jeesns kayıtları
jeesns üreticisine ait 21 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 4
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')20
- CWE-352 Cross-Site Request Forgery (CSRF)1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
21 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
35İzleyin | CVE-2020-19280İstismar yok | Jeesns 1.4.2 contains a cross-site request forgery (CSRF) which allows attackers to escalate privileges and perform sensitive program operatjeesns · jeesns · CWE-352 | Yüksek8,8 | — | %0,9 | 9 Eyl 2021 |
25İzleyin | CVE-2020-19295Kavram kanıtı | A reflected cross-site scripting (XSS) vulnerability in the /weibo/topic component of Jeesns 1.4.2 allows attackers to execute arbitrary webjeesns · jeesns · CWE-79 | Orta6,1 | — | %3,5 | 9 Eyl 2021 |
25İzleyin | CVE-2020-19282Kavram kanıtı | A reflected cross-site scripting (XSS) vulnerability in Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or HTML via a craftedjeesns · jeesns · CWE-79 | Orta6,1 | — | %3,2 | 9 Eyl 2021 |
25İzleyin | CVE-2020-19283Kavram kanıtı | A reflected cross-site scripting (XSS) vulnerability in the /newVersion component of Jeesns 1.4.2 allows attackers to execute arbitrary web jeesns · jeesns · CWE-79 | Orta6,1 | — | %2,6 | 9 Eyl 2021 |
24İzleyin | CVE-2020-18035İstismar yok | Cross Site Scripting (XSS) in Jeesns v1.4.2 allows remote attackers to execute arbitrary code by injecting commands into the "CKEditorFuncNujeesns · jeesns · CWE-79 | Orta6,1 | — | %1,0 | 29 Nis 2021 |
21İzleyin | CVE-2020-19287İstismar yok | A stored cross-site scripting (XSS) vulnerability in the /group/post component of Jeesns 1.4.2 allows attackers to execute arbitrary web scrjeesns · jeesns · CWE-79 | Orta5,4 | — | %0,7 | 9 Eyl 2021 |
21İzleyin | CVE-2020-19291İstismar yok | A stored cross-site scripting (XSS) vulnerability in the /weibo/publishdata component of Jeesns 1.4.2 allows attackers to execute arbitrary jeesns · jeesns · CWE-79 | Orta5,4 | — | %0,7 | 9 Eyl 2021 |
21İzleyin | CVE-2018-17886İstismar yok | An issue was discovered in JEESNS 1.3.jeesns · jeesns · CWE-79 | Orta5,4 | — | %0,7 | 2 Eki 2018 |
21İzleyin | CVE-2020-19285İstismar yok | A stored cross-site scripting (XSS) vulnerability in the /group/apply component of Jeesns 1.4.2 allows attackers to execute arbitrary web scjeesns · jeesns · CWE-79 | Orta5,4 | — | %0,7 | 9 Eyl 2021 |
21İzleyin | CVE-2020-19289İstismar yok | A stored cross-site scripting (XSS) vulnerability in the /member/picture/album component of Jeesns 1.4.2 allows attackers to execute arbitrajeesns · jeesns · CWE-79 | Orta5,4 | — | %0,7 | 9 Eyl 2021 |
21İzleyin | CVE-2020-19292İstismar yok | A stored cross-site scripting (XSS) vulnerability in the /question/ask component of Jeesns 1.4.2 allows attackers to execute arbitrary web sjeesns · jeesns · CWE-79 | Orta5,4 | — | %0,6 | 9 Eyl 2021 |
21İzleyin | CVE-2020-19293İstismar yok | A stored cross-site scripting (XSS) vulnerability in the /article/add component of Jeesns 1.4.2 allows attackers to execute arbitrary web scjeesns · jeesns · CWE-79 | Orta5,4 | — | %0,6 | 9 Eyl 2021 |
21İzleyin | CVE-2020-19286İstismar yok | A stored cross-site scripting (XSS) vulnerability in the /question/detail component of Jeesns 1.4.2 allows attackers to execute arbitrary wejeesns · jeesns · CWE-79 | Orta5,4 | — | %0,6 | 9 Eyl 2021 |
