İçeriğe atla
Noroxi

dedebiz kayıtları

dedebiz üreticisine ait 31 yayımlanmış kayıt.

Tüm kayıtlar

31 kayıt
  • CVE-2023-31546
    53Planlayın

    Cross Site Scripting (XSS) vulnerability in DedeBIZ v6.0.3 allows attackers to run arbitrary code via the search feature.

    KritikCVSS 9,6Kavram kanıtıEPSS %49

    dedebiz · dedebiz13 Ara 2023

  • CVE-2022-44118
    40Planlayın

    dedecmdv6 v6.1.9 is vulnerable to Remote Code Execution (RCE) via file_manage_control.php.

    KritikCVSS 9,8Kavram kanıtıEPSS %2

    dedebiz · dedecmsv623 Kas 2022

  • CVE-2023-43234
    39İzleyin

    DedeBIZ v6.2.11 was discovered to contain multiple remote code execution (RCE) vulnerabilities at /admin/file_manage_control.php via the $ac

    KritikCVSS 9,8İstismar yokEPSS %1

    dedebiz · dedebiz27 Eyl 2023

  • CVE-2024-52770
    39İzleyin

    An arbitrary file upload vulnerability in the component /admin/file_manage_control of DedeBIZ v6.3.0 allows attackers to execute arbitrary c

    KritikCVSS 9,8İstismar yokEPSS %1

    dedebiz · dedebiz20 Kas 2024

  • CVE-2022-44120
    39İzleyin

    dedecmdv6 6.1.9 is vulnerable to SQL Injection.

    KritikCVSS 9,8İstismar yokEPSS %1

    dedebiz · dedecmsv623 Kas 2022

  • CVE-2022-43196
    36İzleyin

    dedecmdv6 v6.1.9 is vulnerable to Arbitrary file deletion via file_manage_control.php.

    KritikCVSS 9,1İstismar yokEPSS %1

    dedebiz · dedecmsv623 Kas 2022

  • CVE-2024-52771
    36İzleyin

    DedeBIZ v6.3.0 was discovered to contain an arbitrary file deletion vulnerability via the component /admin/file_manage_view.

    KritikCVSS 9,1İstismar yokEPSS %1

    dedebiz · dedebiz20 Kas 2024

  • CVE-2023-5266
    35İzleyin

    DedeBIZ tags_main.php sql injection

    YüksekCVSS 8,8İstismar yokEPSS %1

    dedebiz · dedebiz29 Eyl 2023

  • CVE-2022-36215
    29İzleyin

    DedeBIZ v6 was discovered to contain a remote code execution vulnerability in sys_info.php.

    YüksekCVSS 7,2İstismar yokEPSS %2

    dedebiz · dedecmsv617 Ağu 2022

  • CVE-2023-7181
    28İzleyin

    Muyun DedeBIZ Add Attachment unrestricted upload

    YüksekCVSS 7,2İstismar yokEPSS %1

    dedebiz · dedebiz30 Ara 2023

  • CVE-2024-52769
    28İzleyin

    An arbitrary file upload vulnerability in the component /admin/friendlink_edit of DedeBIZ v6.3.0 allows attackers to execute arbitrary code

    YüksekCVSS 7,2İstismar yokEPSS %1

    dedebiz · dedebiz20 Kas 2024

  • CVE-2023-6755
    28İzleyin

    DedeBIZ content_batchup_action.php sql injection

    YüksekCVSS 7,2İstismar yokEPSS %1

    dedebiz · dedebiz13 Ara 2023

  • CVE-2023-3839
    28İzleyin

    DedeBIZ sys_sql_query.php sql injection

    YüksekCVSS 7,2İstismar yokEPSS %1

    dedebiz · dedebiz22 Tem 2023

  • CVE-2024-0558
    28İzleyin

    DedeBIZ makehtml_freelist_action.php sql injection

    YüksekCVSS 7,2İstismar yokEPSS %1

    dedebiz · dedebiz15 Oca 2024

  • CVE-2023-5268
    28İzleyin

    DedeBIZ makehtml_taglist_action.php sql injection

    YüksekCVSS 7,2İstismar yokEPSS %1

    dedebiz · dedebiz29 Eyl 2023

  • CVE-2024-44716
    24İzleyin

    A cross-site scripting (XSS) vulnerability in DedeBIZ v6.3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload

    OrtaCVSS 6,1İstismar yokEPSS %0

    dedebiz · dedebiz29 Ağu 2024

  • CVE-2024-44717
    24İzleyin

    A cross-site scripting (XSS) vulnerability in DedeBIZ v6.3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload

    OrtaCVSS 6,1İstismar yokEPSS %0

    dedebiz · dedebiz29 Ağu 2024

  • CVE-2024-7903
    21İzleyin

    DedeBIZ File Extension media_add.php unrestricted upload

    OrtaCVSS 5,3İstismar yokEPSS %1

    dedebiz · dedebiz18 Ağu 2024

  • CVE-2024-7904
    21İzleyin

    DedeBIZ File Extension file_manage_control.php unrestricted upload

    OrtaCVSS 5,3İstismar yokEPSS %1

    dedebiz · dedebiz18 Ağu 2024

  • CVE-2024-7905
    21İzleyin

    DedeBIZ archives_do.php AdminUpload unrestricted upload

    OrtaCVSS 5,3İstismar yokEPSS %1

    dedebiz · dedebiz18 Ağu 2024

  • CVE-2024-7906
    21İzleyin

    DedeBIZ Attachment Settings select_images_post.php get_mime_type unrestricted upload

    OrtaCVSS 5,3İstismar yokEPSS %0

    dedebiz · dedebiz18 Ağu 2024

  • CVE-2024-0557
    21İzleyin

    DedeBIZ Website Copyright Setting cross site scripting

    OrtaCVSS 5,4İstismar yokEPSS %0

    dedebiz · dedebiz15 Oca 2024

  • CVE-2023-43232
    21İzleyin

    A stored cross-site scripting (XSS) vulnerability in the Website column management function of DedeBIZ v6.2.11 allows attackers to execute a

    OrtaCVSS 5,4İstismar yokEPSS %0

    dedebiz · dedebiz27 Eyl 2023

  • CVE-2023-3837
    19İzleyin

    DedeBIZ sys_sql_query.php cross site scripting

    OrtaCVSS 4,8İstismar yokEPSS %1

    dedebiz · dedebiz22 Tem 2023

  • CVE-2023-4170
    19İzleyin

    DedeBIZ Article cross site scripting

    OrtaCVSS 4,8İstismar yokEPSS %1

    dedebiz · dedebiz5 Ağu 2023