İçeriğe atla
Noroxi

gplhost kayıtları

gplhost üreticisine ait 16 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
3
Düzeltme kaydı olan
%56,3
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

16 kayıt
  • CVE-2011-5274
    31İzleyin

    The drawAdminTools_PackageInstaller function in shared/inc/forms/packager.php in Domain Technologie Control (DTC) before 0.32.11 allows remo

    YüksekCVSS 7,5İstismar yokEPSS %2

    gplhost · domain technologie control21 Mar 2014

  • CVE-2011-0434
    30İzleyin

    Multiple SQL injection vulnerabilities in Domain Technologie Control (DTC) before 0.32.9 allow remote attackers to execute arbitrary SQL com

    YüksekCVSS 7,5İstismar yokEPSS %2

    gplhost · domain technologie control7 Mar 2011

  • CVE-2009-0402
    30İzleyin

    SQL injection vulnerability in client/new_account.php in Domain Technologie Control (DTC) before 0.29.16 allows remote attackers to execute

    YüksekCVSS 7,5İstismar yokEPSS %1

    gplhost · domain technologie control3 Şub 2009

  • CVE-2011-5275
    30İzleyin

    The install script in Domain Technologie Control (DTC) before 0.34.1 gives sudo permissions for chrootuid to the dtc user, which makes it ea

    YüksekCVSS 7,5İstismar yokEPSS %1

    gplhost · domain technologie control21 Mar 2014

  • CVE-2008-4951
    27İzleyin

    dtc 0.29.6 allows local users to overwrite arbitrary files via a symlink attack on (a) /tmp/awstats.log, (b) /tmp/spam.log.#####, and (c) /t

    OrtaCVSS 6,9İstismar yokEPSS %0

    gplhost · dtc-common5 Kas 2008

  • CVE-2011-3195
    26İzleyin

    shared/inc/sql/lists.php in Domain Technologie Control (DTC) before 0.34.1 allows remote authenticated users to execute arbitrary commands v

    OrtaCVSS 6,5İstismar yokEPSS %2

    gplhost · domain technologie control21 Mar 2014

  • CVE-2011-5273
    26İzleyin

    Directory traversal vulnerability in shared/package-installer in Domain Technologie Control (DTC) before 0.34.1 allows remote authenticated

    OrtaCVSS 6,5İstismar yokEPSS %1

    gplhost · domain technologie control21 Mar 2014

  • CVE-2011-3197
    26İzleyin

    SQL injection vulnerability in Domain Technologie Control (DTC) before 0.34.1 allows remote authenticated users to execute arbitrary SQL com

    OrtaCVSS 6,5İstismar yokEPSS %1

    gplhost · domain technologie control21 Mar 2014

  • CVE-2011-5276
    26İzleyin

    SQL injection vulnerability in the drawAdminTools_PackageInstaller function in shared/inc/forms/packager.php in Domain Technologie Control (

    OrtaCVSS 6,5İstismar yokEPSS %1

    gplhost · domain technologie control21 Mar 2014

  • CVE-2011-5272
    26İzleyin

    SQL injection vulnerability in Domain Technologie Control (DTC) before 0.34.1 allows remote authenticated users to execute arbitrary SQL com

    OrtaCVSS 6,5İstismar yokEPSS %1

    gplhost · domain technologie control21 Mar 2014

  • CVE-2011-0435
    21İzleyin

    Domain Technologie Control (DTC) before 0.32.9 does not require authentication for (1) admin/bw_per_month.php and (2) client/bw_per_month.ph

    OrtaCVSS 5,0İstismar yokEPSS %2

    gplhost · domain technologie control7 Mar 2011

  • CVE-2011-0436
    21İzleyin

    The register_user function in client/new_account_form.php in Domain Technologie Control (DTC) before 0.32.9 includes a cleartext password in

    OrtaCVSS 5,0İstismar yokEPSS %2

    gplhost · domain technologie control7 Mar 2011

  • CVE-2011-0437
    16İzleyin

    shared/inc/sql/ssh.php in the SSH accounts management implementation in Domain Technologie Control (DTC) before 0.32.9 allows remote authent

    OrtaCVSS 4,0İstismar yokEPSS %2

    gplhost · domain technologie control7 Mar 2011

  • CVE-2011-3199
    14İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in Domain Technologie Control (DTC) before 0.34.1 allow remote authenticated users to in

    DüşükCVSS 3,5İstismar yokEPSS %1

    gplhost · domain technologie control21 Mar 2014

  • CVE-2011-3196
    8İzleyin

    The setup script in Domain Technologie Control (DTC) before 0.34.1 uses world-readable permissions for /etc/apache2/apache2.conf, which allo

    DüşükCVSS 2,1İstismar yokEPSS %0

    gplhost · domain technologie control21 Mar 2014

  • CVE-2011-3198
    8İzleyin

    Domain Technologie Control (DTC) before 0.34.1 includes a password in the -b command line argument to htpasswd, which might allow local user

    DüşükCVSS 2,1İstismar yokEPSS %0

    gplhost · domain technologie control21 Mar 2014