İçeriğe atla
Noroxi

indexhibit kayıtları

indexhibit üreticisine ait 8 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
2
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

8 kayıt
  • CVE-2019-16314
    51Planlayın

    Indexhibit 2.1.5 allows a product reinstallation, with resultant remote code execution, via /ndxzstudio/install.php?p=2.

    KritikCVSS 9,8İstismar yokEPSS %39

    indexhibit · indexhibit14 Eyl 2019

  • CVE-2019-8954
    36İzleyin

    In Indexhibit 2.1.5, remote attackers can execute arbitrary code via the v parameter (in conjunction with the id parameter) in a upd_jxcode=

    YüksekCVSS 8,8İstismar yokEPSS %3

    indexhibit · indexhibit20 Şub 2019

  • CVE-2020-18121
    35İzleyin

    A configuration issue in Indexhibit 2.1.5 allows authenticated attackers to modify .php files, leading to getshell.

    YüksekCVSS 8,8İstismar yokEPSS %1

    indexhibit · indexhibit30 Ağu 2021

  • CVE-2020-18127
    26İzleyin

    An issue in the /config/config.php component of Indexhibit 2.1.5 allows attackers to arbitrarily view files.

    OrtaCVSS 6,5İstismar yokEPSS %1

    indexhibit · indexhibit30 Ağu 2021

  • CVE-2020-18123
    26İzleyin

    A cross-site request forgery (CSRF) vulnerability in Indexhibit 2.1.5 allows attackers to arbitrarily delete admin accounts.

    OrtaCVSS 6,5İstismar yokEPSS %0

    indexhibit · indexhibit30 Ağu 2021

  • CVE-2020-18125
    24İzleyin

    A reflected cross-site scripting (XSS) vulnerability in the /plugin/ajax.php component of Indexhibit 2.1.5 allows attackers to execute arbit

    OrtaCVSS 6,1İstismar yokEPSS %1

    indexhibit · indexhibit30 Ağu 2021

  • CVE-2020-18124
    22İzleyin

    A cross-site request forgery (CSRF) vulnerability in Indexhibit 2.1.5 allows attackers to arbitrarily reset account passwords.

    OrtaCVSS 5,7İstismar yokEPSS %0

    indexhibit · indexhibit30 Ağu 2021

  • CVE-2020-18126
    21İzleyin

    Multiple stored cross-site scripting (XSS) vulnerabilities in the Sections module of Indexhibit 2.1.5 allows attackers to execute arbitrary

    OrtaCVSS 5,4İstismar yokEPSS %1

    indexhibit · indexhibit30 Ağu 2021