archibus kayıtları
archibus üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-284 Improper Access Control2
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-384 Session Fixation1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-862 Missing Authorization1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2021-41553İstismar yok | In ARCHIBUS Web Central 21.3.3.815 (a version from 2014), the Web Application in /archibus/login.axvw assign a session token that could be aarchibus · web central · CWE-384 | Kritik9,8 | — | %1,2 | 5 Eki 2021 |
39İzleyin | CVE-2022-28862İstismar yok | In Archibus Web Central before 26.2, multiple SQL Injection vulnerabilities occur in dwr/call/plaincall/workflow.runWorkflowRule.dwr.archibus · web central · CWE-89 | Kritik9,8 | — | %1,0 | 25 May 2022 |
35İzleyin | CVE-2021-41554İstismar yok | ARCHIBUS Web Central 21.3.3.815 (a version from 2014) does not properly validate requests for access to data and functionality in these affearchibus · web central · CWE-862 | Yüksek8,8 | — | %0,9 | 5 Eki 2021 |
35İzleyin | CVE-2022-45165İstismar yok | An issue was discovered in Archibus Web Central 2022.03.01.107.archibus · web central · CWE-89 | Yüksek8,8 | — | %0,6 | 10 Oca 2023 |
24İzleyin | CVE-2021-41555İstismar yok | In ARCHIBUS Web Central 21.3.3.815 (a version from 2014), XSS occurs in /archibus/dwr/call/plaincall/workflow.runWorkflowRule.dwr because tharchibus · web central · CWE-79 | Orta6,1 | — | %0,8 | 5 Eki 2021 |
17İzleyin | CVE-2022-45166İstismar yok | An issue was discovered in Archibus Web Central 2022.03.01.107.archibus · archibus web central · CWE-284 | Orta4,3 | — | %0,5 | 10 Oca 2023 |
17İzleyin | CVE-2022-45167İstismar yok | An issue was discovered in Archibus Web Central 2022.03.01.107.archibus · archibus web central · CWE-200 | Orta4,3 | — | %0,5 | 10 Oca 2023 |
17İzleyin | CVE-2022-45164İstismar yok | An issue was discovered in Archibus Web Central 2022.03.01.107.archibus · archibus web central · CWE-284 | Orta4,3 | — | %0,4 | 10 Oca 2023 |
- CVE-2021-4155339İzleyin
In ARCHIBUS Web Central 21.3.3.815 (a version from 2014), the Web Application in /archibus/login.axvw assign a session token that could be a
KritikCVSS 9,8İstismar yokEPSS %1archibus · web central5 Eki 2021
- CVE-2022-2886239İzleyin
In Archibus Web Central before 26.2, multiple SQL Injection vulnerabilities occur in dwr/call/plaincall/workflow.runWorkflowRule.dwr.
KritikCVSS 9,8İstismar yokEPSS %1archibus · web central25 May 2022
- CVE-2021-4155435İzleyin
ARCHIBUS Web Central 21.3.3.815 (a version from 2014) does not properly validate requests for access to data and functionality in these affe
YüksekCVSS 8,8İstismar yokEPSS %1archibus · web central5 Eki 2021
- CVE-2022-4516535İzleyin
An issue was discovered in Archibus Web Central 2022.03.01.107.
YüksekCVSS 8,8İstismar yokEPSS %1archibus · web central10 Oca 2023
- CVE-2021-4155524İzleyin
In ARCHIBUS Web Central 21.3.3.815 (a version from 2014), XSS occurs in /archibus/dwr/call/plaincall/workflow.runWorkflowRule.dwr because th
OrtaCVSS 6,1İstismar yokEPSS %1archibus · web central5 Eki 2021
- CVE-2022-4516617İzleyin
An issue was discovered in Archibus Web Central 2022.03.01.107.
OrtaCVSS 4,3İstismar yokEPSS %0archibus · archibus web central10 Oca 2023
- CVE-2022-4516717İzleyin
An issue was discovered in Archibus Web Central 2022.03.01.107.
OrtaCVSS 4,3İstismar yokEPSS %0archibus · archibus web central10 Oca 2023
- CVE-2022-4516417İzleyin
An issue was discovered in Archibus Web Central 2022.03.01.107.
OrtaCVSS 4,3İstismar yokEPSS %0archibus · archibus web central10 Oca 2023