gss kayıtları
gss üreticisine ait 9 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-321 Use of Hard-coded Cryptographic Key1
- CWE-347 Improper Verification of Cryptographic Signature1
- CWE-36 Absolute Path Traversal1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
- CWE-863 Incorrect Authorization1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
9 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2023-37291İstismar yok | Galaxy Software Services Vitals ESP - Use of Hard-coded Cryptographic Keygss · vitals enterprise social platform · CWE-321 | Kritik9,8 | — | %0,5 | 21 Tem 2023 |
37İzleyin | CVE-2024-52959İstismar yok | iota C.ai Conversational Platform - Improper Control of Generation of Code ('Code Injection')gss · iota c.ai · CWE-94 | Kritik9,3 | — | %0,6 | 27 Kas 2024 |
37İzleyin | CVE-2024-52958İstismar yok | iota C.ai Conversational Platform - Improper Verification of Cryptographic Signaturegss · iota c.ai · CWE-347 | Kritik9,3 | — | %0,3 | 27 Kas 2024 |
35İzleyin | CVE-2023-41357İstismar yok | Galaxy Software Services Vitals ESP - Arbitrary File Uploadgss · vitals enterprise social platform · CWE-434 | Yüksek8,8 | — | %0,6 | 3 Kas 2023 |
34İzleyin | CVE-2026-4640İstismar yok | Galaxy Software Services|Vitals ESP - Missing Authenticationgss · vitalsesp · CWE-306 | Yüksek8,7 | — | %0,7 | 24 Mar 2026 |
34İzleyin | CVE-2026-4639İstismar yok | Galaxy Software Services|Vitals ESP - Incorrect Authorizationgss · vitalsesp · CWE-863 | Yüksek8,7 | — | %0,5 | 24 Mar 2026 |
28İzleyin | CVE-2025-14254İstismar yok | Galaxy Software Services|Vitals ESP - SQL Injectiongss · vitalsesp · CWE-89 | Yüksek7,1 | — | %0,3 | 8 Ara 2025 |
28İzleyin | CVE-2025-14255İstismar yok | Galaxy Software Services|Vitals ESP - SQL Injectiongss · vitalsesp · CWE-89 | Yüksek7,1 | — | %0,3 | 8 Ara 2025 |
27İzleyin | CVE-2025-14253İstismar yok | Galaxy Software Services|Vitals ESP - Arbitrary File Readgss · vitalsesp · CWE-36 | Orta6,9 | — | %0,5 | 8 Ara 2025 |
- CVE-2023-3729139İzleyin
Galaxy Software Services Vitals ESP - Use of Hard-coded Cryptographic Key
KritikCVSS 9,8İstismar yokEPSS %0gss · vitals enterprise social platform21 Tem 2023
- CVE-2024-5295937İzleyin
iota C.ai Conversational Platform - Improper Control of Generation of Code ('Code Injection')
KritikCVSS 9,3İstismar yokEPSS %1gss · iota c.ai27 Kas 2024
- CVE-2024-5295837İzleyin
iota C.ai Conversational Platform - Improper Verification of Cryptographic Signature
KritikCVSS 9,3İstismar yokEPSS %0gss · iota c.ai27 Kas 2024
- CVE-2023-4135735İzleyin
Galaxy Software Services Vitals ESP - Arbitrary File Upload
YüksekCVSS 8,8İstismar yokEPSS %1gss · vitals enterprise social platform3 Kas 2023
- CVE-2026-464034İzleyin
Galaxy Software Services|Vitals ESP - Missing Authentication
YüksekCVSS 8,7İstismar yokEPSS %1gss · vitalsesp24 Mar 2026
- CVE-2026-463934İzleyin
Galaxy Software Services|Vitals ESP - Incorrect Authorization
YüksekCVSS 8,7İstismar yokEPSS %1gss · vitalsesp24 Mar 2026
- CVE-2025-1425428İzleyin
Galaxy Software Services|Vitals ESP - SQL Injection
YüksekCVSS 7,1İstismar yokEPSS %0gss · vitalsesp8 Ara 2025
- CVE-2025-1425528İzleyin
Galaxy Software Services|Vitals ESP - SQL Injection
YüksekCVSS 7,1İstismar yokEPSS %0gss · vitalsesp8 Ara 2025
- CVE-2025-1425327İzleyin
Galaxy Software Services|Vitals ESP - Arbitrary File Read
OrtaCVSS 6,9İstismar yokEPSS %0gss · vitalsesp8 Ara 2025