feifeicms kayıtları
feifeicms üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')3
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2019-9825İstismar yok | FeiFeiCMS 4.1.190209 allows remote attackers to upload and execute arbitrary PHP code by visiting index.php?s=Admin-Index to modify the set feifeicms · feifeicms · CWE-434 | Kritik9,8 | — | %2,2 | 14 Mar 2019 |
37İzleyin | CVE-2020-17563İstismar yok | Path Traversal in FeiFeiCMS v4.0 allows remote attackers to delete arbitrary files by sending a crafted HTTP request to " /index.php?s=/admifeifeicms · feifeicms · CWE-22 | Kritik9,1 | — | %2,6 | 22 Nis 2021 |
37İzleyin | CVE-2020-17564İstismar yok | Path Traversal in FeiFeiCMS v4.0 allows remote attackers to delete arbitrary files by sending a crafted HTTP request to the " Admin/DataActifeifeicms · feifeicms · CWE-22 | Kritik9,1 | — | %2,6 | 22 Nis 2021 |
36İzleyin | CVE-2019-8412İstismar yok | FeiFeiCms 4.0.181010 on Windows allows remote attackers to read or delete arbitrary files via index.php?s=Admin-Data-Down-id-..\ or index.phfeifeicms · feifeicms · CWE-22 | Yüksek8,8 | — | %2,9 | 17 Şub 2019 |
35İzleyin | CVE-2020-18418İstismar yok | A Cross site request forgery (CSRF) vulnerability was discovered in FeiFeiCMS v4.1.190209, which allows attackers to create administrator acfeifeicms · feifeicms · CWE-352 | Yüksek8,8 | — | %0,4 | 27 Haz 2023 |
21İzleyin | CVE-2023-1565İstismar yok | FeiFeiCMS Extension Tool slide_add.html cross site scriptingfeifeicms · feifeicms · CWE-79 | Orta5,4 | — | %0,6 | 22 Mar 2023 |
- CVE-2019-982540Planlayın
FeiFeiCMS 4.1.190209 allows remote attackers to upload and execute arbitrary PHP code by visiting index.php?s=Admin-Index to modify the set
KritikCVSS 9,8İstismar yokEPSS %2feifeicms · feifeicms14 Mar 2019
- CVE-2020-1756337İzleyin
Path Traversal in FeiFeiCMS v4.0 allows remote attackers to delete arbitrary files by sending a crafted HTTP request to " /index.php?s=/admi
KritikCVSS 9,1İstismar yokEPSS %3feifeicms · feifeicms22 Nis 2021
- CVE-2020-1756437İzleyin
Path Traversal in FeiFeiCMS v4.0 allows remote attackers to delete arbitrary files by sending a crafted HTTP request to the " Admin/DataActi
KritikCVSS 9,1İstismar yokEPSS %3feifeicms · feifeicms22 Nis 2021
- CVE-2019-841236İzleyin
FeiFeiCms 4.0.181010 on Windows allows remote attackers to read or delete arbitrary files via index.php?s=Admin-Data-Down-id-..\ or index.ph
YüksekCVSS 8,8İstismar yokEPSS %3feifeicms · feifeicms17 Şub 2019
- CVE-2020-1841835İzleyin
A Cross site request forgery (CSRF) vulnerability was discovered in FeiFeiCMS v4.1.190209, which allows attackers to create administrator ac
YüksekCVSS 8,8İstismar yokEPSS %0feifeicms · feifeicms27 Haz 2023
- CVE-2023-156521İzleyin
FeiFeiCMS Extension Tool slide_add.html cross site scripting
OrtaCVSS 5,4İstismar yokEPSS %1feifeicms · feifeicms22 Mar 2023