comscripts kayıtları
comscripts üreticisine ait 19 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 9
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-94 Improper Control of Generation of Code ('Code Injection')3
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-264 Permissions, Privileges, and Access Controls1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
19 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2006-4622Kavram kanıtı | PHP remote file inclusion vulnerability in annonce.php in AnnonceV (aka annoncesV) 1.1 allows remote attackers to execute arbitrary PHP codecomscripts · annoncev | Yüksek7,5 | — | %3,4 | 6 Eyl 2006 |
31İzleyin | CVE-2010-1114Kavram kanıtı | Multiple PHP remote file inclusion vulnerabilities in Web Server Creator - Web Portal 0.1 allow remote attackers to execute arbitrary PHP cocomscripts · web server creator web portal · CWE-94 | Yüksek7,5 | — | %3,0 | 25 Mar 2010 |
31İzleyin | CVE-2006-4746Kavram kanıtı | PHP remote file inclusion vulnerability in news/include/customize.php in Web Server Creator 0.1 allows remote attackers to execute arbitrarycomscripts · web server creator | Yüksek7,5 | — | %2,6 | 13 Eyl 2006 |
31İzleyin | CVE-2008-6543Kavram kanıtı | Multiple PHP remote file inclusion vulnerabilities in ComScripts TEAM Quick Classifieds 1.0 via the DOCUMENT_ROOT parameter to (1) index.phpcomscripts · quick classifieds · CWE-94 | Yüksek7,5 | — | %2,5 | 29 Mar 2009 |
31İzleyin | CVE-2007-0361Kavram kanıtı | PHP remote file inclusion vulnerability in mep/frame.php in PHPMyphorum 1.5a allows remote attackers to execute arbitrary PHP code via a URLcomscripts · phpmyphorum | Yüksek7,5 | — | %2,5 | 18 Oca 2007 |
31İzleyin | CVE-2006-4678Kavram kanıtı | PHP remote file inclusion vulnerability in News Evolution 3.0.3 allows remote attackers to execute arbitrary PHP code via the _NE[AbsPath] pcomscripts · news evolution | Yüksek7,5 | — | %2,5 | 11 Eyl 2006 |
31İzleyin | CVE-2008-6545Kavram kanıtı | PHP remote file inclusion vulnerability in news/include/createdb.php in Web Server Creator Web Portal 0.1 allows remote attackers to executecomscripts · web server creator web portal · CWE-94 | Yüksek7,5 | — | %2,3 | 29 Mar 2009 |
31İzleyin | CVE-2002-2217İstismar yok | Multiple PHP remote file inclusion vulnerabilities in Web Server Creator - Web Portal (WSC-WebPortal) 0.1 allow remote attackers to execute comscripts · web server creator | Yüksek7,5 | — | %2,1 | 31 Ara 2002 |
31İzleyin | CVE-2006-3168İstismar yok | SQL injection vulnerability in CS-Forum before 0.82 allows remote attackers to execute arbitrary SQL commands via the (1) id and (2) debut pcomscripts · cs-forum | Yüksek7,5 | — | %1,7 | 22 Haz 2006 |
28İzleyin | CVE-2006-4754Kavram kanıtı | Cross-site scripting (XSS) vulnerability in index.php in PHProg before 1.1 allows remote attackers to inject arbitrary web script or HTML vicomscripts · phprog | Orta6,8 | — | %2,2 | 13 Eyl 2006 |
21İzleyin | CVE-2006-4753Kavram kanıtı | Directory traversal vulnerability in index.php in PHProg before 1.1 allows remote attackers to read arbitrary files via a ..comscripts · phprog | Orta5,0 | — | %3,5 | 13 Eyl 2006 |
21İzleyin | CVE-2007-1144İstismar yok | Directory traversal vulnerability in jwpn-photos.php in J-Web Pics Navigator 2.0 allows remote attackers to list arbitrary directories via acomscripts · j-web pics navigator · CWE-22 | Orta5,0 | — | %3,4 | 2 Mar 2007 |
21İzleyin | CVE-2007-4937Kavram kanıtı | CS Guestbook stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain the acomscripts · cs guestbook · CWE-264 | Orta5,0 | — | %2,6 | 18 Eyl 2007 |
21İzleyin | CVE-2006-3170İstismar yok | CS-Forum before 0.82 allows remote attackers to obtain sensitive information via unspecified manipulations, possibly involving an empty collcomscripts · cs-forum | Orta5,0 | — | %1,8 | 22 Haz 2006 |
20İzleyin | CVE-2010-1115İstismar yok | Directory traversal vulnerability in news/include/customize.php in Web Server Creator - Web Portal 0.1 allows remote attackers to read arbitcomscripts · web server creator web portal · CWE-22 | Orta5,0 | — | %1,6 | 25 Mar 2010 |
20İzleyin | CVE-2006-3171İstismar yok | CRLF injection vulnerability in CS-Forum before 0.82 allows remote attackers to inject arbitrary email headers via a newline character in thcomscripts · cs-forum | Orta5,0 | — | %1,5 | 22 Haz 2006 |
18İzleyin | CVE-2006-3169İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in CS-Forum 0.81 and earlier allow remote attackers to inject arbitrary web script or HTcomscripts · cs-forum | Orta4,3 | — | %1,7 | 22 Haz 2006 |
17İzleyin | CVE-2008-6655Kavram kanıtı | Multiple cross-site scripting (XSS) vulnerabilities in GEDCOM_TO_MYSQL 2 allow remote attackers to inject arbitrary web script or HTML via tcomscripts · gedcom to mysl · CWE-79 | Orta4,3 | — | %1,5 | 7 Nis 2009 |
