articlecms project kayıtları
articlecms project üreticisine ait 4 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-434 Unrestricted Upload of File with Dangerous Type2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
4 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2020-20092İstismar yok | File Upload vulnerability exists in ArticleCMS 1.0 via the image upload feature at /admin by changing the Content-Type to image/jpeg and plaarticlecms project · articlecms · CWE-434 | Kritik9,8 | — | %1,3 | 13 May 2021 |
39İzleyin | CVE-2020-28063İstismar yok | A file upload issue exists in all versions of ArticleCMS which allows malicious users to getshell.articlecms project · articlecms · CWE-434 | Kritik9,8 | — | %1,3 | 13 May 2021 |
24İzleyin | CVE-2018-19469İstismar yok | ArticleCMS through 2017-02-19 has XSS via the /update_personal_infomation realname or email parameter.articlecms project · articlecms · CWE-79 | Orta6,1 | — | %0,6 | 23 Kas 2018 |
21İzleyin | CVE-2018-12339İstismar yok | ArticleCMS through 2017-02-19 has XSS via an "add an article" action.articlecms project · articlecms · CWE-79 | Orta5,4 | — | %0,5 | 13 Haz 2018 |
- CVE-2020-2009239İzleyin
File Upload vulnerability exists in ArticleCMS 1.0 via the image upload feature at /admin by changing the Content-Type to image/jpeg and pla
KritikCVSS 9,8İstismar yokEPSS %1articlecms project · articlecms13 May 2021
- CVE-2020-2806339İzleyin
A file upload issue exists in all versions of ArticleCMS which allows malicious users to getshell.
KritikCVSS 9,8İstismar yokEPSS %1articlecms project · articlecms13 May 2021
- CVE-2018-1946924İzleyin
ArticleCMS through 2017-02-19 has XSS via the /update_personal_infomation realname or email parameter.
OrtaCVSS 6,1İstismar yokEPSS %1articlecms project · articlecms23 Kas 2018
- CVE-2018-1233921İzleyin
ArticleCMS through 2017-02-19 has XSS via an "add an article" action.
OrtaCVSS 5,4İstismar yokEPSS %0articlecms project · articlecms13 Haz 2018