İçeriğe atla
Noroxi

interspire kayıtları

interspire üreticisine ait 25 yayımlanmış kayıt.

Tüm kayıtlar

25 kayıt
  • CVE-2017-14322
    50Planlayın

    The function in charge to check whether the user is already logged in init.php in Interspire Email Marketer (IEM) prior to 6.1.6 allows remo

    KritikCVSS 9,8Kavram kanıtıEPSS %37

    interspire · email marketer18 Eki 2017

  • CVE-2018-19550
    37İzleyin

    Interspire Email Marketer through 6.1.6 allows arbitrary file upload via a surveys_submit.php "create survey and submit survey" operation, w

    YüksekCVSS 8,8Kavram kanıtıEPSS %6

    interspire · email marketer26 Kas 2018

  • CVE-2018-19552
    35İzleyin

    Interspire Email Marketer through 6.1.6 has SQL Injection via a deleteblock blockid[] request to Dynamiccontenttags.php.

    YüksekCVSS 8,8İstismar yokEPSS %1

    interspire · email marketer26 Kas 2018

  • CVE-2018-19553
    35İzleyin

    Interspire Email Marketer through 6.1.6 has SQL Injection via an updateblock sortorder request to Dynamiccontenttags.php

    YüksekCVSS 8,8İstismar yokEPSS %1

    interspire · email marketer26 Kas 2018

  • CVE-2018-19549
    35İzleyin

    Interspire Email Marketer through 6.1.6 has SQL Injection via a tagids Delete action to Dynamiccontenttags.php.

    YüksekCVSS 8,8İstismar yokEPSS %1

    interspire · email marketer26 Kas 2018

  • CVE-2018-19551
    35İzleyin

    Interspire Email Marketer through 6.1.6 has SQL Injection via a checkduplicatetags tagname request to Dynamiccontenttags.php.

    YüksekCVSS 8,8İstismar yokEPSS %1

    interspire · email marketer26 Kas 2018

  • CVE-2022-40777
    35İzleyin

    Interspire Email Marketer through 6.5.0 allows arbitrary file upload via a surveys_submit.php "create survey and submit survey" operation, w

    YüksekCVSS 8,8İstismar yokEPSS %1

    interspire · email marketer11 Eki 2022

  • CVE-2008-2338
    32İzleyin

    Interspire ActiveKB 1.5 and earlier allows remote attackers to gain privileges by setting the auth cookie to true when accessing unspecified

    YüksekCVSS 7,5Kavram kanıtıEPSS %6

    interspire · activekb19 May 2008

  • CVE-2009-4957
    31İzleyin

    Directory traversal vulnerability in loadpanel.php in Interspire ActiveKB allows remote attackers to read arbitrary files and possibly have

    YüksekCVSS 7,5Kavram kanıtıEPSS %2

    interspire · activekb22 Tem 2010

  • CVE-2005-1482
    31İzleyin

    ArticleLive 2005 allows remote attackers to gain privileges by modifying the (1) auth and (2) userId fields in a cookie.

    YüksekCVSS 7,5İstismar yokEPSS %2

    interspire · articlelive11 May 2005

  • CVE-2009-0412
    30İzleyin

    The ProcessLogin function in class.auth.php in Interspire Shopping Cart (ISC) 4.0.1 Ultimate edition allows remote attackers to bypass authe

    YüksekCVSS 7,5İstismar yokEPSS %2

    interspire · shopping cart3 Şub 2009

  • CVE-2005-3726
    30İzleyin

    SQL injection vulnerability in Interspire ArticleLive NX 0.3 allows remote attackers to execute arbitrary SQL commands via the Query paramet

    YüksekCVSS 7,5İstismar yokEPSS %1

    interspire · articlelive nx21 Kas 2005

  • CVE-2007-5131
    30İzleyin

    SQL injection vulnerability in index.php in Interspire ActiveKB NX 2.x allows remote attackers to execute arbitrary SQL commands via the cat

    YüksekCVSS 7,5Kavram kanıtıEPSS %1

    interspire · activekb nx27 Eyl 2007

  • CVE-2007-4147
    30İzleyin

    Multiple unspecified vulnerabilities in Interspire ArticleLive NX before 1.7.1.2 have unknown impact and attack vectors, possibly related to

    YüksekCVSS 7,5İstismar yokEPSS %1

    interspire · articlelive nx3 Ağu 2007

  • CVE-2022-44790
    30İzleyin

    Interspire Email Marketer through 6.5.1 allows SQL Injection via the surveys module.

    YüksekCVSS 7,5İstismar yokEPSS %1

    interspire · email marketer9 Ara 2022

  • CVE-2007-1060
    29İzleyin

    Multiple PHP remote file inclusion vulnerabilities in Interspire SendStudio 2004.14 and earlier, when register_globals and allow_fopenurl ar

    OrtaCVSS 6,8Kavram kanıtıEPSS %8

    interspire · sendstudio21 Şub 2007

  • CVE-2018-19651
    26İzleyin

    admin/functions/remote.php in Interspire Email Marketer through 6.1.6 has Server Side Request Forgery (SSRF) via a what=importurl&url= reque

    OrtaCVSS 6,5İstismar yokEPSS %1

    interspire · email marketer28 Kas 2018

  • CVE-2007-5425
    25İzleyin

    SQL injection vulnerability in admin/index.php in Interspire ActiveKB 1.5 allows remote attackers to execute arbitrary SQL commands via the

    OrtaCVSS 6,4İstismar yokEPSS %1

    interspire · activekb12 Eki 2007

  • CVE-2009-4192
    21İzleyin

    Directory traversal vulnerability in dialog/file_manager.php in Interspire Knowledge Manager 5 allows remote attackers to read arbitrary fil

    OrtaCVSS 5,0Kavram kanıtıEPSS %3

    interspire · knowledge manager3 Ara 2009

  • CVE-2005-0881
    18İzleyin

    Cross-site scripting (XSS) vulnerability in articles.newcomment for Interspire ArticleLive 2005 allows remote attackers to inject arbitrary

    OrtaCVSS 4,3Kavram kanıtıEPSS %4

    interspire · articlelive23 Mar 2005

  • CVE-2006-0210
    18İzleyin

    Cross-site scripting (XSS) vulnerability in index.php in Interspire TrackPoint NX before 0.1 allows remote attackers to inject arbitrary web

    OrtaCVSS 4,3Kavram kanıtıEPSS %2

    interspire · trackpoint nx13 Oca 2006

  • CVE-2007-5426
    18İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in ActiveKB NX 2.5.4 allow remote attackers to inject arbitrary web script or HTML via t

    OrtaCVSS 4,3Kavram kanıtıEPSS %2

    interspire · activekb nx12 Eki 2007

  • CVE-2005-1483
    17İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in ArticleLive 2005 allow remote attackers to inject arbitrary web script or HTML via th

    OrtaCVSS 4,3İstismar yokEPSS %1

    interspire · articlelive11 May 2005

  • CVE-2008-1076
    17İzleyin

    Cross-site scripting (XSS) vulnerability in search.php in Interspire Shopping Cart 1.x allows remote attackers to inject arbitrary web scrip

    OrtaCVSS 4,3İstismar yokEPSS %1

    interspire · shopping cart28 Şub 2008

  • CVE-2005-4024
    17İzleyin

    Cross-site scripting (XSS) vulnerability in Interspire FastFind 2004 and 2005 allows remote attackers to inject arbitrary web script or HTML

    OrtaCVSS 4,3İstismar yokEPSS %1

    interspire · fastfind5 Ara 2005