İçeriğe atla
Noroxi

derbynet kayıtları

derbynet üreticisine ait 11 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
6
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

11 kayıt
  • CVE-2024-31818
    40Planlayın

    Directory Traversal vulnerability in DerbyNet v.9.0 allows a remote attacker to execute arbitrary code via the page parameter of the kiosk.p

    KritikCVSS 9,8İstismar yokEPSS %2

    derbynet · derbynet12 Nis 2024

  • CVE-2024-30922
    39İzleyin

    SQL Injection vulnerability in DerbyNet v9.0 allows a remote attacker to execute arbitrary code via the where Clause in Award Document Rende

    KritikCVSS 9,8İstismar yokEPSS %1

    derbynet · derbynet18 Nis 2024

  • CVE-2024-30923
    39İzleyin

    SQL Injection vulnerability in DerbyNet v9.0 and below allows a remote attacker to execute arbitrary code via the where Clause in Racer Docu

    KritikCVSS 9,8İstismar yokEPSS %1

    derbynet · derbynet18 Nis 2024

  • CVE-2024-30929
    32İzleyin

    Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the 'back' Parameter in playlis

    YüksekCVSS 8,0İstismar yokEPSS %1

    derbynet · derbynet18 Nis 2024

  • CVE-2024-30928
    32İzleyin

    SQL Injection vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary SQL commands via 'classids' Parameter in ajax/q

    YüksekCVSS 8,1İstismar yokEPSS %1

    derbynet · derbynet18 Nis 2024

  • CVE-2024-30920
    29İzleyin

    Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows a remote attacker to execute arbitrary code via the render-document.php

    YüksekCVSS 7,4İstismar yokEPSS %1

    derbynet · derbynet18 Nis 2024

  • CVE-2024-30925
    26İzleyin

    Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the photo-thumbs.php component.

    OrtaCVSS 6,5İstismar yokEPSS %1

    derbynet · derbynet18 Nis 2024

  • CVE-2024-30927
    25İzleyin

    Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the racer-results.php component

    OrtaCVSS 6,3İstismar yokEPSS %1

    derbynet · derbynet18 Nis 2024

  • CVE-2024-30921
    21İzleyin

    Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows a remote attacker to execute arbitrary code via the photo.php component

    OrtaCVSS 5,4İstismar yokEPSS %1

    derbynet · derbynet18 Nis 2024

  • CVE-2024-30926
    18İzleyin

    Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the ./inc/kiosks.inc component.

    OrtaCVSS 4,6İstismar yokEPSS %1

    derbynet · derbynet18 Nis 2024

  • CVE-2024-30924
    18İzleyin

    Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the checkin.php component.

    OrtaCVSS 4,6İstismar yokEPSS %0

    derbynet · derbynet18 Nis 2024