appcms kayıtları
appcms üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
26İzleyin | CVE-2020-36005İstismar yok | AppCMS 2.0.101 in /admin/app.php has an arbitrary file deletion vulnerability which allows attackers to delete arbitrary files on the site.appcms · appcms | Orta6,5 | — | %1,1 | 3 Haz 2021 |
26İzleyin | CVE-2020-36006İstismar yok | AppCMS 2.0.101 in /admin/info.php has an arbitrary file deletion vulnerability which allows attackers to delete arbitrary files on the site.appcms · appcms | Orta6,5 | — | %1,1 | 3 Haz 2021 |
26İzleyin | CVE-2020-36004İstismar yok | AppCMS 2.0.101 in /admin/download_frame.php has a SQL injection vulnerability which allows attackers to obtain sensitive database informatioappcms · appcms · CWE-89 | Orta6,5 | — | %0,9 | 3 Haz 2021 |
25İzleyin | CVE-2021-45380Kavram kanıtı | AppCMS 2.0.101 has a XSS injection vulnerability in \templates\m\inc_head.phpappcms · appcms · CWE-79 | Orta6,1 | — | %2,5 | 23 Oca 2022 |
24İzleyin | CVE-2020-36007İstismar yok | AppCMS 2.0.101 in /admin/template/tpl_app.php has a cross site scripting attack vulnerability which allows the attacker to obtain sensitive appcms · appcms · CWE-79 | Orta6,1 | — | %0,9 | 3 Haz 2021 |
24İzleyin | CVE-2019-9595İstismar yok | AppCMS 2.0.101 allows XSS via the upload/callback.php params parameter.appcms · appcms · CWE-79 | Orta6,1 | — | %0,8 | 6 Mar 2019 |
- CVE-2020-3600526İzleyin
AppCMS 2.0.101 in /admin/app.php has an arbitrary file deletion vulnerability which allows attackers to delete arbitrary files on the site.
OrtaCVSS 6,5İstismar yokEPSS %1appcms · appcms3 Haz 2021
- CVE-2020-3600626İzleyin
AppCMS 2.0.101 in /admin/info.php has an arbitrary file deletion vulnerability which allows attackers to delete arbitrary files on the site.
OrtaCVSS 6,5İstismar yokEPSS %1appcms · appcms3 Haz 2021
- CVE-2020-3600426İzleyin
AppCMS 2.0.101 in /admin/download_frame.php has a SQL injection vulnerability which allows attackers to obtain sensitive database informatio
OrtaCVSS 6,5İstismar yokEPSS %1appcms · appcms3 Haz 2021
- CVE-2021-4538025İzleyin
AppCMS 2.0.101 has a XSS injection vulnerability in \templates\m\inc_head.php
OrtaCVSS 6,1Kavram kanıtıEPSS %3appcms · appcms23 Oca 2022
- CVE-2020-3600724İzleyin
AppCMS 2.0.101 in /admin/template/tpl_app.php has a cross site scripting attack vulnerability which allows the attacker to obtain sensitive
OrtaCVSS 6,1İstismar yokEPSS %1appcms · appcms3 Haz 2021
- CVE-2019-959524İzleyin
AppCMS 2.0.101 allows XSS via the upload/callback.php params parameter.
OrtaCVSS 6,1İstismar yokEPSS %1appcms · appcms6 Mar 2019