clansphere kayıtları
clansphere üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 3
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
30İzleyin | CVE-2007-5061Kavram kanıtı | SQL injection vulnerability in mods/banners/navlist.php in Clansphere 2007.4 allows remote attackers to execute arbitrary SQL commands via tclansphere · clansphere · CWE-89 | Yüksek7,5 | — | %1,2 | 24 Eyl 2007 |
30İzleyin | CVE-2009-2345İstismar yok | Multiple SQL injection vulnerabilities in ClanSphere before 2009.0.1 allow remote attackers to execute arbitrary SQL commands via unknown paclansphere · clansphere · CWE-89 | Yüksek7,5 | — | %1,1 | 7 Tem 2009 |
21İzleyin | CVE-2008-0489Kavram kanıtı | Directory traversal vulnerability in install.php in Clansphere 2007.4.4 allows remote attackers to include and execute arbitrary local filesclansphere · clansphere · CWE-22 | Orta5,0 | — | %2,7 | 30 Oca 2008 |
20İzleyin | CVE-2008-6470İstismar yok | Multiple unspecified vulnerabilities in ClanSphere before 2008.2.1 allow remote attackers to obtain sensitive information, and possibly haveclansphere · clansphere | Orta5,0 | — | %1,5 | 13 Mar 2009 |
17İzleyin | CVE-2009-2438Kavram kanıtı | Cross-site scripting (XSS) vulnerability in index.php in the search module in ClanSphere 2009.0 and 2009.0.2 allows remote attackers to injeclansphere · clansphere · CWE-79 | Orta4,3 | — | %1,6 | 13 Tem 2009 |
17İzleyin | CVE-2008-1399İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Clansphere 2008 allow remote attackers to inject arbitrary web script orclansphere · clansphere · CWE-79 | Orta4,3 | — | %1,2 | 20 Mar 2008 |
- CVE-2007-506130İzleyin
SQL injection vulnerability in mods/banners/navlist.php in Clansphere 2007.4 allows remote attackers to execute arbitrary SQL commands via t
YüksekCVSS 7,5Kavram kanıtıEPSS %1clansphere · clansphere24 Eyl 2007
- CVE-2009-234530İzleyin
Multiple SQL injection vulnerabilities in ClanSphere before 2009.0.1 allow remote attackers to execute arbitrary SQL commands via unknown pa
YüksekCVSS 7,5İstismar yokEPSS %1clansphere · clansphere7 Tem 2009
- CVE-2008-048921İzleyin
Directory traversal vulnerability in install.php in Clansphere 2007.4.4 allows remote attackers to include and execute arbitrary local files
OrtaCVSS 5,0Kavram kanıtıEPSS %3clansphere · clansphere30 Oca 2008
- CVE-2008-647020İzleyin
Multiple unspecified vulnerabilities in ClanSphere before 2008.2.1 allow remote attackers to obtain sensitive information, and possibly have
OrtaCVSS 5,0İstismar yokEPSS %1clansphere · clansphere13 Mar 2009
- CVE-2009-243817İzleyin
Cross-site scripting (XSS) vulnerability in index.php in the search module in ClanSphere 2009.0 and 2009.0.2 allows remote attackers to inje
OrtaCVSS 4,3Kavram kanıtıEPSS %2clansphere · clansphere13 Tem 2009
- CVE-2008-139917İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Clansphere 2008 allow remote attackers to inject arbitrary web script or
OrtaCVSS 4,3İstismar yokEPSS %1clansphere · clansphere20 Mar 2008