duware kayıtları
duware üreticisine ait 23 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 17
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tüm kayıtlar
23 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2006-6355Kavram kanıtı | SQL injection vulnerability in default.asp in DuWare DuClassmate allows remote attackers to execute arbitrary SQL commands via the iCity parduware · duclassmate | Kritik10,0 | — | %1,8 | 6 Ara 2006 |
31İzleyin | CVE-2005-1224Kavram kanıtı | Multiple SQL injection vulnerabilities in DUware DUportal Pro 3.4 allow remote attackers to execute arbitrary SQL commands via the (1) nChanduware · duportal | Yüksek7,5 | — | %3,7 | 2 May 2005 |
31İzleyin | CVE-2005-2048Kavram kanıtı | Multiple SQL injection vulnerabilities in DUware DUforum 3.1, and possibly other versions, allow remote attackers to execute arbitrary SQL cduware · duforum | Yüksek7,5 | — | %2,4 | 22 Haz 2005 |
31İzleyin | CVE-2005-1236Kavram kanıtı | Multiple SQL injection vulnerabilities in DUware DUportal 3.1.2 and 3.1.2 SQL allow remote attackers to execute arbitrary SQL commands via tduware · duportal | Yüksek7,5 | — | %2,4 | 2 May 2005 |
31İzleyin | CVE-2005-2049Kavram kanıtı | Multiple SQL injection vulnerabilities in DUware DUclassmate 1.2 allow remote attackers to execute arbitrary SQL commands via the (1) iStateduware · duclassmate | Yüksek7,5 | — | %2,4 | 22 Haz 2005 |
31İzleyin | CVE-2005-2046Kavram kanıtı | Multiple SQL injection vulnerabilities in DUware DUamazon Pro 3.0 and 3.1 allow remote attackers to execute arbitrary SQL commands via the (duware · duamazon pro | Yüksek7,5 | — | %2,1 | 22 Haz 2005 |
31İzleyin | CVE-2006-6354İstismar yok | Multiple SQL injection vulnerabilities in detail.asp in DuWare DuNews allow remote attackers to execute arbitrary SQL commands via the (1) iduware · duamazon | Yüksek7,5 | — | %1,7 | 6 Ara 2006 |
30İzleyin | CVE-2006-6367Kavram kanıtı | Multiple SQL injection vulnerabilities in detail.asp in DUware DUdownload 1.1, and possibly earlier, allow remote attackers to execute arbitduware · dudownload · CWE-89 | Yüksek7,5 | — | %1,6 | 7 Ara 2006 |
30İzleyin | CVE-2004-2202Kavram kanıtı | Multiple SQL injection vulnerabilities in DUware DUclassified 4.0 through 4.2 allows remote attackers to bypass authentication and execute oduware · duclassified | Yüksek7,5 | — | %1,5 | 31 Ara 2004 |
30İzleyin | CVE-2006-6365Kavram kanıtı | SQL injection vulnerability in detail.asp in DUware DUpaypal 3.1, and possibly earlier, allows remote attackers to execute arbitrary SQL comduware · dupaypal | Yüksek7,5 | — | %1,4 | 7 Ara 2006 |
30İzleyin | CVE-2005-2045İstismar yok | Multiple SQL injection vulnerabilities in DUware DUportal PRO 3.4.3 allow remote attackers to execute arbitrary SQL commands via the (1) iChduware · duportal pro | Yüksek7,5 | — | %1,3 | 22 Haz 2005 |
30İzleyin | CVE-2006-6455İstismar yok | Multiple SQL injection vulnerabilities in admin/default.asp in DUware DUdirectory 3.1, and possibly DUdirectory Pro and Pro SQL 3.x, allow rduware · dudirectory | Yüksek7,5 | — | %1,3 | 10 Ara 2006 |
30İzleyin | CVE-2006-2302İstismar yok | SQL injection vulnerability in admin_default.asp in DUGallery 2.x allows remote attackers to execute arbitrary SQL commands via the (1) Logiduware · dugallery | Yüksek7,5 | — | %1,3 | 11 May 2006 |
30İzleyin | CVE-2004-2201Kavram kanıtı | SQL injection vulnerability in DUware DUforum 3.0 through 3.1 allows remote attackers to execute arbitrary SQL commands via the FOR_ID paramduware · duforum | Yüksek7,5 | — | %1,3 | 31 Ara 2004 |
