clickstudios kayıtları
clickstudios üreticisine ait 14 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-266 Incorrect Privilege Assignment2
- CWE-276 Incorrect Default Permissions1
- CWE-302 Authentication Bypass by Assumed-Immutable Data1
- CWE-306 Missing Authentication for Critical Function1
- CWE-307 Improper Restriction of Excessive Authentication Attempts1
- CWE-310 Cryptographic Issues1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
14 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
35İzleyin | CVE-2024-54124İstismar yok | In Click Studios Passwordstate before build 9920, there is a potential permission escalation on the edit folder screen.CWE-863 | Yüksek8,8 | — | %0,4 | 29 Kas 2024 |
31İzleyin | CVE-2020-26061Kavram kanıtı | ClickStudios Passwordstate Password Reset Portal prior to build 8501 is affected by an authentication bypass vulnerability.clickstudios · passwordstate · CWE-306 | Yüksek7,5 | — | %4,5 | 5 Eki 2020 |
30İzleyin | CVE-2022-3875İstismar yok | Click Studios Passwordstate API authentication bypass by assumed-immutable dataclickstudios · passwordstate · CWE-302 | Yüksek7,5 | — | %1,0 | 19 Ara 2022 |
27İzleyin | CVE-2020-27747Kavram kanıtı | An issue was discovered in Click Studios Passwordstate 8.9 (Build 8973).If the user of the system has assigned himself a PIN code for entericlickstudios · passwordstate · CWE-307 | Orta6,8 | — | %1,1 | 29 Eki 2020 |
26İzleyin | CVE-2022-4612İstismar yok | Click Studios Passwordstate insufficiently protected credentialsclickstudios · passwordstate · CWE-522 | Orta6,5 | — | %0,9 | 19 Ara 2022 |
26İzleyin | CVE-2022-3876İstismar yok | Click Studios Passwordstate API authorizationclickstudios · passwordstate · CWE-266 | Orta6,5 | — | %0,9 | 19 Ara 2022 |
26İzleyin | CVE-2022-25570İstismar yok | In Click Studios (SA) Pty Ltd Passwordstate 9435, users with access to a passwordlist can gain access to additional password lists without pclickstudios · passwordstate · CWE-276 | Orta6,5 | — | %0,8 | 21 Mar 2022 |
26İzleyin | CVE-2022-4613İstismar yok | Click Studios Passwordstate Browser Extension Provisioning improper authorizationclickstudios · passwordstate · CWE-266 | Orta6,5 | — | %0,7 | 19 Ara 2022 |
22İzleyin | CVE-2022-4610İstismar yok | Click Studios Passwordstate risky encryptionclickstudios · passwordstate · CWE-310 | Orta5,5 | — | %0,2 | 19 Ara 2022 |
21İzleyin | CVE-2022-4611Kavram kanıtı | Click Studios Passwordstate hard-coded credentialsclickstudios · passwordstate · CWE-798 | Orta5,3 | — | %1,3 | 19 Ara 2022 |
21İzleyin | CVE-2022-3877İstismar yok | Click Studios Passwordstate URL Field cross site scriptingclickstudios · passwordstate · CWE-707 | Orta5,4 | — | %0,7 | 19 Ara 2022 |
21İzleyin | CVE-2018-14776İstismar yok | Click Studios Passwordstate before 8.3 Build 8397 allows XSS by authenticated users via an uploaded HTML document.clickstudios · passwordstate · CWE-79 | Orta5,4 | — | %0,5 | 1 Ağu 2018 |
18İzleyin | CVE-2023-47801İstismar yok | An issue was discovered in Click Studios Passwordstate before 9811.clickstudios · passwordstate · CWE-732 | Orta4,7 | — | %0,4 | 13 Kas 2023 |
14İzleyin | CVE-2023-43295İstismar yok | Cross Site Request Forgery vulnerability in Click Studios (SA) Pty Ltd Passwordstate v.Build 9785 and before allows a local attacker to execclickstudios · passwordstate · CWE-352 | Düşük3,5 | — | %0,2 | 31 Eki 2023 |
- CVE-2024-5412435İzleyin
In Click Studios Passwordstate before build 9920, there is a potential permission escalation on the edit folder screen.
YüksekCVSS 8,8İstismar yokEPSS %029 Kas 2024
- CVE-2020-2606131İzleyin
ClickStudios Passwordstate Password Reset Portal prior to build 8501 is affected by an authentication bypass vulnerability.
YüksekCVSS 7,5Kavram kanıtıEPSS %4clickstudios · passwordstate5 Eki 2020
- CVE-2022-387530İzleyin
Click Studios Passwordstate API authentication bypass by assumed-immutable data
YüksekCVSS 7,5İstismar yokEPSS %1clickstudios · passwordstate19 Ara 2022
- CVE-2020-2774727İzleyin
An issue was discovered in Click Studios Passwordstate 8.9 (Build 8973).If the user of the system has assigned himself a PIN code for enteri
OrtaCVSS 6,8Kavram kanıtıEPSS %1clickstudios · passwordstate29 Eki 2020
- CVE-2022-461226İzleyin
Click Studios Passwordstate insufficiently protected credentials
OrtaCVSS 6,5İstismar yokEPSS %1clickstudios · passwordstate19 Ara 2022
- CVE-2022-387626İzleyin
Click Studios Passwordstate API authorization
OrtaCVSS 6,5İstismar yokEPSS %1clickstudios · passwordstate19 Ara 2022
- CVE-2022-2557026İzleyin
In Click Studios (SA) Pty Ltd Passwordstate 9435, users with access to a passwordlist can gain access to additional password lists without p
OrtaCVSS 6,5İstismar yokEPSS %1clickstudios · passwordstate21 Mar 2022
- CVE-2022-461326İzleyin
Click Studios Passwordstate Browser Extension Provisioning improper authorization
OrtaCVSS 6,5İstismar yokEPSS %1clickstudios · passwordstate19 Ara 2022
- CVE-2022-461022İzleyin
Click Studios Passwordstate risky encryption
OrtaCVSS 5,5İstismar yokEPSS %0clickstudios · passwordstate19 Ara 2022
- CVE-2022-461121İzleyin
Click Studios Passwordstate hard-coded credentials
OrtaCVSS 5,3Kavram kanıtıEPSS %1clickstudios · passwordstate19 Ara 2022
- CVE-2022-387721İzleyin
Click Studios Passwordstate URL Field cross site scripting
OrtaCVSS 5,4İstismar yokEPSS %1clickstudios · passwordstate19 Ara 2022
- CVE-2018-1477621İzleyin
Click Studios Passwordstate before 8.3 Build 8397 allows XSS by authenticated users via an uploaded HTML document.
OrtaCVSS 5,4İstismar yokEPSS %1clickstudios · passwordstate1 Ağu 2018
- CVE-2023-4780118İzleyin
An issue was discovered in Click Studios Passwordstate before 9811.
OrtaCVSS 4,7İstismar yokEPSS %0clickstudios · passwordstate13 Kas 2023
- CVE-2023-4329514İzleyin
Cross Site Request Forgery vulnerability in Click Studios (SA) Pty Ltd Passwordstate v.Build 9785 and before allows a local attacker to exec
DüşükCVSS 3,5İstismar yokEPSS %0clickstudios · passwordstate31 Eki 2023