İçeriğe atla
Noroxi

citrusdb kayıtları

citrusdb üreticisine ait 5 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Yıllara göre kayıt

    Çubuk: toplam · koyu kısım: CISA KEV.

    Tekrar eden sınıflar

    Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.

    CWE

    Tüm kayıtlar

    5 kayıt
    • CVE-2005-0408
      40Planlayın

      CitrusDB 0.3.6 and earlier generates easily predictable MD5 hashes of the user name for the id_hash cookie, which allows remote attackers to

      KritikCVSS 9,8Kavram kanıtıEPSS %5

      citrusdb · citrusdb14 Şub 2005

    • CVE-2005-0411
      31İzleyin

      Directory traversal vulnerability in index.php for CitrusDB 0.3.6 and earlier allows remote attackers and local users to include arbitrary P

      YüksekCVSS 7,5Kavram kanıtıEPSS %2

      citrusdb · citrusdb14 Şub 2005

    • CVE-2005-0409
      27İzleyin

      CitrusDB 0.3.6 and earlier does not verify authorization for the (1) importcc.php and (2) uploadcc.php, which allows remote attackers to upl

      OrtaCVSS 6,4Kavram kanıtıEPSS %6

      citrusdb · citrusdb14 Şub 2005

    • CVE-2005-0229
      22İzleyin

      CitrusDB 0.3.5 and earlier stores the newfile.txt temporary data file under the web root, which allows remote attackers to steal credit card

      OrtaCVSS 5,0Kavram kanıtıEPSS %8

      citrusdb · citrusdb customer database27 Nis 2005

    • CVE-2005-0410
      21İzleyin

      SQL injection vulnerability in importcc.php for CitrusDB 0.3.6 and earlier allows remote attackers to inject data via the fields of a CSV fi

      OrtaCVSS 5,0Kavram kanıtıEPSS %2

      citrusdb · citrusdb14 Şub 2005