eyeos kayıtları
eyeos üreticisine ait 4 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
4 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2006-6556İstismar yok | The eyeHome function in apps/eyeHome.eyeapp/aplic.php in EyeOS before 0.9.3-3 allows remote attackers to upload and execute arbitrary code veyeos · eyeos | Yüksek7,5 | — | %3,0 | 14 Ara 2006 |
23İzleyin | CVE-2011-1715Kavram kanıtı | Directory traversal vulnerability in framework/source/resource/qx/test/part/delay.php in QooxDoo 1.3 and possibly other versions, as used inqooxdoo · qooxdoo · CWE-22 | Orta5,0 | — | %8,9 | 18 Nis 2011 |
20İzleyin | CVE-2011-3737İstismar yok | eyeOS 2.2.0.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation paeyeos · eyeos · CWE-200 | Orta5,0 | — | %1,3 | 23 Eyl 2011 |
18İzleyin | CVE-2011-1714Kavram kanıtı | Cross-site scripting (XSS) vulnerability in framework/source/resource/qx/test/jsonp_primitive.php in QooxDoo 1.3 and possibly other versionsqooxdoo · qooxdoo · CWE-79 | Orta4,3 | — | %2,6 | 18 Nis 2011 |
- CVE-2006-655631İzleyin
The eyeHome function in apps/eyeHome.eyeapp/aplic.php in EyeOS before 0.9.3-3 allows remote attackers to upload and execute arbitrary code v
YüksekCVSS 7,5İstismar yokEPSS %3eyeos · eyeos14 Ara 2006
- CVE-2011-171523İzleyin
Directory traversal vulnerability in framework/source/resource/qx/test/part/delay.php in QooxDoo 1.3 and possibly other versions, as used in
OrtaCVSS 5,0Kavram kanıtıEPSS %9qooxdoo · qooxdoo18 Nis 2011
- CVE-2011-373720İzleyin
eyeOS 2.2.0.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation pa
OrtaCVSS 5,0İstismar yokEPSS %1eyeos · eyeos23 Eyl 2011
- CVE-2011-171418İzleyin
Cross-site scripting (XSS) vulnerability in framework/source/resource/qx/test/jsonp_primitive.php in QooxDoo 1.3 and possibly other versions
OrtaCVSS 4,3Kavram kanıtıEPSS %3qooxdoo · qooxdoo18 Nis 2011