30İzleyin | CVE-2005-3976İstismar yok | SQL injection vulnerability in type.asp, as used in multiple DUware products including (1) DUamazon 3.1, (2) DUarticle 1.1, (3) DUclassifiedduware · duamazon | Yüksek7,5 | — | %1,2 | 3 Ara 2005 |
30İzleyin | CVE-2005-2047İstismar yok | Multiple SQL injection vulnerabilities in DUware DUpaypal Pro 3.0 allow remote attackers to execute arbitrary SQL commands via the (1) iCat duware · dupaypal pro | Yüksek7,5 | — | %1,2 | 22 Haz 2005 |
30İzleyin | CVE-2008-2868Kavram kanıtı | SQL injection vulnerability in detail.asp in DUware DUcalendar 1.0 and possibly earlier allows remote attackers to execute arbitrary SQL comduware · ducalendar · CWE-89 | Yüksek7,5 | — | %1,2 | 26 Haz 2008 |
27İzleyin | CVE-2004-2198Kavram kanıtı | account.asp in DUware DUclassmate 1.0 through 1.1 allows remote attackers to change the passwords for arbitrary users by modifying the MM_reduware · duclassmate | Orta6,4 | — | %6,1 | 31 Ara 2004 |
25İzleyin | CVE-2006-2132Kavram kanıtı | SQL injection vulnerability in detail.asp in DUclassified allows remote attackers to execute arbitrary SQL commands via the iPro parameter.duware · duclassified | Orta6,4 | — | %0,9 | 1 May 2006 |
20İzleyin | CVE-2006-4487İstismar yok | DUware DUpoll 3.0 and 3.1 stores _private/Dupoll.mdb under the web document root with insufficient access control, which allows remote attacduware · dupoll | Orta5,0 | — | %1,7 | 31 Ağu 2006 |
18İzleyin | CVE-2004-2200İstismar yok | Cross-site scripting (XSS) vulnerability in DUware DUforum 3.0 through 3.1 allows remote attackers to inject arbitrary web script or HTML viduware · duforum | Orta4,3 | — | %1,9 | 31 Ara 2004 |
18İzleyin | CVE-2004-2199İstismar yok | Cross-site scripting (XSS) vulnerability in DUware DUclassified 4.0 allows remote attackers to inject arbitrary web script or HTML via the mduware · duclassified | Orta4,3 | — | %1,9 | 31 Ara 2004 |
18İzleyin | CVE-2005-4166Kavram kanıtı | Cross-site scripting (XSS) vulnerability in password.asp in DUWare DUportal Pro 3.4.3 allows remote attackers to inject arbitrary web scriptduware · duportal pro | Orta4,3 | — | %1,8 | 11 Ara 2005 |
- CVE-2006-635541Planlayın
SQL injection vulnerability in default.asp in DuWare DuClassmate allows remote attackers to execute arbitrary SQL commands via the iCity par
KritikCVSS 10,0Kavram kanıtıEPSS %2duware · duclassmate6 Ara 2006
- CVE-2005-122431İzleyin
Multiple SQL injection vulnerabilities in DUware DUportal Pro 3.4 allow remote attackers to execute arbitrary SQL commands via the (1) nChan
YüksekCVSS 7,5Kavram kanıtıEPSS %4duware · duportal2 May 2005
- CVE-2005-204831İzleyin
Multiple SQL injection vulnerabilities in DUware DUforum 3.1, and possibly other versions, allow remote attackers to execute arbitrary SQL c
YüksekCVSS 7,5Kavram kanıtıEPSS %2duware · duforum22 Haz 2005
- CVE-2005-123631İzleyin
Multiple SQL injection vulnerabilities in DUware DUportal 3.1.2 and 3.1.2 SQL allow remote attackers to execute arbitrary SQL commands via t
YüksekCVSS 7,5Kavram kanıtıEPSS %2duware · duportal2 May 2005
- CVE-2005-204931İzleyin
Multiple SQL injection vulnerabilities in DUware DUclassmate 1.2 allow remote attackers to execute arbitrary SQL commands via the (1) iState
YüksekCVSS 7,5Kavram kanıtıEPSS %2duware · duclassmate22 Haz 2005
- CVE-2005-204631İzleyin
Multiple SQL injection vulnerabilities in DUware DUamazon Pro 3.0 and 3.1 allow remote attackers to execute arbitrary SQL commands via the (
YüksekCVSS 7,5Kavram kanıtıEPSS %2duware · duamazon pro22 Haz 2005
- CVE-2006-635431İzleyin
Multiple SQL injection vulnerabilities in detail.asp in DuWare DuNews allow remote attackers to execute arbitrary SQL commands via the (1) i
YüksekCVSS 7,5İstismar yokEPSS %2duware · duamazon6 Ara 2006
