İçeriğe atla
Noroxi

janrain kayıtları

janrain üreticisine ait 6 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
1
Düzeltme kaydı olan
%33,3
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

6 kayıt
  • CVE-2016-2049
    36İzleyin

    examples/consumer/common.php in JanRain PHP OpenID library (aka php-openid) improperly checks the openid.realm parameter against the SERVER_

    YüksekCVSS 8,8İstismar yokEPSS %2

    janrain · php-openid1 Şub 2016

  • CVE-2013-4701
    31İzleyin

    Auth/Yadis/XML.php in PHP OpenID Library 2.2.2 and earlier allows remote attackers to read arbitrary files, send HTTP requests to intranet s

    YüksekCVSS 7,5İstismar yokEPSS %3

    janrain · php-openid21 Ağu 2013

  • CVE-2011-0771
    28İzleyin

    The Janrain Engage (formerly RPX) module 6.x-1.3 for Drupal does not validate the file for a profile image, which allows remote authenticate

    OrtaCVSS 6,8İstismar yokEPSS %2

    janrain · rpx3 Şub 2011

  • CVE-2012-2296
    20İzleyin

    The Janrain Engage (formerly RPX) module for Drupal 6.x-1.x.

    OrtaCVSS 5,0İstismar yokEPSS %2

    janrain · rpx25 Tem 2012

  • CVE-2011-3707
    20İzleyin

    JanRain PHP OpenID library (aka php-openid) 2.2.2 allows remote attackers to obtain sensitive information via a direct request to a .php fil

    OrtaCVSS 5,0İstismar yokEPSS %1

    janrain · php-openid23 Eyl 2011

  • CVE-2013-1812
    18İzleyin

    The ruby-openid gem before 2.2.2 for Ruby allows remote OpenID providers to cause a denial of service (CPU consumption) via (1) a large XRDS

    OrtaCVSS 4,3İstismar yokEPSS %2

    fedoraproject · fedora12 Ara 2013