İçeriğe atla
Noroxi

ens kayıtları

ens üreticisine ait 7 yayımlanmış kayıt.

Tüm kayıtlar

7 kayıt
  • CVE-2018-19510
    45Planlayın

    subscriber.php in Webgalamb through 7.0 is vulnerable to SQL injection via the Client-IP HTTP request header.

    KritikCVSS 9,8İstismar yokEPSS %20

    ens · webgalamb21 Mar 2019

  • CVE-2018-19514
    40Planlayın

    In Webgalamb through 7.0, an arbitrary code execution vulnerability could be exploited remotely without authentication.

    KritikCVSS 9,8İstismar yokEPSS %5

    ens · webgalamb21 Mar 2019

  • CVE-2018-19515
    40Planlayın

    In Webgalamb through 7.0, system/ajax.php functionality is supposed to be available only to the administrator.

    KritikCVSS 9,8İstismar yokEPSS %3

    ens · webgalamb21 Mar 2019

  • CVE-2018-19513
    31İzleyin

    In Webgalamb through 7.0, log files are exposed to the internet with predictable files/logs/sql_error_log/YYYY-MM-DD-sql_error_log.log filen

    YüksekCVSS 7,5İstismar yokEPSS %2

    ens · webgalamb21 Mar 2019

  • CVE-2018-19512
    30İzleyin

    In Webgalamb through 7.0, a system/ajax.php "wgmfile restore" directory traversal vulnerability could lead to arbitrary code execution by au

    YüksekCVSS 7,2İstismar yokEPSS %7

    ens · webgalamb21 Mar 2019

  • CVE-2018-19511
    26İzleyin

    wg7.php in Webgalamb 7.0 lacks security measures to prevent CSRF attacks, as demonstrated by wg7.php?options=1 to change the administrator p

    OrtaCVSS 6,5İstismar yokEPSS %1

    ens · webgalamb21 Mar 2019

  • CVE-2018-19509
    24İzleyin

    wg7.php in Webgalamb 7.0 makes opportunistic calls to htmlspecialchars() instead of using a templating engine with proper contextual encodin

    OrtaCVSS 6,1İstismar yokEPSS %1

    ens · webgalamb21 Mar 2019