dcscripts kayıtları
dcscripts üreticisine ait 10 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tüm kayıtlar
10 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2001-0527Kavram kanıtı | DCScripts DCForum versions 2000 and earlier allow a remote attacker to gain additional privileges by inserting pipe symbols (|) and newlinesdcscripts · dcforum | Kritik10,0 | — | %4,5 | 14 Ağu 2001 |
31İzleyin | CVE-2001-0436İstismar yok | dcboard.cgi in DCForum 2000 1.0 allows remote attackers to execute arbitrary commands by uploading a Perl program to the server and using a dcscripts · dcforum | Yüksek7,5 | — | %2,4 | 2 Tem 2001 |
31İzleyin | CVE-2002-0226İstismar yok | retrieve_password.pl in DCForum 6.x and 2000 generates predictable new passwords based on a sessionID, which allows remote attackers to requdcscripts · dcforum | Yüksek7,5 | — | %1,7 | 16 May 2002 |
28İzleyin | CVE-2000-1132Kavram kanıtı | DCForum cgforum.cgi CGI script allows remote attackers to read arbitrary files, and delete the program itself, via a malformed "forum" variadcscripts · dcforum | Orta6,4 | — | %9,3 | 9 Oca 2001 |
21İzleyin | CVE-2001-0821Kavram kanıtı | The default configuration of DCShop 1.002 beta places sensitive files in the cgi-bin directory, which could allow remote attackers to read sdcscripts · dcshop | Orta5,0 | — | %3,9 | 6 Ara 2001 |
21İzleyin | CVE-2002-0492Kavram kanıtı | dcshop.cgi in DCShop 1.002 Beta allows remote attackers to delete arbitrary setup files via a null character in the database parameter.dcscripts · dcshop | Orta5,0 | — | %2,0 | 12 Ağu 2002 |
21İzleyin | CVE-2001-0437İstismar yok | upload_file.pl in DCForum 2000 1.0 allows remote attackers to upload arbitrary files without authentication by setting the az parameter to udcscripts · dcforum | Orta5,0 | — | %1,7 | 2 Tem 2001 |
20İzleyin | CVE-2006-2050İstismar yok | SQL injection vulnerability in dcboard.cgi in DCScripts DCForumLite 3.0 allows remote attackers to execute arbitrary SQL commands via the azdcscripts · dcforumlite | Orta5,0 | — | %1,3 | 26 Nis 2006 |
18İzleyin | CVE-2005-4311Kavram kanıtı | Cross-site scripting (XSS) vulnerability in DCForum 6.25 and earlier, and possibly DCForum+ 1.x, allows remote attackers to inject arbitrarydcscripts · dcforum | Orta4,3 | — | %1,7 | 16 Ara 2005 |
17İzleyin | CVE-2006-2049İstismar yok | Cross-site scripting (XSS) vulnerability in dcboard.cgi in DCScripts DCForumLite 3.0 allows remote attackers to inject arbitrary web script dcscripts · dcforumlite | Orta4,3 | — | %1,4 | 26 Nis 2006 |
- CVE-2001-052741Planlayın
DCScripts DCForum versions 2000 and earlier allow a remote attacker to gain additional privileges by inserting pipe symbols (|) and newlines
KritikCVSS 10,0Kavram kanıtıEPSS %5dcscripts · dcforum14 Ağu 2001
- CVE-2001-043631İzleyin
dcboard.cgi in DCForum 2000 1.0 allows remote attackers to execute arbitrary commands by uploading a Perl program to the server and using a
YüksekCVSS 7,5İstismar yokEPSS %2dcscripts · dcforum2 Tem 2001
- CVE-2002-022631İzleyin
retrieve_password.pl in DCForum 6.x and 2000 generates predictable new passwords based on a sessionID, which allows remote attackers to requ
YüksekCVSS 7,5İstismar yokEPSS %2dcscripts · dcforum16 May 2002
- CVE-2000-113228İzleyin
DCForum cgforum.cgi CGI script allows remote attackers to read arbitrary files, and delete the program itself, via a malformed "forum" varia
OrtaCVSS 6,4Kavram kanıtıEPSS %9dcscripts · dcforum9 Oca 2001
- CVE-2001-082121İzleyin
The default configuration of DCShop 1.002 beta places sensitive files in the cgi-bin directory, which could allow remote attackers to read s
OrtaCVSS 5,0Kavram kanıtıEPSS %4dcscripts · dcshop6 Ara 2001
- CVE-2002-049221İzleyin
dcshop.cgi in DCShop 1.002 Beta allows remote attackers to delete arbitrary setup files via a null character in the database parameter.
OrtaCVSS 5,0Kavram kanıtıEPSS %2dcscripts · dcshop12 Ağu 2002
- CVE-2001-043721İzleyin
upload_file.pl in DCForum 2000 1.0 allows remote attackers to upload arbitrary files without authentication by setting the az parameter to u
OrtaCVSS 5,0İstismar yokEPSS %2dcscripts · dcforum2 Tem 2001
- CVE-2006-205020İzleyin
SQL injection vulnerability in dcboard.cgi in DCScripts DCForumLite 3.0 allows remote attackers to execute arbitrary SQL commands via the az
OrtaCVSS 5,0İstismar yokEPSS %1dcscripts · dcforumlite26 Nis 2006
- CVE-2005-431118İzleyin
Cross-site scripting (XSS) vulnerability in DCForum 6.25 and earlier, and possibly DCForum+ 1.x, allows remote attackers to inject arbitrary
OrtaCVSS 4,3Kavram kanıtıEPSS %2dcscripts · dcforum16 Ara 2005
- CVE-2006-204917İzleyin
Cross-site scripting (XSS) vulnerability in dcboard.cgi in DCScripts DCForumLite 3.0 allows remote attackers to inject arbitrary web script
OrtaCVSS 4,3İstismar yokEPSS %1dcscripts · dcforumlite26 Nis 2006