- CVE-2006-636730İzleyin
Multiple SQL injection vulnerabilities in detail.asp in DUware DUdownload 1.1, and possibly earlier, allow remote attackers to execute arbit
YüksekCVSS 7,5Kavram kanıtıEPSS %2duware · dudownload7 Ara 2006
- CVE-2004-220230İzleyin
Multiple SQL injection vulnerabilities in DUware DUclassified 4.0 through 4.2 allows remote attackers to bypass authentication and execute o
YüksekCVSS 7,5Kavram kanıtıEPSS %1duware · duclassified31 Ara 2004
- CVE-2006-636530İzleyin
SQL injection vulnerability in detail.asp in DUware DUpaypal 3.1, and possibly earlier, allows remote attackers to execute arbitrary SQL com
YüksekCVSS 7,5Kavram kanıtıEPSS %1duware · dupaypal7 Ara 2006
- CVE-2005-204530İzleyin
Multiple SQL injection vulnerabilities in DUware DUportal PRO 3.4.3 allow remote attackers to execute arbitrary SQL commands via the (1) iCh
YüksekCVSS 7,5İstismar yokEPSS %1duware · duportal pro22 Haz 2005
- CVE-2006-645530İzleyin
Multiple SQL injection vulnerabilities in admin/default.asp in DUware DUdirectory 3.1, and possibly DUdirectory Pro and Pro SQL 3.x, allow r
YüksekCVSS 7,5İstismar yokEPSS %1duware · dudirectory10 Ara 2006
- CVE-2006-230230İzleyin
SQL injection vulnerability in admin_default.asp in DUGallery 2.x allows remote attackers to execute arbitrary SQL commands via the (1) Logi
YüksekCVSS 7,5İstismar yokEPSS %1duware · dugallery11 May 2006
- CVE-2004-220130İzleyin
SQL injection vulnerability in DUware DUforum 3.0 through 3.1 allows remote attackers to execute arbitrary SQL commands via the FOR_ID param
YüksekCVSS 7,5Kavram kanıtıEPSS %1duware · duforum31 Ara 2004
- CVE-2005-397630İzleyin
SQL injection vulnerability in type.asp, as used in multiple DUware products including (1) DUamazon 3.1, (2) DUarticle 1.1, (3) DUclassified
YüksekCVSS 7,5İstismar yokEPSS %1duware · duamazon3 Ara 2005
- CVE-2005-204730İzleyin
Multiple SQL injection vulnerabilities in DUware DUpaypal Pro 3.0 allow remote attackers to execute arbitrary SQL commands via the (1) iCat
YüksekCVSS 7,5İstismar yokEPSS %1duware · dupaypal pro22 Haz 2005
- CVE-2008-286830İzleyin
SQL injection vulnerability in detail.asp in DUware DUcalendar 1.0 and possibly earlier allows remote attackers to execute arbitrary SQL com
YüksekCVSS 7,5Kavram kanıtıEPSS %1duware · ducalendar26 Haz 2008
- CVE-2004-219827İzleyin
account.asp in DUware DUclassmate 1.0 through 1.1 allows remote attackers to change the passwords for arbitrary users by modifying the MM_re
OrtaCVSS 6,4Kavram kanıtıEPSS %6duware · duclassmate31 Ara 2004
- CVE-2006-213225İzleyin
SQL injection vulnerability in detail.asp in DUclassified allows remote attackers to execute arbitrary SQL commands via the iPro parameter.
OrtaCVSS 6,4Kavram kanıtıEPSS %1duware · duclassified1 May 2006
- CVE-2006-448720İzleyin
DUware DUpoll 3.0 and 3.1 stores _private/Dupoll.mdb under the web document root with insufficient access control, which allows remote attac
OrtaCVSS 5,0İstismar yokEPSS %2duware · dupoll31 Ağu 2006
- CVE-2004-220018İzleyin
Cross-site scripting (XSS) vulnerability in DUware DUforum 3.0 through 3.1 allows remote attackers to inject arbitrary web script or HTML vi
OrtaCVSS 4,3İstismar yokEPSS %2duware · duforum31 Ara 2004
- CVE-2004-219918İzleyin
Cross-site scripting (XSS) vulnerability in DUware DUclassified 4.0 allows remote attackers to inject arbitrary web script or HTML via the m
OrtaCVSS 4,3İstismar yokEPSS %2duware · duclassified31 Ara 2004
- CVE-2005-416618İzleyin
Cross-site scripting (XSS) vulnerability in password.asp in DUWare DUportal Pro 3.4.3 allows remote attackers to inject arbitrary web script
OrtaCVSS 4,3Kavram kanıtıEPSS %2duware · duportal pro11 Ara 2005