craftycontrol kayıtları
craftycontrol üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %50
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-1336 Improper Neutralization of Special Elements Used in a Template Engine1
- CWE-35 Path Traversal: '.../...//'1
- CWE-639 Authorization Bypass Through User-Controlled Key1
- CWE-644 Improper Neutralization of HTTP Headers for Scripting Syntax1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2025-14700Kavram kanıtı | Improper Neutralization of Special Elements Used in a Template Engine in Crafty Controllercraftycontrol · crafty controller · CWE-1336 | Kritik9,9 | — | %6,6 | 16 Ara 2025 |
36İzleyin | CVE-2026-13716İstismar yok | Path Traversal: '.../...//' in Crafty Controllercraftycontrol · crafty controller · CWE-35 | Kritik9,1 | — | %0,8 | 11 Ağu 2026 |
36İzleyin | CVE-2026-5652İstismar yok | Authorization Bypass Through User-Controlled Key in Crafty Controllercraftycontrol · crafty controller · CWE-639 | Kritik9,0 | — | %0,5 | 21 Nis 2026 |
35İzleyin | CVE-2026-0963İstismar yok | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in Crafty Controllercraftycontrol · crafty controller · CWE-22 | Yüksek8,8 | — | %0,8 | 30 Oca 2026 |
35İzleyin | CVE-2026-0805İstismar yok | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in Crafty Controllercraftycontrol · crafty controller · CWE-22 | Yüksek8,8 | — | %0,7 | 30 Oca 2026 |
30İzleyin | CVE-2024-1064İstismar yok | Improper Neutralization of HTTP Headers for Scripting Syntax in Crafty Controller 4craftycontrol · crafty controller · CWE-644 | Yüksek7,5 | — | %0,8 | 3 Şub 2024 |
28İzleyin | CVE-2025-14701İstismar yok | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in Crafty Controllercraftycontrol · crafty controller · CWE-79 | Yüksek7,1 | — | %0,3 | 16 Ara 2025 |
21İzleyin | CVE-2025-5990İstismar yok | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in Crafty Controllercraftycontrol · crafty controller · CWE-79 | Orta5,4 | — | %0,3 | 15 Haz 2025 |
- CVE-2025-1470041Planlayın
Improper Neutralization of Special Elements Used in a Template Engine in Crafty Controller
KritikCVSS 9,9Kavram kanıtıEPSS %7craftycontrol · crafty controller16 Ara 2025
- CVE-2026-1371636İzleyin
Path Traversal: '.../...//' in Crafty Controller
KritikCVSS 9,1İstismar yokEPSS %1craftycontrol · crafty controller11 Ağu 2026
- CVE-2026-565236İzleyin
Authorization Bypass Through User-Controlled Key in Crafty Controller
KritikCVSS 9,0İstismar yokEPSS %1craftycontrol · crafty controller21 Nis 2026
- CVE-2026-096335İzleyin
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in Crafty Controller
YüksekCVSS 8,8İstismar yokEPSS %1craftycontrol · crafty controller30 Oca 2026
- CVE-2026-080535İzleyin
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in Crafty Controller
YüksekCVSS 8,8İstismar yokEPSS %1craftycontrol · crafty controller30 Oca 2026
- CVE-2024-106430İzleyin
Improper Neutralization of HTTP Headers for Scripting Syntax in Crafty Controller 4
YüksekCVSS 7,5İstismar yokEPSS %1craftycontrol · crafty controller3 Şub 2024
- CVE-2025-1470128İzleyin
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in Crafty Controller
YüksekCVSS 7,1İstismar yokEPSS %0craftycontrol · crafty controller16 Ara 2025
- CVE-2025-599021İzleyin
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in Crafty Controller
OrtaCVSS 5,4İstismar yokEPSS %0craftycontrol · crafty controller15 Haz 2025