İçeriğe atla
Noroxi

duware kayıtları

duware üreticisine ait 23 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
17
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Yıllara göre kayıt

    Çubuk: toplam · koyu kısım: CISA KEV.

    Tekrar eden sınıflar

    Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.

    CWE

    Tüm kayıtlar

    23 kayıt
    • CVE-2006-6355
      41Planlayın

      SQL injection vulnerability in default.asp in DuWare DuClassmate allows remote attackers to execute arbitrary SQL commands via the iCity par

      KritikCVSS 10,0Kavram kanıtıEPSS %2

      duware · duclassmate6 Ara 2006

    • CVE-2005-1224
      31İzleyin

      Multiple SQL injection vulnerabilities in DUware DUportal Pro 3.4 allow remote attackers to execute arbitrary SQL commands via the (1) nChan

      YüksekCVSS 7,5Kavram kanıtıEPSS %4

      duware · duportal2 May 2005

    • CVE-2005-2048
      31İzleyin

      Multiple SQL injection vulnerabilities in DUware DUforum 3.1, and possibly other versions, allow remote attackers to execute arbitrary SQL c

      YüksekCVSS 7,5Kavram kanıtıEPSS %2

      duware · duforum22 Haz 2005

    • CVE-2005-1236
      31İzleyin

      Multiple SQL injection vulnerabilities in DUware DUportal 3.1.2 and 3.1.2 SQL allow remote attackers to execute arbitrary SQL commands via t

      YüksekCVSS 7,5Kavram kanıtıEPSS %2

      duware · duportal2 May 2005

    • CVE-2005-2049
      31İzleyin

      Multiple SQL injection vulnerabilities in DUware DUclassmate 1.2 allow remote attackers to execute arbitrary SQL commands via the (1) iState

      YüksekCVSS 7,5Kavram kanıtıEPSS %2

      duware · duclassmate22 Haz 2005

    • CVE-2005-2046
      31İzleyin

      Multiple SQL injection vulnerabilities in DUware DUamazon Pro 3.0 and 3.1 allow remote attackers to execute arbitrary SQL commands via the (

      YüksekCVSS 7,5Kavram kanıtıEPSS %2

      duware · duamazon pro22 Haz 2005

    • CVE-2006-6354
      31İzleyin

      Multiple SQL injection vulnerabilities in detail.asp in DuWare DuNews allow remote attackers to execute arbitrary SQL commands via the (1) i

      YüksekCVSS 7,5İstismar yokEPSS %2

      duware · duamazon6 Ara 2006

    • CVE-2006-6367
      30İzleyin

      Multiple SQL injection vulnerabilities in detail.asp in DUware DUdownload 1.1, and possibly earlier, allow remote attackers to execute arbit

      YüksekCVSS 7,5Kavram kanıtıEPSS %2

      duware · dudownload7 Ara 2006

    • CVE-2004-2202
      30İzleyin

      Multiple SQL injection vulnerabilities in DUware DUclassified 4.0 through 4.2 allows remote attackers to bypass authentication and execute o

      YüksekCVSS 7,5Kavram kanıtıEPSS %1

      duware · duclassified31 Ara 2004

    • CVE-2006-6365
      30İzleyin

      SQL injection vulnerability in detail.asp in DUware DUpaypal 3.1, and possibly earlier, allows remote attackers to execute arbitrary SQL com

      YüksekCVSS 7,5Kavram kanıtıEPSS %1

      duware · dupaypal7 Ara 2006

    • CVE-2005-2045
      30İzleyin

      Multiple SQL injection vulnerabilities in DUware DUportal PRO 3.4.3 allow remote attackers to execute arbitrary SQL commands via the (1) iCh

      YüksekCVSS 7,5İstismar yokEPSS %1

      duware · duportal pro22 Haz 2005

    • CVE-2006-6455
      30İzleyin

      Multiple SQL injection vulnerabilities in admin/default.asp in DUware DUdirectory 3.1, and possibly DUdirectory Pro and Pro SQL 3.x, allow r

      YüksekCVSS 7,5İstismar yokEPSS %1

      duware · dudirectory10 Ara 2006

    • CVE-2006-2302
      30İzleyin

      SQL injection vulnerability in admin_default.asp in DUGallery 2.x allows remote attackers to execute arbitrary SQL commands via the (1) Logi

      YüksekCVSS 7,5İstismar yokEPSS %1

      duware · dugallery11 May 2006

    • CVE-2004-2201
      30İzleyin

      SQL injection vulnerability in DUware DUforum 3.0 through 3.1 allows remote attackers to execute arbitrary SQL commands via the FOR_ID param

      YüksekCVSS 7,5Kavram kanıtıEPSS %1

      duware · duforum31 Ara 2004

    • CVE-2005-3976
      30İzleyin

      SQL injection vulnerability in type.asp, as used in multiple DUware products including (1) DUamazon 3.1, (2) DUarticle 1.1, (3) DUclassified

      YüksekCVSS 7,5İstismar yokEPSS %1

      duware · duamazon3 Ara 2005

    • CVE-2005-2047
      30İzleyin

      Multiple SQL injection vulnerabilities in DUware DUpaypal Pro 3.0 allow remote attackers to execute arbitrary SQL commands via the (1) iCat

      YüksekCVSS 7,5İstismar yokEPSS %1

      duware · dupaypal pro22 Haz 2005

    • CVE-2008-2868
      30İzleyin

      SQL injection vulnerability in detail.asp in DUware DUcalendar 1.0 and possibly earlier allows remote attackers to execute arbitrary SQL com

      YüksekCVSS 7,5Kavram kanıtıEPSS %1

      duware · ducalendar26 Haz 2008

    • CVE-2004-2198
      27İzleyin

      account.asp in DUware DUclassmate 1.0 through 1.1 allows remote attackers to change the passwords for arbitrary users by modifying the MM_re

      OrtaCVSS 6,4Kavram kanıtıEPSS %6

      duware · duclassmate31 Ara 2004

    • CVE-2006-2132
      25İzleyin

      SQL injection vulnerability in detail.asp in DUclassified allows remote attackers to execute arbitrary SQL commands via the iPro parameter.

      OrtaCVSS 6,4Kavram kanıtıEPSS %1

      duware · duclassified1 May 2006

    • CVE-2006-4487
      20İzleyin

      DUware DUpoll 3.0 and 3.1 stores _private/Dupoll.mdb under the web document root with insufficient access control, which allows remote attac

      OrtaCVSS 5,0İstismar yokEPSS %2

      duware · dupoll31 Ağu 2006

    • CVE-2004-2200
      18İzleyin

      Cross-site scripting (XSS) vulnerability in DUware DUforum 3.0 through 3.1 allows remote attackers to inject arbitrary web script or HTML vi

      OrtaCVSS 4,3İstismar yokEPSS %2

      duware · duforum31 Ara 2004

    • CVE-2004-2199
      18İzleyin

      Cross-site scripting (XSS) vulnerability in DUware DUclassified 4.0 allows remote attackers to inject arbitrary web script or HTML via the m

      OrtaCVSS 4,3İstismar yokEPSS %2

      duware · duclassified31 Ara 2004

    • CVE-2005-4166
      18İzleyin

      Cross-site scripting (XSS) vulnerability in password.asp in DUWare DUportal Pro 3.4.3 allows remote attackers to inject arbitrary web script

      OrtaCVSS 4,3Kavram kanıtıEPSS %2

      duware · duportal pro11 Ara 2005