17İzleyin | CVE-2010-1113Kavram kanıtı | Cross-site scripting (XSS) vulnerability in the forum page in Web Server Creator - Web Portal 0.1 allows remote attackers to inject arbitrarcomscripts · web server creator web portal · CWE-79 | Orta4,3 | — | %1,5 | 25 Mar 2010 |
- CVE-2006-462231İzleyin
PHP remote file inclusion vulnerability in annonce.php in AnnonceV (aka annoncesV) 1.1 allows remote attackers to execute arbitrary PHP code
YüksekCVSS 7,5Kavram kanıtıEPSS %3comscripts · annoncev6 Eyl 2006
- CVE-2010-111431İzleyin
Multiple PHP remote file inclusion vulnerabilities in Web Server Creator - Web Portal 0.1 allow remote attackers to execute arbitrary PHP co
YüksekCVSS 7,5Kavram kanıtıEPSS %3comscripts · web server creator web portal25 Mar 2010
- CVE-2006-474631İzleyin
PHP remote file inclusion vulnerability in news/include/customize.php in Web Server Creator 0.1 allows remote attackers to execute arbitrary
YüksekCVSS 7,5Kavram kanıtıEPSS %3comscripts · web server creator13 Eyl 2006
- CVE-2008-654331İzleyin
Multiple PHP remote file inclusion vulnerabilities in ComScripts TEAM Quick Classifieds 1.0 via the DOCUMENT_ROOT parameter to (1) index.php
YüksekCVSS 7,5Kavram kanıtıEPSS %3comscripts · quick classifieds29 Mar 2009
- CVE-2007-036131İzleyin
PHP remote file inclusion vulnerability in mep/frame.php in PHPMyphorum 1.5a allows remote attackers to execute arbitrary PHP code via a URL
YüksekCVSS 7,5Kavram kanıtıEPSS %2comscripts · phpmyphorum18 Oca 2007
- CVE-2006-467831İzleyin
PHP remote file inclusion vulnerability in News Evolution 3.0.3 allows remote attackers to execute arbitrary PHP code via the _NE[AbsPath] p
YüksekCVSS 7,5Kavram kanıtıEPSS %2comscripts · news evolution11 Eyl 2006
- CVE-2008-654531İzleyin
PHP remote file inclusion vulnerability in news/include/createdb.php in Web Server Creator Web Portal 0.1 allows remote attackers to execute
YüksekCVSS 7,5Kavram kanıtıEPSS %2comscripts · web server creator web portal29 Mar 2009
- CVE-2002-221731İzleyin
Multiple PHP remote file inclusion vulnerabilities in Web Server Creator - Web Portal (WSC-WebPortal) 0.1 allow remote attackers to execute
YüksekCVSS 7,5İstismar yokEPSS %2comscripts · web server creator31 Ara 2002
- CVE-2006-316831İzleyin
SQL injection vulnerability in CS-Forum before 0.82 allows remote attackers to execute arbitrary SQL commands via the (1) id and (2) debut p
YüksekCVSS 7,5İstismar yokEPSS %2comscripts · cs-forum22 Haz 2006
- CVE-2006-475428İzleyin
Cross-site scripting (XSS) vulnerability in index.php in PHProg before 1.1 allows remote attackers to inject arbitrary web script or HTML vi
OrtaCVSS 6,8Kavram kanıtıEPSS %2comscripts · phprog13 Eyl 2006
- CVE-2006-475321İzleyin
Directory traversal vulnerability in index.php in PHProg before 1.1 allows remote attackers to read arbitrary files via a ..
OrtaCVSS 5,0Kavram kanıtıEPSS %3comscripts · phprog13 Eyl 2006
- CVE-2007-114421İzleyin
Directory traversal vulnerability in jwpn-photos.php in J-Web Pics Navigator 2.0 allows remote attackers to list arbitrary directories via a
OrtaCVSS 5,0İstismar yokEPSS %3comscripts · j-web pics navigator2 Mar 2007
- CVE-2007-493721İzleyin
CS Guestbook stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain the a
OrtaCVSS 5,0Kavram kanıtıEPSS %3comscripts · cs guestbook18 Eyl 2007
- CVE-2006-317021İzleyin
CS-Forum before 0.82 allows remote attackers to obtain sensitive information via unspecified manipulations, possibly involving an empty coll
OrtaCVSS 5,0İstismar yokEPSS %2comscripts · cs-forum22 Haz 2006
- CVE-2010-111520İzleyin
Directory traversal vulnerability in news/include/customize.php in Web Server Creator - Web Portal 0.1 allows remote attackers to read arbit
OrtaCVSS 5,0İstismar yokEPSS %2comscripts · web server creator web portal25 Mar 2010
- CVE-2006-317120İzleyin
CRLF injection vulnerability in CS-Forum before 0.82 allows remote attackers to inject arbitrary email headers via a newline character in th
OrtaCVSS 5,0İstismar yokEPSS %1comscripts · cs-forum22 Haz 2006
- CVE-2006-316918İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in CS-Forum 0.81 and earlier allow remote attackers to inject arbitrary web script or HT
OrtaCVSS 4,3İstismar yokEPSS %2comscripts · cs-forum22 Haz 2006
- CVE-2008-665517İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in GEDCOM_TO_MYSQL 2 allow remote attackers to inject arbitrary web script or HTML via t
OrtaCVSS 4,3Kavram kanıtıEPSS %1comscripts · gedcom to mysl7 Nis 2009
- CVE-2010-111317İzleyin
Cross-site scripting (XSS) vulnerability in the forum page in Web Server Creator - Web Portal 0.1 allows remote attackers to inject arbitrar
OrtaCVSS 4,3Kavram kanıtıEPSS %1comscripts · web server creator web portal25 Mar 2010