invigo kayıtları
invigo üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-668 Exposure of Resource to Wrong Sphere1
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2020-10582İstismar yok | A SQL injection on the /admin/display_errors.php script of Invigo Automatic Device Management (ADM) through 5.0 allows remote attackers to einvigo · automatic device management · CWE-89 | Kritik9,8 | — | %1,6 | 25 Mar 2021 |
36İzleyin | CVE-2020-10580İstismar yok | A command injection on the /admin/broadcast.php script of Invigo Automatic Device Management (ADM) through 5.0 allows remote authenticated ainvigo · automatic device management · CWE-77 | Yüksek8,8 | — | %3,9 | 25 Mar 2021 |
36İzleyin | CVE-2020-10583İstismar yok | The /admin/admapi.php script of Invigo Automatic Device Management (ADM) through 5.0 allows remote authenticated attackers to execute arbitrinvigo · automatic device management · CWE-78 | Yüksek8,8 | — | %2,8 | 25 Mar 2021 |
31İzleyin | CVE-2020-10579İstismar yok | A directory traversal on the /admin/sysmon.php script of Invigo Automatic Device Management (ADM) through 5.0 allows remote attackers to lisinvigo · automatic device management · CWE-22 | Yüksek7,5 | — | %2,2 | 25 Mar 2021 |
31İzleyin | CVE-2020-10584İstismar yok | A directory traversal on the /admin/search_by.php script of Invigo Automatic Device Management (ADM) through 5.0 allows remote attackers to invigo · automatic device management · CWE-22 | Yüksek7,5 | — | %2,2 | 25 Mar 2021 |
30İzleyin | CVE-2020-10581İstismar yok | Multiple session validity check issues in several administration functionalities of Invigo Automatic Device Management (ADM) through 5.0 allinvigo · automatic device management · CWE-668 | Yüksek7,5 | — | %1,3 | 25 Mar 2021 |
- CVE-2020-1058239İzleyin
A SQL injection on the /admin/display_errors.php script of Invigo Automatic Device Management (ADM) through 5.0 allows remote attackers to e
KritikCVSS 9,8İstismar yokEPSS %2invigo · automatic device management25 Mar 2021
- CVE-2020-1058036İzleyin
A command injection on the /admin/broadcast.php script of Invigo Automatic Device Management (ADM) through 5.0 allows remote authenticated a
YüksekCVSS 8,8İstismar yokEPSS %4invigo · automatic device management25 Mar 2021
- CVE-2020-1058336İzleyin
The /admin/admapi.php script of Invigo Automatic Device Management (ADM) through 5.0 allows remote authenticated attackers to execute arbitr
YüksekCVSS 8,8İstismar yokEPSS %3invigo · automatic device management25 Mar 2021
- CVE-2020-1057931İzleyin
A directory traversal on the /admin/sysmon.php script of Invigo Automatic Device Management (ADM) through 5.0 allows remote attackers to lis
YüksekCVSS 7,5İstismar yokEPSS %2invigo · automatic device management25 Mar 2021
- CVE-2020-1058431İzleyin
A directory traversal on the /admin/search_by.php script of Invigo Automatic Device Management (ADM) through 5.0 allows remote attackers to
YüksekCVSS 7,5İstismar yokEPSS %2invigo · automatic device management25 Mar 2021
- CVE-2020-1058130İzleyin
Multiple session validity check issues in several administration functionalities of Invigo Automatic Device Management (ADM) through 5.0 all
YüksekCVSS 7,5İstismar yokEPSS %1invigo · automatic device management25 Mar 2021