email function in Woltlab Burning Board 2.x and earlier allows remote attackers to execute arbitrawoltlab · burning board | Высокая7,5 | — | 1,3 % | 17 мая 2005 г. |
30Наблюдать | CVE-2007-0812Proof of concept | SQL injection vulnerability in pms.php in Woltlab Burning Board (wBB) Lite 1.0.2pl3e and earlier allows remote authenticated users to executwoltlab · burning board lite | Высокая7,5 | — | 1,3 % | 7 февр. 2007 г. |
30Наблюдать | CVE-2006-5509Proof of concept | Eval injection vulnerability in addentry.php in WoltLab Burning Book 1.1.2 allows remote attackers to execute arbitrary PHP code via craftedwoltlab · burning book | Высокая7,5 | — | 1,3 % | 25 окт. 2006 г. |
30Наблюдать | CVE-2006-2792Эксплойта нет | SQL injection vulnerability in misc.php in Woltlab Burning Board (WBB) 2.3.4 allows remote attackers to execute arbitrary SQL commands via twoltlab · burning board | Высокая7,5 | — | 1,2 % | 2 июн. 2006 г. |
30Наблюдать | CVE-2006-3218Эксплойта нет | SQL injection vulnerability in profile.php in Woltlab Burning Board (WBB) 2.1.6 allows remote attackers to execute arbitrary SQL commands viwoltlab · burning board | Высокая7,5 | — | 1,2 % | 24 июн. 2006 г. |
30Наблюдать | CVE-2006-3219Эксплойта нет | SQL injection vulnerability in thread.php in Woltlab Burning Board (WBB) 2.2.2 allows remote attackers to execute arbitrary SQL commands viawoltlab · burning board | Высокая7,5 | — | 1,2 % | 24 июн. 2006 г. |
30Наблюдать | CVE-2006-3220Эксплойта нет | SQL injection vulnerability in studienplatztausch.php in Woltlab Burning Board (WBB) 2.2.1 allows remote attackers to execute arbitrary SQL woltlab · burning board | Высокая7,5 | — | 1,2 % | 24 июн. 2006 г. |
30Наблюдать | CVE-2006-5029Эксплойта нет | SQL injection vulnerability in thread.php in WoltLab Burning Board (wBB) 2.3.x allows remote attackers to obtain the version numbers of PHP,woltlab · burning board | Высокая7,5 | — | 1,2 % | 27 сент. 2006 г. |
30Наблюдать | CVE-2006-2569Proof of concept | SQL injection vulnerability in links.php in 4R Linklist 1.0 RC2 and earlier, a module for Woltlab Burning Board, allows remote attackers to 4r linklist · 4r linklist | Высокая7,5 | — | 1,1 % | 24 мая 2006 г. |
30Наблюдать | CVE-2006-3256Proof of concept | SQL injection vulnerability in report.php in Woltlab Burning Board (WBB) 2.3.1 allows remote attackers to execute arbitrary SQL commands viawoltlab · burning board | Высокая7,5 | — | 1,1 % | 27 июн. 2006 г. |
30Наблюдать | CVE-2006-3254Proof of concept | SQL injection vulnerability in newthread.php in Woltlab Burning Board (WBB) 2.0 RC2 allows remote attackers to execute arbitrary SQL commandwoltlab · burning board | Высокая7,5 | — | 1,1 % | 27 июн. 2006 г. |
30Наблюдать | CVE-2006-3255Proof of concept | SQL injection vulnerability in showmods.php in Woltlab Burning Board (WBB) 1.2 allows remote attackers to execute arbitrary SQL commands viawoltlab · burning board | Высокая7,5 | — | 1,1 % | 27 июн. 2006 г. |
30Наблюдать | CVE-2005-0284Эксплойта нет | SQL injection vulnerability in addentry.php in Woltlab Burning Book 1.0 Gold, 1.1.1e, and possibly other versions, allows remote attackers twoltlab · burning book | Высокая7,5 | — | 1,1 % | 10 янв. 2005 г. |
30Наблюдать | CVE-2005-0661Эксплойта нет | SQL injection vulnerability in the getwbbuserdata function in session.php for Woltlab Burning Board 2.0.3 through 2.3.0 allows remote attackwoltlab · burning board | Высокая7,5 | — | 1,1 % | 2 мая 2005 г. |
