bcoos kayıtları
bcoos üreticisine ait 10 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 5
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')5
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
10 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
30İzleyin | CVE-2007-6080Kavram kanıtı | SQL injection vulnerability in modules/banners/click.php in the banners module for bcoos 1.0.10 allows remote attackers to execute arbitrarybcoos · bcoos · CWE-89 | Yüksek7,5 | — | %1,2 | 21 Kas 2007 |
30İzleyin | CVE-2007-6266Kavram kanıtı | Multiple SQL injection vulnerabilities in bcoos 1.0.10 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the gid bcoos · bcoos · CWE-89 | Yüksek7,5 | — | %1,1 | 7 Ara 2007 |
30İzleyin | CVE-2007-5104İstismar yok | SQL injection vulnerability in index.php in the Arcade module in bcoos 1.0.10 allows remote attackers to execute arbitrary SQL commands via bcoos · bcoos · CWE-89 | Yüksek7,5 | — | %1,1 | 26 Eyl 2007 |
30İzleyin | CVE-2007-6275Kavram kanıtı | SQL injection vulnerability in modules/adresses/ratefile.php in bcoos 1.0.10 and earlier allows remote attackers to execute arbitrary SQL cobcoos · bcoos · CWE-89 | Yüksek7,5 | — | %0,9 | 7 Ara 2007 |
28İzleyin | CVE-2007-6079Kavram kanıtı | Directory traversal vulnerability in include/common.php in bcoos 1.0.10 allows remote attackers to include and execute arbitrary local filesbcoos · bcoos · CWE-22 | Orta6,8 | — | %1,9 | 21 Kas 2007 |
21İzleyin | CVE-2008-2350Kavram kanıtı | Directory traversal vulnerability in highlight.php in bcoos 1.0.9 through 1.0.13 allows remote attackers to read arbitrary files via (1) ..bcoos · bcoos · CWE-22 | Orta5,0 | — | %2,7 | 20 May 2008 |
18İzleyin | CVE-2008-6381Kavram kanıtı | SQL injection vulnerability in modules/adresses/viewcat.php in bcoos 1.0.13, and possibly earlier, allows remote authenticated users with Adbcoos · bcoos · CWE-89 | Orta4,6 | — | %1,6 | 2 Mar 2009 |
17İzleyin | CVE-2008-7036Kavram kanıtı | Multiple cross-site scripting (XSS) vulnerabilities in index.php in DevTracker module 3.0 for bcoos 1.1.11 and earlier, and DevTracker modulbcoos · devtracker · CWE-79 | Orta4,3 | — | %1,5 | 24 Ağu 2009 |
17İzleyin | CVE-2007-6274İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in modules/ecal/display.php in the Event Calendar in bcoos 1.0.10 and earlier allow remobcoos · bcoos · CWE-79 | Orta4,3 | — | %1,1 | 7 Ara 2007 |
17İzleyin | CVE-2007-6365İstismar yok | Cross-site scripting (XSS) vulnerability in modules/ecal/display.php in the Event Calendar in bcoos 1.0.10 allows remote attackers to injectbcoos · event calendar · CWE-79 | Orta4,3 | — | %0,9 | 14 Ara 2007 |
- CVE-2007-608030İzleyin
SQL injection vulnerability in modules/banners/click.php in the banners module for bcoos 1.0.10 allows remote attackers to execute arbitrary
YüksekCVSS 7,5Kavram kanıtıEPSS %1bcoos · bcoos21 Kas 2007
- CVE-2007-626630İzleyin
Multiple SQL injection vulnerabilities in bcoos 1.0.10 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the gid
YüksekCVSS 7,5Kavram kanıtıEPSS %1bcoos · bcoos7 Ara 2007
- CVE-2007-510430İzleyin
SQL injection vulnerability in index.php in the Arcade module in bcoos 1.0.10 allows remote attackers to execute arbitrary SQL commands via
YüksekCVSS 7,5İstismar yokEPSS %1bcoos · bcoos26 Eyl 2007
- CVE-2007-627530İzleyin
SQL injection vulnerability in modules/adresses/ratefile.php in bcoos 1.0.10 and earlier allows remote attackers to execute arbitrary SQL co
YüksekCVSS 7,5Kavram kanıtıEPSS %1bcoos · bcoos7 Ara 2007
- CVE-2007-607928İzleyin
Directory traversal vulnerability in include/common.php in bcoos 1.0.10 allows remote attackers to include and execute arbitrary local files
OrtaCVSS 6,8Kavram kanıtıEPSS %2bcoos · bcoos21 Kas 2007
- CVE-2008-235021İzleyin
Directory traversal vulnerability in highlight.php in bcoos 1.0.9 through 1.0.13 allows remote attackers to read arbitrary files via (1) ..
OrtaCVSS 5,0Kavram kanıtıEPSS %3bcoos · bcoos20 May 2008
- CVE-2008-638118İzleyin
SQL injection vulnerability in modules/adresses/viewcat.php in bcoos 1.0.13, and possibly earlier, allows remote authenticated users with Ad
OrtaCVSS 4,6Kavram kanıtıEPSS %2bcoos · bcoos2 Mar 2009
- CVE-2008-703617İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in index.php in DevTracker module 3.0 for bcoos 1.1.11 and earlier, and DevTracker modul
OrtaCVSS 4,3Kavram kanıtıEPSS %1bcoos · devtracker24 Ağu 2009
- CVE-2007-627417İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in modules/ecal/display.php in the Event Calendar in bcoos 1.0.10 and earlier allow remo
OrtaCVSS 4,3İstismar yokEPSS %1bcoos · bcoos7 Ara 2007
- CVE-2007-636517İzleyin
Cross-site scripting (XSS) vulnerability in modules/ecal/display.php in the Event Calendar in bcoos 1.0.10 allows remote attackers to inject
OrtaCVSS 4,3İstismar yokEPSS %1bcoos · event calendar14 Ara 2007