codesupply kayıtları
codesupply üreticisine ait 4 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-639 Authorization Bypass Through User-Controlled Key1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-862 Missing Authorization1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
4 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
21İzleyin | CVE-2021-24840İstismar yok | Squaretype Modern Blog < 3.0.4 - Unauthenticated Private/Schedule Posts Disclosurecodesupply · squaretype · CWE-639 | Orta5,3 | — | %1,2 | 8 Kas 2021 |
21İzleyin | CVE-2024-9025İstismar yok | Sight – Professional Image Gallery and Portfolio <= 1.1.2 - Missing Authorization to Sensitive Information Exposure in handler_post_titlecodesupply · sight · CWE-862 | Orta5,3 | — | %0,4 | 26 Eyl 2024 |
21İzleyin | CVE-2024-8965İstismar yok | Absolute Reviews <= 1.1.3 - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via Criteria Namecodesupply · absolute reviews · CWE-79 | Orta5,4 | — | %0,3 | 27 Eyl 2024 |
17İzleyin | CVE-2021-4426İstismar yok | Absolute Reviews <= 1.0.8 - Cross-Site Request Forgery Bypasscodesupply · absolute reviews · CWE-352 | Orta4,3 | — | %0,6 | 12 Tem 2023 |
- CVE-2021-2484021İzleyin
Squaretype Modern Blog < 3.0.4 - Unauthenticated Private/Schedule Posts Disclosure
OrtaCVSS 5,3İstismar yokEPSS %1codesupply · squaretype8 Kas 2021
- CVE-2024-902521İzleyin
Sight – Professional Image Gallery and Portfolio <= 1.1.2 - Missing Authorization to Sensitive Information Exposure in handler_post_title
OrtaCVSS 5,3İstismar yokEPSS %0codesupply · sight26 Eyl 2024
- CVE-2024-896521İzleyin
Absolute Reviews <= 1.1.3 - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via Criteria Name
OrtaCVSS 5,4İstismar yokEPSS %0codesupply · absolute reviews27 Eyl 2024
- CVE-2021-442617İzleyin
Absolute Reviews <= 1.0.8 - Cross-Site Request Forgery Bypass
OrtaCVSS 4,3İstismar yokEPSS %1codesupply · absolute reviews12 Tem 2023