chyrp kayıtları
chyrp üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
30İzleyin | CVE-2011-2744Kavram kanıtı | Directory traversal vulnerability in Chyrp 2.1 and earlier allows remote attackers to include and execute arbitrary local files via a ..%2F chyrp · chyrp · CWE-22 | Orta6,8 | — | %9,0 | 19 Tem 2011 |
30İzleyin | CVE-2025-69768İstismar yok | SQL Injection vulnerability in Chyrp v.2.5.2 and before allows a remote attacker to obtain sensitive information via the Admin.php componentchyrp · chyrp · CWE-89 | Yüksek7,5 | — | %0,4 | 16 Mar 2026 |
27İzleyin | CVE-2011-2745Kavram kanıtı | upload_handler.php in the swfupload extension in Chyrp 2.0 and earlier relies on client-side JavaScript code to restrict the file extensionschyrp · chyrp · CWE-264 | Orta6,5 | — | %2,0 | 26 Tem 2011 |
25İzleyin | CVE-2012-1001Kavram kanıtı | Multiple cross-site scripting (XSS) vulnerabilities in Chyrp before 2.1.2 and before 2.5 Beta 2 allow remote attackers to inject arbitrary wchyrp · chyrp · CWE-79 | Orta6,1 | — | %3,6 | 21 Kas 2019 |
24İzleyin | CVE-2011-2780Kavram kanıtı | Directory traversal vulnerability in includes/lib/gz.php in Chyrp 2.0 and earlier allows remote attackers to read arbitrary files via a ..chyrp · chyrp · CWE-22 | Orta5,0 | — | %13,0 | 19 Tem 2011 |
21İzleyin | CVE-2024-58285İstismar yok | Chyrp 2.5.2 Stored Cross-Site Scripting Vulnerability via Post Titlechyrp · chyrp · CWE-79 | Orta5,3 | — | %0,3 | 10 Ara 2025 |
18İzleyin | CVE-2011-2743Kavram kanıtı | Multiple cross-site scripting (XSS) vulnerabilities in Chyrp 2.1 and earlier allow remote attackers to inject arbitrary web script or HTML vchyrp · chyrp · CWE-79 | Orta4,3 | — | %2,3 | 19 Tem 2011 |
14İzleyin | CVE-2014-7264İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in admin/themes/default/pages/manage_users.twig in the Users Management feature in the achyrp · chyrp · CWE-79 | Düşük3,5 | — | %1,4 | 11 Ara 2014 |
- CVE-2011-274430İzleyin
Directory traversal vulnerability in Chyrp 2.1 and earlier allows remote attackers to include and execute arbitrary local files via a ..%2F
OrtaCVSS 6,8Kavram kanıtıEPSS %9chyrp · chyrp19 Tem 2011
- CVE-2025-6976830İzleyin
SQL Injection vulnerability in Chyrp v.2.5.2 and before allows a remote attacker to obtain sensitive information via the Admin.php component
YüksekCVSS 7,5İstismar yokEPSS %0chyrp · chyrp16 Mar 2026
- CVE-2011-274527İzleyin
upload_handler.php in the swfupload extension in Chyrp 2.0 and earlier relies on client-side JavaScript code to restrict the file extensions
OrtaCVSS 6,5Kavram kanıtıEPSS %2chyrp · chyrp26 Tem 2011
- CVE-2012-100125İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in Chyrp before 2.1.2 and before 2.5 Beta 2 allow remote attackers to inject arbitrary w
OrtaCVSS 6,1Kavram kanıtıEPSS %4chyrp · chyrp21 Kas 2019
- CVE-2011-278024İzleyin
Directory traversal vulnerability in includes/lib/gz.php in Chyrp 2.0 and earlier allows remote attackers to read arbitrary files via a ..
OrtaCVSS 5,0Kavram kanıtıEPSS %13chyrp · chyrp19 Tem 2011
- CVE-2024-5828521İzleyin
Chyrp 2.5.2 Stored Cross-Site Scripting Vulnerability via Post Title
OrtaCVSS 5,3İstismar yokEPSS %0chyrp · chyrp10 Ara 2025
- CVE-2011-274318İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in Chyrp 2.1 and earlier allow remote attackers to inject arbitrary web script or HTML v
OrtaCVSS 4,3Kavram kanıtıEPSS %2chyrp · chyrp19 Tem 2011
- CVE-2014-726414İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in admin/themes/default/pages/manage_users.twig in the Users Management feature in the a
DüşükCVSS 3,5İstismar yokEPSS %1chyrp · chyrp11 Ara 2014