eqdkp kayıtları
eqdkp üreticisine ait 9 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Saldırı profili
Tüm kayıtlar
9 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2007-0760Kavram kanıtı | EQdkp 1.3.1 and earlier authenticates administrative requests by verifying that the HTTP Referer header specifies an admin/ URL, which alloweqdkp · eqdkp | Yüksek7,5 | — | %2,5 | 5 Şub 2007 |
30İzleyin | CVE-2005-2615İstismar yok | Unknown vulnerability in session.php in EQdkp before 1.3.0 has unknown impact and attack vectors, possibly involving auto_login_id.eqdkp · eqdkp | Yüksek7,5 | — | %1,3 | 17 Ağu 2005 |
30İzleyin | CVE-2007-3077Kavram kanıtı | SQL injection vulnerability in listmembers.php in EQdkp 1.3.2 and earlier allows remote attackers to execute arbitrary SQL commands via the eqdkp · eqdkp | Yüksek7,5 | — | %1,2 | 6 Haz 2007 |
30İzleyin | CVE-2008-2222Kavram kanıtı | SQL injection vulnerability in login.php in EQdkp 1.3.2f allows remote attackers to bypass EQdkp user authentication via the user_id parameteqdkp · eqdkp · CWE-89 | Yüksek7,5 | — | %1,1 | 14 May 2008 |
28İzleyin | CVE-2007-2716Kavram kanıtı | Multiple cross-site scripting (XSS) vulnerabilities in EQdkp 1.3.2c and earlier allow remote attackers to inject arbitrary web script or HTMeqdkp · eqdkp | Orta6,8 | — | %4,2 | 16 May 2007 |
28İzleyin | CVE-2007-3079İstismar yok | listmembers.php in EQdkp 1.3.2c and earlier allows remote attackers to obtain sensitive information via an invalid compare parameter, which eqdkp · eqdkp | Yüksek7,1 | — | %1,2 | 6 Haz 2007 |
27İzleyin | CVE-2006-2256Kavram kanıtı | PHP remote file inclusion vulnerability in includes/dbal.php in EQdkp 1.3.0 and earlier allows remote attackers to execute arbitrary PHP codeqdkp · eqdkp | Orta6,4 | — | %7,3 | 9 May 2006 |
27İzleyin | CVE-2007-4176İstismar yok | Multiple unspecified vulnerabilities in EQDKP Plus before 0.4.4.5 have unknown impact and attack vectors.eqdkp · eqdkp plus | Orta6,8 | — | %1,0 | 7 Ağu 2007 |
17İzleyin | CVE-2007-3067İstismar yok | Cross-site scripting (XSS) vulnerability in the Attunement and Key Tracker 0.95 and earlier plugin for EQdkp allows remote attackers to injeeqdkp · attunement and key | Orta4,3 | — | %1,1 | 5 Haz 2007 |
- CVE-2007-076031İzleyin
EQdkp 1.3.1 and earlier authenticates administrative requests by verifying that the HTTP Referer header specifies an admin/ URL, which allow
YüksekCVSS 7,5Kavram kanıtıEPSS %3eqdkp · eqdkp5 Şub 2007
- CVE-2005-261530İzleyin
Unknown vulnerability in session.php in EQdkp before 1.3.0 has unknown impact and attack vectors, possibly involving auto_login_id.
YüksekCVSS 7,5İstismar yokEPSS %1eqdkp · eqdkp17 Ağu 2005
- CVE-2007-307730İzleyin
SQL injection vulnerability in listmembers.php in EQdkp 1.3.2 and earlier allows remote attackers to execute arbitrary SQL commands via the
YüksekCVSS 7,5Kavram kanıtıEPSS %1eqdkp · eqdkp6 Haz 2007
- CVE-2008-222230İzleyin
SQL injection vulnerability in login.php in EQdkp 1.3.2f allows remote attackers to bypass EQdkp user authentication via the user_id paramet
YüksekCVSS 7,5Kavram kanıtıEPSS %1eqdkp · eqdkp14 May 2008
- CVE-2007-271628İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in EQdkp 1.3.2c and earlier allow remote attackers to inject arbitrary web script or HTM
OrtaCVSS 6,8Kavram kanıtıEPSS %4eqdkp · eqdkp16 May 2007
- CVE-2007-307928İzleyin
listmembers.php in EQdkp 1.3.2c and earlier allows remote attackers to obtain sensitive information via an invalid compare parameter, which
YüksekCVSS 7,1İstismar yokEPSS %1eqdkp · eqdkp6 Haz 2007
- CVE-2006-225627İzleyin
PHP remote file inclusion vulnerability in includes/dbal.php in EQdkp 1.3.0 and earlier allows remote attackers to execute arbitrary PHP cod
OrtaCVSS 6,4Kavram kanıtıEPSS %7eqdkp · eqdkp9 May 2006
- CVE-2007-417627İzleyin
Multiple unspecified vulnerabilities in EQDKP Plus before 0.4.4.5 have unknown impact and attack vectors.
OrtaCVSS 6,8İstismar yokEPSS %1eqdkp · eqdkp plus7 Ağu 2007
- CVE-2007-306717İzleyin
Cross-site scripting (XSS) vulnerability in the Attunement and Key Tracker 0.95 and earlier plugin for EQdkp allows remote attackers to inje
OrtaCVSS 4,3İstismar yokEPSS %1eqdkp · attunement and key5 Haz 2007