datev kayıtları
datev üreticisine ait 4 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-426 Untrusted Search Path1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
4 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
42Planlayın | CVE-2010-0689İstismar yok | The ExecuteExe method in the DVBSExeCall Control ActiveX control 1.0.0.1 in DVBSExeCall.ocx in DATEV Base System (aka Grundpaket Basis) allodatev · base system | Kritik10,0 | — | %6,0 | 26 Şub 2010 |
38İzleyin | CVE-2011-5158İstismar yok | Multiple untrusted search path vulnerabilities in the DMTGUI2.EXE and DvInesLogFileViewer.Exe components in DATEV Grundpaket Basis CD23.20 adatev · grundpaket basis · CWE-426 | Kritik9,3 | — | %2,0 | 7 Eyl 2012 |
24İzleyin | CVE-2023-33387İstismar yok | A reflected cross-site scripting (XSS) vulnerability in DATEV eG Personal-Management System Comfort/Comfort Plus v15.1.0 to v16.1.1 P4 allowdatev · eg personal-management system comfort\/comfort plus · CWE-79 | Orta6,1 | — | %0,5 | 22 Haz 2023 |
18İzleyin | CVE-2003-1169Kavram kanıtı | DATEV Nutzungskontrolle 2.1 and 2.2 has insecure write permissions for critical registry keys, which allows local users to bypass access resdatev · nutzungskontrolle | Orta4,6 | — | %0,8 | 31 Ara 2003 |
- CVE-2010-068942Planlayın
The ExecuteExe method in the DVBSExeCall Control ActiveX control 1.0.0.1 in DVBSExeCall.ocx in DATEV Base System (aka Grundpaket Basis) allo
KritikCVSS 10,0İstismar yokEPSS %6datev · base system26 Şub 2010
- CVE-2011-515838İzleyin
Multiple untrusted search path vulnerabilities in the DMTGUI2.EXE and DvInesLogFileViewer.Exe components in DATEV Grundpaket Basis CD23.20 a
KritikCVSS 9,3İstismar yokEPSS %2datev · grundpaket basis7 Eyl 2012
- CVE-2023-3338724İzleyin
A reflected cross-site scripting (XSS) vulnerability in DATEV eG Personal-Management System Comfort/Comfort Plus v15.1.0 to v16.1.1 P4 allow
OrtaCVSS 6,1İstismar yokEPSS %1datev · eg personal-management system comfort\/comfort plus22 Haz 2023
- CVE-2003-116918İzleyin
DATEV Nutzungskontrolle 2.1 and 2.2 has insecure write permissions for critical registry keys, which allows local users to bypass access res
OrtaCVSS 4,6Kavram kanıtıEPSS %1datev · nutzungskontrolle31 Ara 2003