30Наблюдать | CVE-2006-5508Proof of concept | Multiple SQL injection vulnerabilities in addentry.php in WoltLab Burning Book 1.1.2 allow remote attackers to execute arbitrary SQL commandwoltlab · burning book | Высокая7,5 | — | 1,1 % | 25 окт. 2006 г. |
30Наблюдать | CVE-2007-0388Proof of concept | SQL injection vulnerability in search.php in Woltlab Burning Board (wBB) 1.0.2 and earlier, and 2.3.6 and earlier in the 2.x series, allows woltlab · burning board | Высокая7,5 | — | 1,1 % | 19 янв. 2007 г. |
30Наблюдать | CVE-2005-2673Proof of concept | SQL injection vulnerability in modcp.php in WoltLab Burning Board 2.2.2 and 2.3.3 allows remote authenticated attackers to execute arbitrarywoltlab · burning board | Высокая7,5 | — | 1,1 % | 23 авг. 2005 г. |
30Наблюдать | CVE-2008-4627Proof of concept | SQL injection vulnerability in the rGallery plugin 1.09 for WoltLab Burning Board (WBB) allows remote attackers to execute arbitrary SQL comrgallery · rgallery plugin · CWE-89 | Высокая7,5 | — | 1,0 % | 20 окт. 2008 г. |
- CVE-2006-623731Наблюдать
SQL injection vulnerability in the decode_cookie function in thread.php in Woltlab Burning Board Lite 1.0.2 allows remote attackers to execu
ВысокаяCVSS 7,5Proof of conceptEPSS 3 %woltlab · burning board lite3 дек. 2006 г.
- CVE-2002-150531Наблюдать
SQL injection vulnerability in board.php for WoltLab Burning Board (wBB) 2.0 RC 1 and earlier allows remote attackers to modify the database
ВысокаяCVSS 7,5Proof of conceptEPSS 2 %woltlab · burning board2 апр. 2003 г.
- CVE-2006-109431Наблюдать
SQL injection vulnerability in Datenbank MOD 2.7 and earlier for Woltlab Burning Board allows remote attackers to execute arbitrary SQL comm
ВысокаяCVSS 7,5Proof of conceptEPSS 2 %woltlab · burning board9 мар. 2006 г.
- CVE-2007-651831Наблюдать
Multiple SQL injection vulnerabilities in search.php in WoltLab Burning Board (wBB) Lite 1.0.2 pl3e allow remote attackers to execute arbitr
ВысокаяCVSS 7,5Proof of conceptEPSS 2 %woltlab · burning board lite24 дек. 2007 г.
- CVE-2002-090331Наблюдать
register.php for WoltLab Burning Board (wbboard) 1.1.1 uses a small number of random values for the "code" parameter that is provided to act
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %woltlab · burning board4 окт. 2002 г.
- CVE-2010-133830Наблюдать
SQL injection vulnerability in ts_other.php in the Teamsite Hack plugin 3.0 and earlier for WoltLab Burning Board allows remote attackers to
ВысокаяCVSS 7,5Proof of conceptEPSS 2 %woltlab · burning board9 апр. 2010 г.
- CVE-2005-336930Наблюдать
Multiple SQL injection vulnerabilities in the Info-DB module (info_db.php) in Woltlab Burning Board 2.7 and earlier allow remote attackers t
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %woltlab · burning board30 окт. 2005 г.
- CVE-2005-164230Наблюдать
SQL injection vulnerability in the verify_email function in Woltlab Burning Board 2.x and earlier allows remote attackers to execute arbitra
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %woltlab · burning board17 мая 2005 г.
- CVE-2007-081230Наблюдать
SQL injection vulnerability in pms.php in Woltlab Burning Board (wBB) Lite 1.0.2pl3e and earlier allows remote authenticated users to execut
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %woltlab · burning board lite7 февр. 2007 г.
