İçeriğe atla
Noroxi

asp-nuke kayıtları

asp-nuke üreticisine ait 13 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
3
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Yıllara göre kayıt

    Çubuk: toplam · koyu kısım: CISA KEV.

    Tekrar eden sınıflar

      Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.

      CWE

      Tüm kayıtlar

      13 kayıt
      • CVE-2006-7152
        35İzleyin

        default.asp in ASP-Nuke Community 1.5 and earlier allows remote attackers to gain privileges by setting certain pseudo cookie values.

        YüksekCVSS 8,5Kavram kanıtıEPSS %2

        asp-nuke · asp-nuke7 Mar 2007

      • CVE-2002-0522
        30İzleyin

        ASP-Nuke RC2 and earlier allows remote attackers to bypass authentication and gain privileges by modifying the "pseudo" cookie.

        YüksekCVSS 7,5İstismar yokEPSS %2

        asp-nuke · asp-nuke12 Ağu 2002

      • CVE-2002-0520
        30İzleyin

        Cross-site scripting vulnerability in functions-inc.asp for ASP-Nuke RC1 allows remote attackers to execute script as other ASP-Nuke users b

        YüksekCVSS 7,5İstismar yokEPSS %2

        asp-nuke · asp-nuke12 Ağu 2002

      • CVE-2005-2066
        30İzleyin

        SQL injection vulnerability in comment_post.asp in ASP Nuke 0.80 allows remote attackers to execute arbitrary SQL statements via the TaskID

        YüksekCVSS 7,5Kavram kanıtıEPSS %1

        asp-nuke · asp-nuke29 Haz 2005

      • CVE-2005-2067
        30İzleyin

        SQL injection vulnerability in article.asp in unknown versions of aspnuke allows remote attackers to execute arbitrary SQL commands via the

        YüksekCVSS 7,5Kavram kanıtıEPSS %1

        asp-nuke · asp-nuke29 Haz 2005

      • CVE-2006-6070
        30İzleyin

        SQL injection vulnerability in module/account/register/register.asp in ASP Nuke 0.80 and earlier allows remote attackers to execute arbitrar

        YüksekCVSS 7,5Kavram kanıtıEPSS %1

        asp-nuke · asp-nuke21 Kas 2006

      • CVE-2004-1788
        21İzleyin

        ASP-Nuke 1.3 and earlier places user credentials under the web document root with insufficient access control, which allows remote attackers

        OrtaCVSS 5,0Kavram kanıtıEPSS %3

        asp-nuke · asp-nuke31 Ara 2004

      • CVE-2002-0521
        21İzleyin

        Cross-site scripting vulnerabilities in ASP-Nuke RC2 and earlier allow remote attackers to execute script or gain privileges as other ASP-Nu

        OrtaCVSS 5,1İstismar yokEPSS %2

        asp-nuke · asp-nuke12 Ağu 2002

      • CVE-2005-2064
        21İzleyin

        Multiple cross-site scripting vulnerabilities in ASP Nuke 0.80 allow remote attackers to inject arbitrary web script or HTML via the (1) ema

        OrtaCVSS 5,0Kavram kanıtıEPSS %2

        asp-nuke · asp-nuke29 Haz 2005

      • CVE-2002-0524
        21İzleyin

        ASP-Nuke RC2 and earlier allows remote attackers to determine the absolute path of the server by (1) calling database-inc.asp with incorrect

        OrtaCVSS 5,0İstismar yokEPSS %2

        asp-nuke · asp-nuke12 Ağu 2002

      • CVE-2002-0523
        21İzleyin

        ASP-Nuke RC2 and earlier allows remote attackers to list all logged-in users by submitting an invalid "pseudo" cookie.

        OrtaCVSS 5,0İstismar yokEPSS %2

        asp-nuke · asp-nuke12 Ağu 2002

      • CVE-2005-2065
        21İzleyin

        HTTP response splitting vulnerability in language_select.asp in ASP Nuke 0.80 allows remote attackers to spoof web content and poison web ca

        OrtaCVSS 5,0Kavram kanıtıEPSS %2

        asp-nuke · asp-nuke29 Haz 2005

      • CVE-2007-2892
        17İzleyin

        Cross-site scripting (XSS) vulnerability in news.asp in ASP-Nuke 2.0.7 allows remote attackers to inject arbitrary web script or HTML via th

        OrtaCVSS 4,3Kavram kanıtıEPSS %1

        asp-nuke · asp-nuke29 May 2007