anantasoft kayıtları
anantasoft üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-255 Credentials Management Errors1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2009-3180Kavram kanıtı | Anantasoft Gazelle CMS 1.0 allows remote attackers to conduct a password reset for other users via a modified user parameter to renew.php.anantasoft · gazelle cms · CWE-255 | Yüksek7,5 | — | %2,1 | 11 Eyl 2009 |
28İzleyin | CVE-2009-3182Kavram kanıtı | Unrestricted file upload vulnerability in admin/editor/filemanager/browser.html in Anantasoft Gazelle CMS 1.0 allows remote attackers to exeanantasoft · gazelle cms · CWE-264 | Orta6,8 | — | %3,3 | 11 Eyl 2009 |
28İzleyin | CVE-2008-6665Kavram kanıtı | change.php in Ananta CMS 1.0b5, with magic_quotes_gpc disabled, allows remote attackers to gain administrator privileges via a crafted emailanantasoft · ananta cms · CWE-94 | Orta6,8 | — | %1,8 | 8 Nis 2009 |
21İzleyin | CVE-2009-3181Kavram kanıtı | Directory traversal vulnerability in Anantasoft Gazelle CMS 1.0 allows remote attackers to overwrite arbitrary files via a ..anantasoft · gazelle cms · CWE-22 | Orta5,0 | — | %2,0 | 11 Eyl 2009 |
20İzleyin | CVE-2011-3702İstismar yok | Ananta Gazelle 1.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installatianantasoft · ananta gazelle · CWE-200 | Orta5,0 | — | %1,3 | 23 Eyl 2011 |
18İzleyin | CVE-2009-3167Kavram kanıtı | Directory traversal vulnerability in index.php in Anantasoft Gazelle CMS 1.0, when magic_quotes_gpc is disabled, allows remote attackers to anantasoft · gazelle cms · CWE-22 | Orta4,3 | — | %2,3 | 11 Eyl 2009 |
17İzleyin | CVE-2009-3171Kavram kanıtı | Multiple cross-site scripting (XSS) vulnerabilities in Anantasoft Gazelle CMS 1.0 and earlier allow remote attackers to inject arbitrary webanantasoft · gazelle cms · CWE-79 | Orta4,3 | — | %1,5 | 11 Eyl 2009 |
- CVE-2009-318031İzleyin
Anantasoft Gazelle CMS 1.0 allows remote attackers to conduct a password reset for other users via a modified user parameter to renew.php.
YüksekCVSS 7,5Kavram kanıtıEPSS %2anantasoft · gazelle cms11 Eyl 2009
- CVE-2009-318228İzleyin
Unrestricted file upload vulnerability in admin/editor/filemanager/browser.html in Anantasoft Gazelle CMS 1.0 allows remote attackers to exe
OrtaCVSS 6,8Kavram kanıtıEPSS %3anantasoft · gazelle cms11 Eyl 2009
- CVE-2008-666528İzleyin
change.php in Ananta CMS 1.0b5, with magic_quotes_gpc disabled, allows remote attackers to gain administrator privileges via a crafted email
OrtaCVSS 6,8Kavram kanıtıEPSS %2anantasoft · ananta cms8 Nis 2009
- CVE-2009-318121İzleyin
Directory traversal vulnerability in Anantasoft Gazelle CMS 1.0 allows remote attackers to overwrite arbitrary files via a ..
OrtaCVSS 5,0Kavram kanıtıEPSS %2anantasoft · gazelle cms11 Eyl 2009
- CVE-2011-370220İzleyin
Ananta Gazelle 1.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installati
OrtaCVSS 5,0İstismar yokEPSS %1anantasoft · ananta gazelle23 Eyl 2011
- CVE-2009-316718İzleyin
Directory traversal vulnerability in index.php in Anantasoft Gazelle CMS 1.0, when magic_quotes_gpc is disabled, allows remote attackers to
OrtaCVSS 4,3Kavram kanıtıEPSS %2anantasoft · gazelle cms11 Eyl 2009
- CVE-2009-317117İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in Anantasoft Gazelle CMS 1.0 and earlier allow remote attackers to inject arbitrary web
OrtaCVSS 4,3Kavram kanıtıEPSS %2anantasoft · gazelle cms11 Eyl 2009