- CVE-2006-550930Наблюдать
Eval injection vulnerability in addentry.php in WoltLab Burning Book 1.1.2 allows remote attackers to execute arbitrary PHP code via crafted
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %woltlab · burning book25 окт. 2006 г.
- CVE-2006-279230Наблюдать
SQL injection vulnerability in misc.php in Woltlab Burning Board (WBB) 2.3.4 allows remote attackers to execute arbitrary SQL commands via t
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %woltlab · burning board2 июн. 2006 г.
- CVE-2006-321830Наблюдать
SQL injection vulnerability in profile.php in Woltlab Burning Board (WBB) 2.1.6 allows remote attackers to execute arbitrary SQL commands vi
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %woltlab · burning board24 июн. 2006 г.
- CVE-2006-321930Наблюдать
SQL injection vulnerability in thread.php in Woltlab Burning Board (WBB) 2.2.2 allows remote attackers to execute arbitrary SQL commands via
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %woltlab · burning board24 июн. 2006 г.
- CVE-2006-322030Наблюдать
SQL injection vulnerability in studienplatztausch.php in Woltlab Burning Board (WBB) 2.2.1 allows remote attackers to execute arbitrary SQL
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %woltlab · burning board24 июн. 2006 г.
- CVE-2006-502930Наблюдать
SQL injection vulnerability in thread.php in WoltLab Burning Board (wBB) 2.3.x allows remote attackers to obtain the version numbers of PHP,
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %woltlab · burning board27 сент. 2006 г.
- CVE-2006-256930Наблюдать
SQL injection vulnerability in links.php in 4R Linklist 1.0 RC2 and earlier, a module for Woltlab Burning Board, allows remote attackers to
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %4r linklist · 4r linklist24 мая 2006 г.
- CVE-2006-325630Наблюдать
SQL injection vulnerability in report.php in Woltlab Burning Board (WBB) 2.3.1 allows remote attackers to execute arbitrary SQL commands via
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %woltlab · burning board27 июн. 2006 г.
- CVE-2006-325430Наблюдать
SQL injection vulnerability in newthread.php in Woltlab Burning Board (WBB) 2.0 RC2 allows remote attackers to execute arbitrary SQL command
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %woltlab · burning board27 июн. 2006 г.
- CVE-2006-325530Наблюдать
SQL injection vulnerability in showmods.php in Woltlab Burning Board (WBB) 1.2 allows remote attackers to execute arbitrary SQL commands via
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %woltlab · burning board27 июн. 2006 г.
- CVE-2005-028430Наблюдать
SQL injection vulnerability in addentry.php in Woltlab Burning Book 1.0 Gold, 1.1.1e, and possibly other versions, allows remote attackers t
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %woltlab · burning book10 янв. 2005 г.
- CVE-2005-066130Наблюдать
SQL injection vulnerability in the getwbbuserdata function in session.php for Woltlab Burning Board 2.0.3 through 2.3.0 allows remote attack
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %woltlab · burning board2 мая 2005 г.
- CVE-2006-550830Наблюдать
Multiple SQL injection vulnerabilities in addentry.php in WoltLab Burning Book 1.1.2 allow remote attackers to execute arbitrary SQL command
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %woltlab · burning book25 окт. 2006 г.
- CVE-2007-038830Наблюдать
SQL injection vulnerability in search.php in Woltlab Burning Board (wBB) 1.0.2 and earlier, and 2.3.6 and earlier in the 2.x series, allows
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %woltlab · burning board19 янв. 2007 г.
- CVE-2005-267330Наблюдать
SQL injection vulnerability in modcp.php in WoltLab Burning Board 2.2.2 and 2.3.3 allows remote authenticated attackers to execute arbitrary
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %woltlab · burning board23 авг. 2005 г.
- CVE-2008-462730Наблюдать
SQL injection vulnerability in the rGallery plugin 1.09 for WoltLab Burning Board (WBB) allows remote attackers to execute arbitrary SQL com
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %rgallery · rgallery plugin20 окт. 2008 г.