İçeriğe atla
Noroxi

alstrasoft kayıtları

alstrasoft üreticisine ait 56 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
27
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

56 kayıt
  • CVE-2007-2776
    43Planlayın

    AlstraSoft Template Seller Pro 3.25 and earlier sends a redirect to the web browser but does not exit when administrative credentials are mi

    KritikCVSS 10,0Kavram kanıtıEPSS %9

    alstrasoft · template seller21 May 2007

  • CVE-2007-2775
    41Planlayın

    AlstraSoft Live Support 1.21 sends a redirect to the web browser but does not exit when administrative credentials are missing, which allows

    KritikCVSS 10,0Kavram kanıtıEPSS %5

    alstrasoft · live support21 May 2007

  • CVE-2007-2824
    41Planlayın

    SQL injection vulnerability in paypal.php in AlstraSoft E-Friends 4.21 and earlier allows remote attackers to execute arbitrary SQL commands

    KritikCVSS 10,0Kavram kanıtıEPSS %2

    alstrasoft · e-friends22 May 2007

  • CVE-2008-5649
    41Planlayın

    SQL injection vulnerability in admin/admin.php in AlstraSoft Article Manager Pro 1.6 allows remote attackers to execute arbitrary SQL comman

    KritikCVSS 10,0Kavram kanıtıEPSS %2

    alstrasoft · article manager pro17 Ara 2008

  • CVE-2006-4913
    33İzleyin

    Directory traversal vulnerability in chat/getStartOptions.php in AlstraSoft E-friends 4.85 allows remote attackers to include arbitrary loca

    YüksekCVSS 7,5Kavram kanıtıEPSS %10

    alstrasoft · e-friends20 Eyl 2006

  • CVE-2007-2777
    32İzleyin

    Unrestricted file upload vulnerability in admin/addsptemplate.php in AlstraSoft Template Seller Pro 3.25 and earlier allows remote attackers

    YüksekCVSS 7,5Kavram kanıtıEPSS %6

    alstrasoft · template seller21 May 2007

  • CVE-2008-6932
    31İzleyin

    Unrestricted file upload vulnerability in submit_file.php in AlstraSoft SendIt Pro allows remote attackers to execute arbitrary code by uplo

    YüksekCVSS 7,5Kavram kanıtıEPSS %5

    alstrasoft · sendit11 Ağu 2009

  • CVE-2005-3797
    31İzleyin

    PHP remote file inclusion vulnerability in payment_paypal.php in AlstraSoft Template Seller Pro 3.25 allows remote attackers to execute arbi

    YüksekCVSS 7,5Kavram kanıtıEPSS %4

    alstrasoft · template seller24 Kas 2005

  • CVE-2005-0980
    31İzleyin

    PHP remote file inclusion vulnerability in index.php in AlstraSoft EPay Pro 2.0 allows remote attackers to execute arbitrary PHP code by mod

    YüksekCVSS 7,5Kavram kanıtıEPSS %3

    alstrasoft · epay2 May 2005

  • CVE-2006-4443
    31İzleyin

    PHP remote file inclusion vulnerability in myajaxphp.php in AlstraSoft Video Share Enterprise allows remote attackers to execute arbitrary P

    YüksekCVSS 7,5Kavram kanıtıEPSS %3

    alstrasoft · video share enterprise29 Ağu 2006

  • CVE-2006-4591
    31İzleyin

    Multiple PHP remote file inclusion vulnerabilities in AlstraSoft Template Seller, and possibly AltraSoft Template Seller Pro 3.25, allow rem

    YüksekCVSS 7,5Kavram kanıtıEPSS %3

    alstrasoft · template seller6 Eyl 2006

  • CVE-2008-3240
    31İzleyin

    SQL injection vulnerability in index.php in AlstraSoft Affiliate Network Pro allows remote attackers to execute arbitrary SQL commands via t

    YüksekCVSS 7,5Kavram kanıtıEPSS %2

    alstrasoft · affiliate network pro21 Tem 2008

  • CVE-2007-2017
    31İzleyin

    siteadmin/useredit.php in AlstraSoft Video Share Enterprise does not check authentication, which allows remote attackers to obtain or modify

