corebos kayıtları
corebos üreticisine ait 9 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-1236 Improper Neutralization of Formula Elements in a CSV File1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-620 Unverified Password Change1
- CWE-732 Incorrect Permission Assignment for Critical Resource1
- CWE-98 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
9 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2022-4446İstismar yok | PHP Remote File Inclusion in tsolucio/coreboscorebos · corebos · CWE-98 | Kritik9,8 | — | %1,3 | 13 Ara 2022 |
39İzleyin | CVE-2023-3069İstismar yok | Unverified Password Change in tsolucio/coreboscorebos · corebos · CWE-620 | Kritik9,8 | — | %0,6 | 2 Haz 2023 |
32İzleyin | CVE-2023-48029İstismar yok | Corebos 8.0 and below is vulnerable to CSV Injection.corebos · corebos · CWE-1236 | Yüksek8,0 | — | %1,3 | 17 Kas 2023 |
26İzleyin | CVE-2023-3075İstismar yok | Cross-Site Request Forgery (CSRF) in tsolucio/coreboscorebos · corebos · CWE-352 | Orta6,5 | — | %0,3 | 2 Haz 2023 |
21İzleyin | CVE-2018-1000547İstismar yok | coreBOS version 7.0 and earlier contains a Incorrect Access Control vulnerability in Module: Contacts that can result in The error allows yocorebos · corebos · CWE-732 | Orta5,3 | — | %0,8 | 26 Haz 2018 |
21İzleyin | CVE-2023-3070İstismar yok | Cross-site Scripting (XSS) - Stored in tsolucio/coreboscorebos · corebos · CWE-79 | Orta5,4 | — | %0,6 | 2 Haz 2023 |
21İzleyin | CVE-2023-1527İstismar yok | Cross-site Scripting (XSS) - Generic in tsolucio/coreboscorebos · corebos · CWE-79 | Orta5,4 | — | %0,5 | 20 Mar 2023 |
21İzleyin | CVE-2023-3074İstismar yok | Cross-site Scripting (XSS) - Stored in tsolucio/coreboscorebos · corebos · CWE-79 | Orta5,4 | — | %0,5 | 2 Haz 2023 |
21İzleyin | CVE-2023-3073İstismar yok | Cross-site Scripting (XSS) - Stored in tsolucio/coreboscorebos · corebos · CWE-79 | Orta5,4 | — | %0,5 | 2 Haz 2023 |
- CVE-2022-444639İzleyin
PHP Remote File Inclusion in tsolucio/corebos
KritikCVSS 9,8İstismar yokEPSS %1corebos · corebos13 Ara 2022
- CVE-2023-306939İzleyin
Unverified Password Change in tsolucio/corebos
KritikCVSS 9,8İstismar yokEPSS %1corebos · corebos2 Haz 2023
- CVE-2023-4802932İzleyin
Corebos 8.0 and below is vulnerable to CSV Injection.
YüksekCVSS 8,0İstismar yokEPSS %1corebos · corebos17 Kas 2023
- CVE-2023-307526İzleyin
Cross-Site Request Forgery (CSRF) in tsolucio/corebos
OrtaCVSS 6,5İstismar yokEPSS %0corebos · corebos2 Haz 2023
- CVE-2018-100054721İzleyin
coreBOS version 7.0 and earlier contains a Incorrect Access Control vulnerability in Module: Contacts that can result in The error allows yo
OrtaCVSS 5,3İstismar yokEPSS %1corebos · corebos26 Haz 2018
- CVE-2023-307021İzleyin
Cross-site Scripting (XSS) - Stored in tsolucio/corebos
OrtaCVSS 5,4İstismar yokEPSS %1corebos · corebos2 Haz 2023
- CVE-2023-152721İzleyin
Cross-site Scripting (XSS) - Generic in tsolucio/corebos
OrtaCVSS 5,4İstismar yokEPSS %1corebos · corebos20 Mar 2023
- CVE-2023-307421İzleyin
Cross-site Scripting (XSS) - Stored in tsolucio/corebos
OrtaCVSS 5,4İstismar yokEPSS %1corebos · corebos2 Haz 2023
- CVE-2023-307321İzleyin
Cross-site Scripting (XSS) - Stored in tsolucio/corebos
OrtaCVSS 5,4İstismar yokEPSS %0corebos · corebos2 Haz 2023