e-xoops kayıtları
e-xoops üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
30İzleyin | CVE-2005-0911İstismar yok | Multiple SQL injection vulnerabilities in exoops may allow remote attackers to execute arbitrary SQL commands via (1) the viewcat parameter e-xoops · e-xoops | Yüksek7,5 | — | %1,1 | 28 Mar 2005 |
30İzleyin | CVE-2007-6380Kavram kanıtı | Multiple SQL injection vulnerabilities in e-Xoops (exoops) 1.08, and 1.05 Rev 1 through 3, allow remote attackers to execute arbitrary SQL ce-xoops · e-xoops · CWE-89 | Yüksek7,5 | — | %1,0 | 14 Ara 2007 |
23İzleyin | CVE-2005-0828Kavram kanıtı | highlight.php in (1) RUNCMS 1.1A, (2) CIAMOS 0.9.2 RC1, (3) e-Xoops 1.05 Rev3, and possibly other products based on e-Xoops (exoops), allowsciamos · ciamos | Orta5,0 | — | %9,2 | 2 May 2005 |
20İzleyin | CVE-2005-0827İstismar yok | Viewcat.php in (1) RUNCMS 1.1A, (2) Ciamos 0.9.2 RC1, e-Xoops 1.05 Rev3, and possibly other products based on e-Xoops (exoops), allow remoteciamos · ciamos | Orta5,0 | — | %1,4 | 2 May 2005 |
20İzleyin | CVE-2005-1031İstismar yok | RUNCMS 1.1A, and possibly other products based on e-Xoops (exoops), when "Allow custom avatar upload" is enabled, does not properly verify ue-xoops · e-xoops | Orta5,0 | — | %1,4 | 2 May 2005 |
17İzleyin | CVE-2008-7036Kavram kanıtı | Multiple cross-site scripting (XSS) vulnerabilities in index.php in DevTracker module 3.0 for bcoos 1.1.11 and earlier, and DevTracker modulbcoos · devtracker · CWE-79 | Orta4,3 | — | %1,5 | 24 Ağu 2009 |
17İzleyin | CVE-2005-0910İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in exoops allow remote attackers to inject arbitrary web script or HTML via (1) the sorte-xoops · e-xoops | Orta4,3 | — | %1,0 | 2 May 2005 |
- CVE-2005-091130İzleyin
Multiple SQL injection vulnerabilities in exoops may allow remote attackers to execute arbitrary SQL commands via (1) the viewcat parameter
YüksekCVSS 7,5İstismar yokEPSS %1e-xoops · e-xoops28 Mar 2005
- CVE-2007-638030İzleyin
Multiple SQL injection vulnerabilities in e-Xoops (exoops) 1.08, and 1.05 Rev 1 through 3, allow remote attackers to execute arbitrary SQL c
YüksekCVSS 7,5Kavram kanıtıEPSS %1e-xoops · e-xoops14 Ara 2007
- CVE-2005-082823İzleyin
highlight.php in (1) RUNCMS 1.1A, (2) CIAMOS 0.9.2 RC1, (3) e-Xoops 1.05 Rev3, and possibly other products based on e-Xoops (exoops), allows
OrtaCVSS 5,0Kavram kanıtıEPSS %9ciamos · ciamos2 May 2005
- CVE-2005-082720İzleyin
Viewcat.php in (1) RUNCMS 1.1A, (2) Ciamos 0.9.2 RC1, e-Xoops 1.05 Rev3, and possibly other products based on e-Xoops (exoops), allow remote
OrtaCVSS 5,0İstismar yokEPSS %1ciamos · ciamos2 May 2005
- CVE-2005-103120İzleyin
RUNCMS 1.1A, and possibly other products based on e-Xoops (exoops), when "Allow custom avatar upload" is enabled, does not properly verify u
OrtaCVSS 5,0İstismar yokEPSS %1e-xoops · e-xoops2 May 2005
- CVE-2008-703617İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in index.php in DevTracker module 3.0 for bcoos 1.1.11 and earlier, and DevTracker modul
OrtaCVSS 4,3Kavram kanıtıEPSS %1bcoos · devtracker24 Ağu 2009
- CVE-2005-091017İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in exoops allow remote attackers to inject arbitrary web script or HTML via (1) the sort
OrtaCVSS 4,3İstismar yokEPSS %1e-xoops · e-xoops2 May 2005