ipa kayıtları
ipa üreticisine ait 16 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-426 Untrusted Search Path4
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-20 Improper Input Validation2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-287 Improper Authentication1
- CWE-352 Cross-Site Request Forgery (CSRF)1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
16 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2017-2179İstismar yok | Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.2 and earlier allows remote code execution via unspecified vectors, ipa · appgoat · CWE-20 | Yüksek8,8 | — | %2,3 | 9 Haz 2017 |
35İzleyin | CVE-2017-2182İstismar yok | Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.2 and earlier allow remote attackers to obtain local files via unspeipa · appgoat | Yüksek8,8 | — | %1,5 | 9 Haz 2017 |
35İzleyin | CVE-2017-2181İstismar yok | Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.2 and earlier allow remote attackers to obtain local files via unspeipa · appgoat | Yüksek8,8 | — | %1,5 | 9 Haz 2017 |
35İzleyin | CVE-2017-2102İstismar yok | Cross-site request forgery (CSRF) vulnerability in Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.0 and earlier allipa · appgoat · CWE-352 | Yüksek8,8 | — | %0,8 | 28 Nis 2017 |
31İzleyin | CVE-2017-2175İstismar yok | Untrusted search path vulnerability in Empirical Project Monitor - eXtended all versions allows remote attackers to gain privileges via a Tripa · empirical project monitor - extended · CWE-426 | Yüksek7,8 | — | %1,4 | 22 May 2017 |
31İzleyin | CVE-2017-10820İstismar yok | Untrusted search path vulnerability in Installer of IP Messenger for Win 4.60 and earlier allows an attacker to gain privileges via a Trojanipa · ip messenger · CWE-426 | Yüksek7,8 | — | %1,1 | 4 Ağu 2017 |
31İzleyin | CVE-2017-2220İstismar yok | Untrusted search path vulnerability in Installer of CASL II simulator (self-extract format) allows an attacker to gain privileges via a Trojipa · casl ii simulator · CWE-426 | Yüksek7,8 | — | %0,9 | 7 Tem 2017 |
31İzleyin | CVE-2019-6019İstismar yok | Untrusted search path vulnerability in STAMP Workbench installer all versions allows an attacker to gain privileges via a Trojan horse DLL iipa · stamp workbench · CWE-426 | Yüksek7,8 | — | %0,8 | 26 Ara 2019 |
29İzleyin | CVE-2017-2101İstismar yok | Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.0 and earlier allows remote attackers to bypass authentication to peipa · appgoat · CWE-287 | Yüksek7,3 | — | %1,5 | 28 Nis 2017 |
25İzleyin | CVE-2017-2099İstismar yok | Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.0 and earlier allows remote code execution via unspecified vectors.ipa · appgoat | Orta6,3 | — | %1,5 | 28 Nis 2017 |
25İzleyin | CVE-2017-2100İstismar yok | Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.1 and earlier allows remote attackers to conduct DNS rebinding attacipa · appgoat · CWE-20 | Orta6,3 | — | %1,0 | 28 Nis 2017 |
24İzleyin | CVE-2017-2174İstismar yok | Cross-site scripting vulnerability in Empirical Project Monitor - eXtended all versions allows remote attackers to inject arbitrary web scriipa · empirical project monitor - extended · CWE-79 | Orta6,1 | — | %1,2 | 22 May 2017 |
24İzleyin | CVE-2017-2194İstismar yok | Cross-site scripting vulnerability in Source code security studying tool iCodeChecker allows an attacker to inject arbitrary web script or Hipa · icodechecker · CWE-79 | Orta6,1 | — | %0,7 | 7 Tem 2017 |
21İzleyin | CVE-2017-2173İstismar yok | Cross-site scripting vulnerability in Empirical Project Monitor - eXtended all versions allows remote authenticated attackers to inject arbiipa · empirical project monitor - extended · CWE-79 | Orta5,4 | — | %0,9 | 22 May 2017 |
17İzleyin | CVE-2014-7248İstismar yok | Cross-site scripting (XSS) vulnerability in IPA iLogScanner 4.0 allows remote attackers to inject arbitrary web script or HTML by triggeringipa · ilogscanner · CWE-79 | Orta4,3 | — | %1,1 | 14 Kas 2014 |
