best software kayıtları
best software üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2004-1610İstismar yok | SalesLogix 6.1 uses client-specified pathnames for writing certain files, which might allow remote authenticated users to create arbitrary fbest software · saleslogix | Yüksek7,5 | — | %2,2 | 18 Eki 2004 |
31İzleyin | CVE-2004-1605İstismar yok | SalesLogix 6.1 allows remote attackers to bypass authentication by modifying the slxweb cookie to set user=Admin, teams=ADMIN!, and usertypebest software · saleslogix | Yüksek7,5 | — | %2,1 | 14 Eki 2004 |
30İzleyin | CVE-2004-1608İstismar yok | SQL injection vulnerability in SalesLogix 6.1 allows remote attackers to execute arbitrary SQL statements via the id parameter in a view opebest software · saleslogix | Yüksek7,5 | — | %1,5 | 18 Eki 2004 |
26İzleyin | CVE-2004-1606İstismar yok | slxweb.dll in SalesLogix 6.1 allows remote attackers to cause a denial service (application crash) via an invalid HTTP request, which might best software · saleslogix | Orta6,4 | — | %2,0 | 18 Eki 2004 |
21İzleyin | CVE-2004-1607İstismar yok | slxweb.dll in SalesLogix 6.1 allows remote attackers to obtain sensitive information via a (1) Library or (2) Attachment request with an invbest software · saleslogix | Orta5,0 | — | %1,8 | 18 Eki 2004 |
21İzleyin | CVE-2004-1609İstismar yok | SalesLogix 6.1 includes usernames, passwords, and other sensitive information in the headers of an HTTP response, which could allow remote abest software · saleslogix | Orta5,0 | — | %1,8 | 18 Eki 2004 |
20İzleyin | CVE-2004-1611İstismar yok | SalesLogix 6.1 does not verify if a user is authenticated before performing sensitive operations, which could allow remote attackers to (1) best software · saleslogix | Orta5,1 | — | %1,6 | 18 Eki 2004 |
- CVE-2004-161031İzleyin
SalesLogix 6.1 uses client-specified pathnames for writing certain files, which might allow remote authenticated users to create arbitrary f
YüksekCVSS 7,5İstismar yokEPSS %2best software · saleslogix18 Eki 2004
- CVE-2004-160531İzleyin
SalesLogix 6.1 allows remote attackers to bypass authentication by modifying the slxweb cookie to set user=Admin, teams=ADMIN!, and usertype
YüksekCVSS 7,5İstismar yokEPSS %2best software · saleslogix14 Eki 2004
- CVE-2004-160830İzleyin
SQL injection vulnerability in SalesLogix 6.1 allows remote attackers to execute arbitrary SQL statements via the id parameter in a view ope
YüksekCVSS 7,5İstismar yokEPSS %2best software · saleslogix18 Eki 2004
- CVE-2004-160626İzleyin
slxweb.dll in SalesLogix 6.1 allows remote attackers to cause a denial service (application crash) via an invalid HTTP request, which might
OrtaCVSS 6,4İstismar yokEPSS %2best software · saleslogix18 Eki 2004
- CVE-2004-160721İzleyin
slxweb.dll in SalesLogix 6.1 allows remote attackers to obtain sensitive information via a (1) Library or (2) Attachment request with an inv
OrtaCVSS 5,0İstismar yokEPSS %2best software · saleslogix18 Eki 2004
- CVE-2004-160921İzleyin
SalesLogix 6.1 includes usernames, passwords, and other sensitive information in the headers of an HTTP response, which could allow remote a
OrtaCVSS 5,0İstismar yokEPSS %2best software · saleslogix18 Eki 2004
- CVE-2004-161120İzleyin
SalesLogix 6.1 does not verify if a user is authenticated before performing sensitive operations, which could allow remote attackers to (1)
OrtaCVSS 5,1İstismar yokEPSS %2best software · saleslogix18 Eki 2004