İçeriğe atla
Noroxi

codologic kayıtları

codologic üreticisine ait 16 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

16 kayıt
  • CVE-2020-13873
    40Planlayın

    A SQL Injection vulnerability in get_topic_info() in sys/CODOF/Forum/Topic.php in Codoforum before 4.9 allows remote attackers (pre-authenti

    KritikCVSS 9,8İstismar yokEPSS %5

    codologic · codoforum12 May 2021

  • CVE-2022-31854
    38İzleyin

    Codoforum v5.1 was discovered to contain an arbitrary file upload vulnerability via the logo change option in the admin panel.

    YüksekCVSS 7,2Kavram kanıtıEPSS %32

    codologic · codoforum7 Tem 2022

  • CVE-2020-22539
    28İzleyin

    An arbitrary file upload vulnerability in the Add Category function of Codoforum v4.9 allows attackers to execute arbitrary code via uploadi

    YüksekCVSS 7,2İstismar yokEPSS %1

    codologic · codoforum15 Nis 2024

  • CVE-2020-5842
    25İzleyin

    Codoforum 4.8.3 allows XSS in the user registration page: via the username field to the index.php?u=/user/register URI.

    OrtaCVSS 6,1Kavram kanıtıEPSS %2

    codologic · codoforum7 Oca 2020

  • CVE-2020-7051
    24İzleyin

    Codologic Codoforum through 4.8.4 allows stored XSS in the login area.

    OrtaCVSS 6,1İstismar yokEPSS %1

    codologic · codoforum13 Şub 2020

  • CVE-2014-9261
    23İzleyin

    The sanitize function in Codoforum 2.5.1 does not properly implement filtering for directory traversal sequences, which allows remote attack

    OrtaCVSS 5,0Kavram kanıtıEPSS %9

    codologic · codoforum23 Mar 2015

  • CVE-2020-7050
    21İzleyin

    Codologic Codoforum through 4.8.4 allows a DOM-based XSS.

    OrtaCVSS 5,4İstismar yokEPSS %1

    codologic · codoforum15 Şub 2020

  • CVE-2020-9007
    21İzleyin

    Codoforum 4.8.8 allows self-XSS via the title of a new topic.

    OrtaCVSS 5,4İstismar yokEPSS %1

    codologic · codoforum16 Şub 2020

  • CVE-2020-25875
    21İzleyin

    A stored cross site scripting (XSS) vulnerability in the 'Smileys' feature of Codoforum v5.0.2 allows authenticated attackers to execute arb

    OrtaCVSS 5,4İstismar yokEPSS %1

    codologic · codoforum9 Tem 2021

  • CVE-2020-25879
    21İzleyin

    A stored cross site scripting (XSS) vulnerability in the 'Manage Users' feature of Codoforum v5.0.2 allows authenticated attackers to execut

    OrtaCVSS 5,4İstismar yokEPSS %0

    codologic · codoforum9 Tem 2021

  • CVE-2020-25876
    21İzleyin

    A stored cross site scripting (XSS) vulnerability in the 'Pages' feature of Codoforum v5.0.2 allows authenticated attackers to execute arbit

    OrtaCVSS 5,4İstismar yokEPSS %0

    codologic · codoforum9 Tem 2021

  • CVE-2020-22540
    21İzleyin

    Stored Cross-Site Scripting (XSS) vulnerability in Codoforum v4.9, allows attackers to execute arbitrary code and obtain sensitive informati

    OrtaCVSS 5,4İstismar yokEPSS %0

    codologic · codoforum15 Nis 2024

  • CVE-2020-5306
    19İzleyin

    Codoforum 4.8.3 allows XSS via a post using parameters display name, title name, or content.

    OrtaCVSS 4,8İstismar yokEPSS %1

    codologic · codoforum5 Oca 2020

  • CVE-2020-5305
    19İzleyin

    Codoforum 4.8.3 allows XSS in the admin dashboard via a name field of a new user, i.e., on the Manage Users screen.

    OrtaCVSS 4,8İstismar yokEPSS %1

    codologic · codoforum5 Oca 2020

  • CVE-2020-5843
    19İzleyin

    Codoforum 4.8.3 allows XSS in the admin dashboard via a category to the Manage Users screen.

    OrtaCVSS 4,8İstismar yokEPSS %1

    codologic · codoforum7 Oca 2020

  • CVE-2013-5952
    18İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in the Freichat (com_freichat) component, possibly 9.4 and earlier, for Joomla! allow re

    OrtaCVSS 4,3İstismar yokEPSS %2

    joomla · joomla\!19 Mar 2014