ifax kayıtları
ifax üreticisine ait 4 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %75
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')1
- CWE-732 Incorrect Permission Assignment for Critical Resource1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
4 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2025-1782İstismar yok | Unsanitized input in language form fieldavantfax · avantfax · CWE-94 | Kritik9,9 | — | %0,5 | 14 Nis 2025 |
36İzleyin | CVE-2020-11766İstismar yok | sendfax.php in iFAX AvantFAX before 3.3.6 and HylaFAX Enterprise Web Interface before 0.2.5 allows authenticated Command Injection.ifax · hylafax · CWE-78 | Yüksek8,8 | — | %1,8 | 19 May 2020 |
31İzleyin | CVE-2020-15397İstismar yok | HylaFAX+ through 7.0.2 and HylaFAX Enterprise have scripts that execute binaries from directories writable by unprivileged users (e.g., locahylafax\+ project · hylafax\+ · CWE-732 | Yüksek7,8 | — | %0,5 | 30 Haz 2020 |
31İzleyin | CVE-2020-15396İstismar yok | In HylaFAX+ through 7.0.2 and HylaFAX Enterprise, the faxsetup utility calls chown on files in user-owned directories.hylafax\+ project · hylafax\+ · CWE-362 | Yüksek7,8 | — | %0,4 | 30 Haz 2020 |
- CVE-2025-178239İzleyin
Unsanitized input in language form field
KritikCVSS 9,9İstismar yokEPSS %1avantfax · avantfax14 Nis 2025
- CVE-2020-1176636İzleyin
sendfax.php in iFAX AvantFAX before 3.3.6 and HylaFAX Enterprise Web Interface before 0.2.5 allows authenticated Command Injection.
YüksekCVSS 8,8İstismar yokEPSS %2ifax · hylafax19 May 2020
- CVE-2020-1539731İzleyin
HylaFAX+ through 7.0.2 and HylaFAX Enterprise have scripts that execute binaries from directories writable by unprivileged users (e.g., loca
YüksekCVSS 7,8İstismar yokEPSS %1hylafax\+ project · hylafax\+30 Haz 2020
- CVE-2020-1539631İzleyin
In HylaFAX+ through 7.0.2 and HylaFAX Enterprise, the faxsetup utility calls chown on files in user-owned directories.
YüksekCVSS 7,8İstismar yokEPSS %0hylafax\+ project · hylafax\+30 Haz 2020