ej3 kayıtları
ej3 üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Saldırı profili
Tüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
30İzleyin | CVE-2006-3536İstismar yok | Direct static code injection vulnerability in code/class_db_text.php in EJ3 TOPo 2.2.178 and earlier allows remote attackers to execute arbiej3 · topo | Yüksek7,5 | — | %1,5 | 12 Tem 2006 |
21İzleyin | CVE-2003-1409Kavram kanıtı | TOPo 1.43 allows remote attackers to obtain sensitive information by sending an HTTP request with an invalid parameter to (1) in.php or (2) ej3 · topo · CWE-200 | Orta5,0 | — | %2,5 | 31 Ara 2003 |
20İzleyin | CVE-2005-1716İstismar yok | TOPo 2.2 (2.2.178) stores data files in the data directory under the web document root with insufficient access control, which allows remoteej3 · topo | Orta5,0 | — | %1,5 | 24 May 2005 |
20İzleyin | CVE-2006-3833İstismar yok | index.php in EJ3 TOPo 2.2.178 allows remote attackers to overwrite existing entries and establish new passwords for the overwritten entries ej3 · topo | Orta5,0 | — | %1,4 | 25 Tem 2006 |
20İzleyin | CVE-2006-3834İstismar yok | EJ3 TOPo 2.2.178 includes the password in cleartext in the ID field to index.php, which allows context-dependent attackers to obtain entry pej3 · topo | Orta5,0 | — | %1,0 | 25 Tem 2006 |
18İzleyin | CVE-2006-0984Kavram kanıtı | Cross-site scripting (XSS) vulnerability in inc_header.php in EJ3 TOPo 2.2.178 allows remote attackers to inject arbitrary web script or HTMej3 · topo | Orta4,3 | — | %2,0 | 3 Mar 2006 |
18İzleyin | CVE-2005-1715Kavram kanıtı | Cross-site scripting (XSS) vulnerability in index.php for TOPo 2.2 (2.2.178) allows remote attackers to inject arbitrary web script or HTML ej3 · topo | Orta4,3 | — | %2,0 | 24 May 2005 |
- CVE-2006-353630İzleyin
Direct static code injection vulnerability in code/class_db_text.php in EJ3 TOPo 2.2.178 and earlier allows remote attackers to execute arbi
YüksekCVSS 7,5İstismar yokEPSS %2ej3 · topo12 Tem 2006
- CVE-2003-140921İzleyin
TOPo 1.43 allows remote attackers to obtain sensitive information by sending an HTTP request with an invalid parameter to (1) in.php or (2)
OrtaCVSS 5,0Kavram kanıtıEPSS %3ej3 · topo31 Ara 2003
- CVE-2005-171620İzleyin
TOPo 2.2 (2.2.178) stores data files in the data directory under the web document root with insufficient access control, which allows remote
OrtaCVSS 5,0İstismar yokEPSS %2ej3 · topo24 May 2005
- CVE-2006-383320İzleyin
index.php in EJ3 TOPo 2.2.178 allows remote attackers to overwrite existing entries and establish new passwords for the overwritten entries
OrtaCVSS 5,0İstismar yokEPSS %1ej3 · topo25 Tem 2006
- CVE-2006-383420İzleyin
EJ3 TOPo 2.2.178 includes the password in cleartext in the ID field to index.php, which allows context-dependent attackers to obtain entry p
OrtaCVSS 5,0İstismar yokEPSS %1ej3 · topo25 Tem 2006
- CVE-2006-098418İzleyin
Cross-site scripting (XSS) vulnerability in inc_header.php in EJ3 TOPo 2.2.178 allows remote attackers to inject arbitrary web script or HTM
OrtaCVSS 4,3Kavram kanıtıEPSS %2ej3 · topo3 Mar 2006
- CVE-2005-171518İzleyin
Cross-site scripting (XSS) vulnerability in index.php for TOPo 2.2 (2.2.178) allows remote attackers to inject arbitrary web script or HTML
OrtaCVSS 4,3Kavram kanıtıEPSS %2ej3 · topo24 May 2005