İçeriğe atla
Noroxi

dcscripts kayıtları

dcscripts üreticisine ait 10 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
2
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Yıllara göre kayıt

    Çubuk: toplam · koyu kısım: CISA KEV.

    Tekrar eden sınıflar

      Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.

      CWE

      Tüm kayıtlar

      10 kayıt
      • CVE-2001-0527
        41Planlayın

        DCScripts DCForum versions 2000 and earlier allow a remote attacker to gain additional privileges by inserting pipe symbols (|) and newlines

        KritikCVSS 10,0Kavram kanıtıEPSS %5

        dcscripts · dcforum14 Ağu 2001

      • CVE-2001-0436
        31İzleyin

        dcboard.cgi in DCForum 2000 1.0 allows remote attackers to execute arbitrary commands by uploading a Perl program to the server and using a

        YüksekCVSS 7,5İstismar yokEPSS %2

        dcscripts · dcforum2 Tem 2001

      • CVE-2002-0226
        31İzleyin

        retrieve_password.pl in DCForum 6.x and 2000 generates predictable new passwords based on a sessionID, which allows remote attackers to requ

        YüksekCVSS 7,5İstismar yokEPSS %2

        dcscripts · dcforum16 May 2002

      • CVE-2000-1132
        28İzleyin

        DCForum cgforum.cgi CGI script allows remote attackers to read arbitrary files, and delete the program itself, via a malformed "forum" varia

        OrtaCVSS 6,4Kavram kanıtıEPSS %9

        dcscripts · dcforum9 Oca 2001

      • CVE-2001-0821
        21İzleyin

        The default configuration of DCShop 1.002 beta places sensitive files in the cgi-bin directory, which could allow remote attackers to read s

        OrtaCVSS 5,0Kavram kanıtıEPSS %4

        dcscripts · dcshop6 Ara 2001

      • CVE-2002-0492
        21İzleyin

        dcshop.cgi in DCShop 1.002 Beta allows remote attackers to delete arbitrary setup files via a null character in the database parameter.

        OrtaCVSS 5,0Kavram kanıtıEPSS %2

        dcscripts · dcshop12 Ağu 2002

      • CVE-2001-0437
        21İzleyin

        upload_file.pl in DCForum 2000 1.0 allows remote attackers to upload arbitrary files without authentication by setting the az parameter to u

        OrtaCVSS 5,0İstismar yokEPSS %2

        dcscripts · dcforum2 Tem 2001

      • CVE-2006-2050
        20İzleyin

        SQL injection vulnerability in dcboard.cgi in DCScripts DCForumLite 3.0 allows remote attackers to execute arbitrary SQL commands via the az

        OrtaCVSS 5,0İstismar yokEPSS %1

        dcscripts · dcforumlite26 Nis 2006

      • CVE-2005-4311
        18İzleyin

        Cross-site scripting (XSS) vulnerability in DCForum 6.25 and earlier, and possibly DCForum+ 1.x, allows remote attackers to inject arbitrary

        OrtaCVSS 4,3Kavram kanıtıEPSS %2

        dcscripts · dcforum16 Ara 2005

      • CVE-2006-2049
        17İzleyin

        Cross-site scripting (XSS) vulnerability in dcboard.cgi in DCScripts DCForumLite 3.0 allows remote attackers to inject arbitrary web script

        OrtaCVSS 4,3İstismar yokEPSS %1

        dcscripts · dcforumlite26 Nis 2006