    YüksekCVSS 7,5İstismar yokEPSS %2

    alstrasoft · video share enterprise12 Nis 2007

  • CVE-2005-3062
    31İzleyin

    PHP remote file inclusion vulnerability in index.php in AlstraSoft E-Friends 4.0 allows remote attackers to execute arbitrary PHP code via t

    YüksekCVSS 7,5İstismar yokEPSS %2

    alstrasoft · e-friends27 Eyl 2005

  • CVE-2006-6818
    30İzleyin

    AlstraSoft Web Host Directory allows remote attackers to bypass authentication and change the admin password via a direct request to admin/c

    YüksekCVSS 7,5İstismar yokEPSS %2

    alstrasoft · webhost directory29 Ara 2006

  • CVE-2005-3796
    30İzleyin

    Direct static code injection vulnerability in admin_options_manage.php in AlstraSoft Affiliate Network Pro 7.2 allows attackers to execute a

    YüksekCVSS 7,5İstismar yokEPSS %2

    alstrasoft · affiliate network pro24 Kas 2005

  • CVE-2005-3793
    30İzleyin

    Multiple SQL injection vulnerabilities in AlstraSoft Affiliate Network Pro 7.2 allow remote attackers to bypass authentication and execute a

    YüksekCVSS 7,5İstismar yokEPSS %1

    alstrasoft · affiliate network pro24 Kas 2005

  • CVE-2005-3798
    30İzleyin

    SQL injection vulnerability in admin/index.php in AlstraSoft Template Seller Pro 3.25 allows remote attackers to execute arbitrary SQL comma

    YüksekCVSS 7,5İstismar yokEPSS %1

    alstrasoft · template seller24 Kas 2005

  • CVE-2006-2616
    30İzleyin

    SQL injection vulnerability in the search script in (1) AlstraSoft Web Host Directory 1.2, aka (2) HyperStop WebHost Directory 1.2, allows r

    YüksekCVSS 7,5İstismar yokEPSS %1

    alstrasoft · webhost directory25 May 2006

  • CVE-2007-6106
    30İzleyin

    SQL injection vulnerability in index.php in AlstraSoft E-Friends 4.98 and earlier allows remote attackers to execute arbitrary SQL commands

    YüksekCVSS 7,5Kavram kanıtıEPSS %1

    alstrasoft · e-friends23 Kas 2007

  • CVE-2006-2565
    30İzleyin

    SQL injection vulnerability in Alstrasoft Article Manager Pro 1.6 allows remote attackers to execute arbitrary SQL commands via (1) the auth

    YüksekCVSS 7,5İstismar yokEPSS %1

    alstrasoft · article manager pro24 May 2006

  • CVE-2008-3954
    30İzleyin

    SQL injection vulnerability in index.php in AlstraSoft Forum Pay Per Post Exchange allows remote attackers to execute arbitrary SQL commands

    YüksekCVSS 7,5Kavram kanıtıEPSS %1

    alstrasoft · forum pay per post exchange10 Eyl 2008

  • CVE-2008-0429
    30İzleyin

    SQL injection vulnerability in index.php in AlstraSoft Forum Pay Per Post Exchange 2.0 allows remote attackers to execute arbitrary SQL comm

    YüksekCVSS 7,5Kavram kanıtıEPSS %1

    alstrasoft · forum pay per post exchange23 Oca 2008

  • CVE-2008-5650
    30İzleyin

    SQL injection vulnerability in the login directory in AlstraSoft Web Host Directory allows remote attackers to execute arbitrary SQL command

    YüksekCVSS 7,5Kavram kanıtıEPSS %1

    alstrasoft · webhost directory17 Ara 2008

  • CVE-2008-3386
    30İzleyin

    SQL injection vulnerability in album.php in AlstraSoft Video Share Enterprise 4.51 allows remote attackers to execute arbitrary SQL commands

    YüksekCVSS 7,5Kavram kanıtıEPSS %1

    alstrasoft · video share enterprise30 Tem 2008