asp-nuke kayıtları
asp-nuke üreticisine ait 13 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 3
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tüm kayıtlar
13 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
35İzleyin | CVE-2006-7152Kavram kanıtı | default.asp in ASP-Nuke Community 1.5 and earlier allows remote attackers to gain privileges by setting certain pseudo cookie values.asp-nuke · asp-nuke | Yüksek8,5 | — | %2,5 | 7 Mar 2007 |
30İzleyin | CVE-2002-0522İstismar yok | ASP-Nuke RC2 and earlier allows remote attackers to bypass authentication and gain privileges by modifying the "pseudo" cookie.asp-nuke · asp-nuke | Yüksek7,5 | — | %1,6 | 12 Ağu 2002 |
30İzleyin | CVE-2002-0520İstismar yok | Cross-site scripting vulnerability in functions-inc.asp for ASP-Nuke RC1 allows remote attackers to execute script as other ASP-Nuke users basp-nuke · asp-nuke | Yüksek7,5 | — | %1,6 | 12 Ağu 2002 |
30İzleyin | CVE-2005-2066Kavram kanıtı | SQL injection vulnerability in comment_post.asp in ASP Nuke 0.80 allows remote attackers to execute arbitrary SQL statements via the TaskID asp-nuke · asp-nuke | Yüksek7,5 | — | %1,1 | 29 Haz 2005 |
30İzleyin | CVE-2005-2067Kavram kanıtı | SQL injection vulnerability in article.asp in unknown versions of aspnuke allows remote attackers to execute arbitrary SQL commands via the asp-nuke · asp-nuke | Yüksek7,5 | — | %1,1 | 29 Haz 2005 |
30İzleyin | CVE-2006-6070Kavram kanıtı | SQL injection vulnerability in module/account/register/register.asp in ASP Nuke 0.80 and earlier allows remote attackers to execute arbitrarasp-nuke · asp-nuke | Yüksek7,5 | — | %1,1 | 21 Kas 2006 |
21İzleyin | CVE-2004-1788Kavram kanıtı | ASP-Nuke 1.3 and earlier places user credentials under the web document root with insufficient access control, which allows remote attackersasp-nuke · asp-nuke | Orta5,0 | — | %2,7 | 31 Ara 2004 |
21İzleyin | CVE-2002-0521İstismar yok | Cross-site scripting vulnerabilities in ASP-Nuke RC2 and earlier allow remote attackers to execute script or gain privileges as other ASP-Nuasp-nuke · asp-nuke | Orta5,1 | — | %2,3 | 12 Ağu 2002 |
21İzleyin | CVE-2005-2064Kavram kanıtı | Multiple cross-site scripting vulnerabilities in ASP Nuke 0.80 allow remote attackers to inject arbitrary web script or HTML via the (1) emaasp-nuke · asp-nuke | Orta5,0 | — | %2,0 | 29 Haz 2005 |
21İzleyin | CVE-2002-0524İstismar yok | ASP-Nuke RC2 and earlier allows remote attackers to determine the absolute path of the server by (1) calling database-inc.asp with incorrectasp-nuke · asp-nuke | Orta5,0 | — | %1,9 | 12 Ağu 2002 |
21İzleyin | CVE-2002-0523İstismar yok | ASP-Nuke RC2 and earlier allows remote attackers to list all logged-in users by submitting an invalid "pseudo" cookie.asp-nuke · asp-nuke | Orta5,0 | — | %1,9 | 12 Ağu 2002 |
21İzleyin | CVE-2005-2065Kavram kanıtı | HTTP response splitting vulnerability in language_select.asp in ASP Nuke 0.80 allows remote attackers to spoof web content and poison web caasp-nuke · asp-nuke | Orta5,0 | — | %1,9 | 29 Haz 2005 |
17İzleyin | CVE-2007-2892Kavram kanıtı | Cross-site scripting (XSS) vulnerability in news.asp in ASP-Nuke 2.0.7 allows remote attackers to inject arbitrary web script or HTML via thasp-nuke · asp-nuke | Orta4,3 | — | %1,5 | 29 May 2007 |
- CVE-2006-715235İzleyin
default.asp in ASP-Nuke Community 1.5 and earlier allows remote attackers to gain privileges by setting certain pseudo cookie values.
