hotscripts kayıtları
hotscripts üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 6
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2008-1565Kavram kanıtı | Directory traversal vulnerability in forum/irc/irc.php in the PJIRC 0.5 module for phpBB allows remote attackers to include and execute arbiphpbb · pjirc module · CWE-22 | Yüksek7,5 | — | %2,3 | 31 Mar 2008 |
30İzleyin | CVE-2008-3707İstismar yok | Multiple PHP remote file inclusion vulnerabilities in CyBoards PHP Lite 1.21 allow remote attackers to execute arbitrary PHP code via a URL hotscripts · cyboards php lite · CWE-94 | Yüksek7,5 | — | %1,4 | 19 Ağu 2008 |
30İzleyin | CVE-2007-6084Kavram kanıtı | SQL injection vulnerability in software-description.php in HotScripts Clone Script allows remote attackers to execute arbitrary SQL commandshotscripts · clone script · CWE-89 | Yüksek7,5 | — | %1,0 | 21 Kas 2007 |
30İzleyin | CVE-2008-2491Kavram kanıtı | SQL injection vulnerability in adv_cat.php in AbleSpace 1.0 allows remote attackers to execute arbitrary SQL commands via the cat_id paramethotscripts · ablespace · CWE-89 | Yüksek7,5 | — | %1,0 | 28 May 2008 |
27İzleyin | CVE-2007-4371İstismar yok | Unrestricted file upload vulnerability in admin/pages/blog-add.php in Neuron Blog 1.1 allows remote attackers to upload and execute arbitrarhotscripts · neuron blog | Orta6,8 | — | %1,2 | 15 Ağu 2007 |
21İzleyin | CVE-2007-6603Kavram kanıtı | Hot or Not Clone has insufficient access control for producing and reading database backups, which allows remote attackers to obtain the admhotscripts · hot or not clone · CWE-264 | Orta5,0 | — | %2,9 | 31 Ara 2007 |
20İzleyin | CVE-2008-3710İstismar yok | Multiple directory traversal vulnerabilities in CyBoards PHP Lite 1.21 allow remote attackers to include and execute arbitrary local files vhotscripts · cyboards php lite · CWE-22 | Orta5,1 | — | %1,3 | 19 Ağu 2008 |
17İzleyin | CVE-2008-3709İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in CyBoards PHP Lite 1.21 allow remote attackers to inject arbitrary web script or HTML hotscripts · cyboards php lite · CWE-79 | Orta4,3 | — | %1,0 | 19 Ağu 2008 |
- CVE-2008-156531İzleyin
Directory traversal vulnerability in forum/irc/irc.php in the PJIRC 0.5 module for phpBB allows remote attackers to include and execute arbi
YüksekCVSS 7,5Kavram kanıtıEPSS %2phpbb · pjirc module31 Mar 2008
- CVE-2008-370730İzleyin
Multiple PHP remote file inclusion vulnerabilities in CyBoards PHP Lite 1.21 allow remote attackers to execute arbitrary PHP code via a URL
YüksekCVSS 7,5İstismar yokEPSS %1hotscripts · cyboards php lite19 Ağu 2008
- CVE-2007-608430İzleyin
SQL injection vulnerability in software-description.php in HotScripts Clone Script allows remote attackers to execute arbitrary SQL commands
YüksekCVSS 7,5Kavram kanıtıEPSS %1hotscripts · clone script21 Kas 2007
- CVE-2008-249130İzleyin
SQL injection vulnerability in adv_cat.php in AbleSpace 1.0 allows remote attackers to execute arbitrary SQL commands via the cat_id paramet
YüksekCVSS 7,5Kavram kanıtıEPSS %1hotscripts · ablespace28 May 2008
- CVE-2007-437127İzleyin
Unrestricted file upload vulnerability in admin/pages/blog-add.php in Neuron Blog 1.1 allows remote attackers to upload and execute arbitrar
OrtaCVSS 6,8İstismar yokEPSS %1hotscripts · neuron blog15 Ağu 2007
- CVE-2007-660321İzleyin
Hot or Not Clone has insufficient access control for producing and reading database backups, which allows remote attackers to obtain the adm
OrtaCVSS 5,0Kavram kanıtıEPSS %3hotscripts · hot or not clone31 Ara 2007
- CVE-2008-371020İzleyin
Multiple directory traversal vulnerabilities in CyBoards PHP Lite 1.21 allow remote attackers to include and execute arbitrary local files v
OrtaCVSS 5,1İstismar yokEPSS %1hotscripts · cyboards php lite19 Ağu 2008
- CVE-2008-370917İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in CyBoards PHP Lite 1.21 allow remote attackers to inject arbitrary web script or HTML
OrtaCVSS 4,3İstismar yokEPSS %1hotscripts · cyboards php lite19 Ağu 2008