17İzleyin | CVE-2017-2180İstismar yok | Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.2 and earlier allow remote attackers to obtain local files via unspeipa · appgoat · CWE-200 | Orta4,3 | — | %1,1 | 9 Haz 2017 |
- CVE-2017-217936İzleyin
Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.2 and earlier allows remote code execution via unspecified vectors,
YüksekCVSS 8,8İstismar yokEPSS %2ipa · appgoat9 Haz 2017
- CVE-2017-218235İzleyin
Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.2 and earlier allow remote attackers to obtain local files via unspe
YüksekCVSS 8,8İstismar yokEPSS %2ipa · appgoat9 Haz 2017
- CVE-2017-218135İzleyin
Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.2 and earlier allow remote attackers to obtain local files via unspe
YüksekCVSS 8,8İstismar yokEPSS %2ipa · appgoat9 Haz 2017
- CVE-2017-210235İzleyin
Cross-site request forgery (CSRF) vulnerability in Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.0 and earlier all
YüksekCVSS 8,8İstismar yokEPSS %1ipa · appgoat28 Nis 2017
- CVE-2017-217531İzleyin
Untrusted search path vulnerability in Empirical Project Monitor - eXtended all versions allows remote attackers to gain privileges via a Tr
YüksekCVSS 7,8İstismar yokEPSS %1ipa · empirical project monitor - extended22 May 2017
- CVE-2017-1082031İzleyin
Untrusted search path vulnerability in Installer of IP Messenger for Win 4.60 and earlier allows an attacker to gain privileges via a Trojan
YüksekCVSS 7,8İstismar yokEPSS %1ipa · ip messenger4 Ağu 2017
- CVE-2017-222031İzleyin
Untrusted search path vulnerability in Installer of CASL II simulator (self-extract format) allows an attacker to gain privileges via a Troj
YüksekCVSS 7,8İstismar yokEPSS %1ipa · casl ii simulator7 Tem 2017
- CVE-2019-601931İzleyin
Untrusted search path vulnerability in STAMP Workbench installer all versions allows an attacker to gain privileges via a Trojan horse DLL i
YüksekCVSS 7,8İstismar yokEPSS %1ipa · stamp workbench26 Ara 2019
- CVE-2017-210129İzleyin
Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.0 and earlier allows remote attackers to bypass authentication to pe
YüksekCVSS 7,3İstismar yokEPSS %1ipa · appgoat28 Nis 2017
- CVE-2017-209925İzleyin
Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.0 and earlier allows remote code execution via unspecified vectors.
OrtaCVSS 6,3İstismar yokEPSS %2ipa · appgoat28 Nis 2017
- CVE-2017-210025İzleyin
Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.1 and earlier allows remote attackers to conduct DNS rebinding attac
OrtaCVSS 6,3İstismar yokEPSS %1ipa · appgoat28 Nis 2017
- CVE-2017-217424İzleyin
Cross-site scripting vulnerability in Empirical Project Monitor - eXtended all versions allows remote attackers to inject arbitrary web scri
OrtaCVSS 6,1İstismar yokEPSS %1ipa · empirical project monitor - extended22 May 2017
- CVE-2017-219424İzleyin
Cross-site scripting vulnerability in Source code security studying tool iCodeChecker allows an attacker to inject arbitrary web script or H
OrtaCVSS 6,1İstismar yokEPSS %1ipa · icodechecker7 Tem 2017
- CVE-2017-217321İzleyin
Cross-site scripting vulnerability in Empirical Project Monitor - eXtended all versions allows remote authenticated attackers to inject arbi
OrtaCVSS 5,4İstismar yokEPSS %1ipa · empirical project monitor - extended22 May 2017
- CVE-2014-724817İzleyin
Cross-site scripting (XSS) vulnerability in IPA iLogScanner 4.0 allows remote attackers to inject arbitrary web script or HTML by triggering
OrtaCVSS 4,3İstismar yokEPSS %1ipa · ilogscanner14 Kas 2014
- CVE-2017-218017İzleyin
Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.2 and earlier allow remote attackers to obtain local files via unspe
OrtaCVSS 4,3İstismar yokEPSS %1ipa · appgoat9 Haz 2017