İçeriğe atla
Noroxi

best software kayıtları

best software üreticisine ait 7 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
2
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Yıllara göre kayıt

    Çubuk: toplam · koyu kısım: CISA KEV.

    Tekrar eden sınıflar

      Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.

      CWE

      Tüm kayıtlar

      7 kayıt
      • CVE-2004-1610
        31İzleyin

        SalesLogix 6.1 uses client-specified pathnames for writing certain files, which might allow remote authenticated users to create arbitrary f

        YüksekCVSS 7,5İstismar yokEPSS %2

        best software · saleslogix18 Eki 2004

      • CVE-2004-1605
        31İzleyin

        SalesLogix 6.1 allows remote attackers to bypass authentication by modifying the slxweb cookie to set user=Admin, teams=ADMIN!, and usertype

        YüksekCVSS 7,5İstismar yokEPSS %2

        best software · saleslogix14 Eki 2004

      • CVE-2004-1608
        30İzleyin

        SQL injection vulnerability in SalesLogix 6.1 allows remote attackers to execute arbitrary SQL statements via the id parameter in a view ope

        YüksekCVSS 7,5İstismar yokEPSS %2

        best software · saleslogix18 Eki 2004

      • CVE-2004-1606
        26İzleyin

        slxweb.dll in SalesLogix 6.1 allows remote attackers to cause a denial service (application crash) via an invalid HTTP request, which might

        OrtaCVSS 6,4İstismar yokEPSS %2

        best software · saleslogix18 Eki 2004

      • CVE-2004-1607
        21İzleyin

        slxweb.dll in SalesLogix 6.1 allows remote attackers to obtain sensitive information via a (1) Library or (2) Attachment request with an inv

        OrtaCVSS 5,0İstismar yokEPSS %2

        best software · saleslogix18 Eki 2004

      • CVE-2004-1609
        21İzleyin

        SalesLogix 6.1 includes usernames, passwords, and other sensitive information in the headers of an HTTP response, which could allow remote a

        OrtaCVSS 5,0İstismar yokEPSS %2

        best software · saleslogix18 Eki 2004

      • CVE-2004-1611
        20İzleyin

        SalesLogix 6.1 does not verify if a user is authenticated before performing sensitive operations, which could allow remote attackers to (1)

        OrtaCVSS 5,1İstismar yokEPSS %2

        best software · saleslogix18 Eki 2004