Записи Zomplog
8 опубликованных записей вендора zomplog.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
8 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
32Наблюдать | CVE-2007-2157Proof of concept | Directory traversal vulnerability in upload/force_download.php in Zomplog 3.8 allows remote attackers to read arbitrary files via a ..zomplog · zomplog | Высокая7,8 | — | 3,5 % | 19 апр. 2007 г. |
31Наблюдать | CVE-2007-5230Proof of concept | admin/upload_files.php in Zomplog 3.8.1 and earlier does not check for administrative credentials, which allows remote attackers to perform zomplog · zomplog · CWE-264 | Высокая7,5 | — | 4,7 % | 5 окт. 2007 г. |
31Наблюдать | CVE-2007-2773Proof of concept | SQL injection vulnerability in plugins/mp3playlist/mp3playlist.php in Zomplog 3.8 and earlier allows remote attackers to execute arbitrary Szomplog · zomplog | Высокая7,5 | — | 2,2 % | 21 мая 2007 г. |
30Наблюдать | CVE-2005-3309Эксплойта нет | Multiple SQL injection vulnerabilities in Zomplog 3.4 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in dzomplog · zomplog | Высокая7,5 | — | 1,5 % | 25 окт. 2005 г. |
21Наблюдать | CVE-2007-1524Proof of concept | Directory traversal vulnerability in themes/default/ in ZomPlog 3.7.6 and earlier allows remote attackers to include arbitrary local files vzomplog · zomplog | Средняя5,0 | — | 3,2 % | 20 мар. 2007 г. |
19Наблюдать | CVE-2007-5231Proof of concept | Unrestricted file upload vulnerability in admin/upload_files.php in Zomplog 3.8.1 and earlier allows remote authenticated administrators to zomplog · zomplog · CWE-20 | Средняя4,6 | — | 1,9 % | 5 окт. 2007 г. |
18Наблюдать | CVE-2005-3308Proof of concept | Multiple cross-site scripting (XSS) vulnerabilities in Zomplog 3.4 allow remote attackers to inject arbitrary web script or HTML via the (1)zomplog · zomplog | Средняя4,3 | — | 2,1 % | 25 окт. 2005 г. |
18Наблюдать | CVE-2007-5278Proof of concept | Zomplog 3.8.1 and earlier stores potentially sensitive information under the web root with insufficient access control, which allows remote zomplog · zomplog · CWE-264 | Средняя4,3 | — | 2,0 % | 8 окт. 2007 г. |
- CVE-2007-215732Наблюдать
Directory traversal vulnerability in upload/force_download.php in Zomplog 3.8 allows remote attackers to read arbitrary files via a ..
ВысокаяCVSS 7,8Proof of conceptEPSS 4 %zomplog · zomplog19 апр. 2007 г.
- CVE-2007-523031Наблюдать
admin/upload_files.php in Zomplog 3.8.1 and earlier does not check for administrative credentials, which allows remote attackers to perform
ВысокаяCVSS 7,5Proof of conceptEPSS 5 %zomplog · zomplog5 окт. 2007 г.
- CVE-2007-277331Наблюдать
SQL injection vulnerability in plugins/mp3playlist/mp3playlist.php in Zomplog 3.8 and earlier allows remote attackers to execute arbitrary S
ВысокаяCVSS 7,5Proof of conceptEPSS 2 %zomplog · zomplog21 мая 2007 г.
- CVE-2005-330930Наблюдать
Multiple SQL injection vulnerabilities in Zomplog 3.4 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in d
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %zomplog · zomplog25 окт. 2005 г.
- CVE-2007-152421Наблюдать
Directory traversal vulnerability in themes/default/ in ZomPlog 3.7.6 and earlier allows remote attackers to include arbitrary local files v
СредняяCVSS 5,0Proof of conceptEPSS 3 %zomplog · zomplog20 мар. 2007 г.
- CVE-2007-523119Наблюдать
Unrestricted file upload vulnerability in admin/upload_files.php in Zomplog 3.8.1 and earlier allows remote authenticated administrators to
СредняяCVSS 4,6Proof of conceptEPSS 2 %zomplog · zomplog5 окт. 2007 г.
- CVE-2005-330818Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in Zomplog 3.4 allow remote attackers to inject arbitrary web script or HTML via the (1)
СредняяCVSS 4,3Proof of conceptEPSS 2 %zomplog · zomplog25 окт. 2005 г.
- CVE-2007-527818Наблюдать
Zomplog 3.8.1 and earlier stores potentially sensitive information under the web root with insufficient access control, which allows remote
СредняяCVSS 4,3Proof of conceptEPSS 2 %zomplog · zomplog8 окт. 2007 г.