YüksekCVSS 8,5Kavram kanıtıEPSS %2asp-nuke · asp-nuke7 Mar 2007
- CVE-2002-052230İzleyin
ASP-Nuke RC2 and earlier allows remote attackers to bypass authentication and gain privileges by modifying the "pseudo" cookie.
YüksekCVSS 7,5İstismar yokEPSS %2asp-nuke · asp-nuke12 Ağu 2002
- CVE-2002-052030İzleyin
Cross-site scripting vulnerability in functions-inc.asp for ASP-Nuke RC1 allows remote attackers to execute script as other ASP-Nuke users b
YüksekCVSS 7,5İstismar yokEPSS %2asp-nuke · asp-nuke12 Ağu 2002
- CVE-2005-206630İzleyin
SQL injection vulnerability in comment_post.asp in ASP Nuke 0.80 allows remote attackers to execute arbitrary SQL statements via the TaskID
YüksekCVSS 7,5Kavram kanıtıEPSS %1asp-nuke · asp-nuke29 Haz 2005
- CVE-2005-206730İzleyin
SQL injection vulnerability in article.asp in unknown versions of aspnuke allows remote attackers to execute arbitrary SQL commands via the
YüksekCVSS 7,5Kavram kanıtıEPSS %1asp-nuke · asp-nuke29 Haz 2005
- CVE-2006-607030İzleyin
SQL injection vulnerability in module/account/register/register.asp in ASP Nuke 0.80 and earlier allows remote attackers to execute arbitrar
YüksekCVSS 7,5Kavram kanıtıEPSS %1asp-nuke · asp-nuke21 Kas 2006
- CVE-2004-178821İzleyin
ASP-Nuke 1.3 and earlier places user credentials under the web document root with insufficient access control, which allows remote attackers
OrtaCVSS 5,0Kavram kanıtıEPSS %3asp-nuke · asp-nuke31 Ara 2004
- CVE-2002-052121İzleyin
Cross-site scripting vulnerabilities in ASP-Nuke RC2 and earlier allow remote attackers to execute script or gain privileges as other ASP-Nu
OrtaCVSS 5,1İstismar yokEPSS %2asp-nuke · asp-nuke12 Ağu 2002
- CVE-2005-206421İzleyin
Multiple cross-site scripting vulnerabilities in ASP Nuke 0.80 allow remote attackers to inject arbitrary web script or HTML via the (1) ema
OrtaCVSS 5,0Kavram kanıtıEPSS %2asp-nuke · asp-nuke29 Haz 2005
- CVE-2002-052421İzleyin
ASP-Nuke RC2 and earlier allows remote attackers to determine the absolute path of the server by (1) calling database-inc.asp with incorrect
OrtaCVSS 5,0İstismar yokEPSS %2asp-nuke · asp-nuke12 Ağu 2002
- CVE-2002-052321İzleyin
ASP-Nuke RC2 and earlier allows remote attackers to list all logged-in users by submitting an invalid "pseudo" cookie.
OrtaCVSS 5,0İstismar yokEPSS %2asp-nuke · asp-nuke12 Ağu 2002
- CVE-2005-206521İzleyin
HTTP response splitting vulnerability in language_select.asp in ASP Nuke 0.80 allows remote attackers to spoof web content and poison web ca
OrtaCVSS 5,0Kavram kanıtıEPSS %2asp-nuke · asp-nuke29 Haz 2005
- CVE-2007-289217İzleyin
Cross-site scripting (XSS) vulnerability in news.asp in ASP-Nuke 2.0.7 allows remote attackers to inject arbitrary web script or HTML via th
OrtaCVSS 4,3Kavram kanıtıEPSS %1asp-nuke · asp-nuke29 May 2007