21İzleyin | CVE-2020-19281İstismar yok | A stored cross-site scripting (XSS) vulnerability in the /manage/loginusername component of Jeesns 1.4.2 allows attackers to execute arbitrajeesns · jeesns · CWE-79 | Orta5,4 | — | %0,6 | 9 Eyl 2021 |
21İzleyin | CVE-2018-19178İstismar yok | In JEESNS 1.3, com/lxinet/jeesns/core/utils/XssHttpServletRequestWrapper.java allows stored XSS via an HTML EMBED element, a different vulnejeesns · jeesns · CWE-79 | Orta5,4 | — | %0,6 | 11 Kas 2018 |
21İzleyin | CVE-2020-19284İstismar yok | A stored cross-site scripting (XSS) vulnerability in the /group/comment component of Jeesns 1.4.2 allows attackers to execute arbitrary web jeesns · jeesns · CWE-79 | Orta5,4 | — | %0,5 | 9 Eyl 2021 |
21İzleyin | CVE-2020-19288İstismar yok | A stored cross-site scripting (XSS) vulnerability in the /localhost/u component of Jeesns 1.4.2 allows attackers to execute arbitrary web scjeesns · jeesns · CWE-79 | Orta5,4 | — | %0,5 | 9 Eyl 2021 |
21İzleyin | CVE-2020-19294İstismar yok | A stored cross-site scripting (XSS) vulnerability in the /article/comment component of Jeesns 1.4.2 allows attackers to execute arbitrary wejeesns · jeesns · CWE-79 | Orta5,4 | — | %0,5 | 9 Eyl 2021 |
21İzleyin | CVE-2020-19290İstismar yok | A stored cross-site scripting (XSS) vulnerability in the /weibo/comment component of Jeesns 1.4.2 allows attackers to execute arbitrary web jeesns · jeesns · CWE-79 | Orta5,4 | — | %0,5 | 9 Eyl 2021 |
21İzleyin | CVE-2018-12429İstismar yok | JEESNS through 1.2.1 allows XSS attacks by ordinary users who publish articles containing a crafted payload in order to capture an administrjeesns · jeesns · CWE-79 | Orta5,4 | — | %0,5 | 18 Tem 2018 |
21İzleyin | CVE-2022-38550İstismar yok | A stored cross-site scripting (XSS) vulnerability in the /weibo/list component of Jeesns v2.0.0 allows attackers to execute arbitrary web scjeesns · jeesns · CWE-79 | Orta5,4 | — | %0,5 | 19 Eyl 2022 |
- CVE-2020-1928035İzleyin
Jeesns 1.4.2 contains a cross-site request forgery (CSRF) which allows attackers to escalate privileges and perform sensitive program operat
YüksekCVSS 8,8İstismar yokEPSS %1jeesns · jeesns9 Eyl 2021
- CVE-2020-1929525İzleyin
A reflected cross-site scripting (XSS) vulnerability in the /weibo/topic component of Jeesns 1.4.2 allows attackers to execute arbitrary web
OrtaCVSS 6,1Kavram kanıtıEPSS %4jeesns · jeesns9 Eyl 2021
- CVE-2020-1928225İzleyin
A reflected cross-site scripting (XSS) vulnerability in Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or HTML via a crafted
OrtaCVSS 6,1Kavram kanıtıEPSS %3jeesns · jeesns9 Eyl 2021
- CVE-2020-1928325İzleyin
A reflected cross-site scripting (XSS) vulnerability in the /newVersion component of Jeesns 1.4.2 allows attackers to execute arbitrary web
OrtaCVSS 6,1Kavram kanıtıEPSS %3jeesns · jeesns9 Eyl 2021
- CVE-2020-1803524İzleyin
Cross Site Scripting (XSS) in Jeesns v1.4.2 allows remote attackers to execute arbitrary code by injecting commands into the "CKEditorFuncNu
OrtaCVSS 6,1İstismar yokEPSS %1jeesns · jeesns29 Nis 2021
- CVE-2020-1928721İzleyin
A stored cross-site scripting (XSS) vulnerability in the /group/post component of Jeesns 1.4.2 allows attackers to execute arbitrary web scr
OrtaCVSS 5,4İstismar yokEPSS %1jeesns · jeesns9 Eyl 2021
- CVE-2020-1929121İzleyin
A stored cross-site scripting (XSS) vulnerability in the /weibo/publishdata component of Jeesns 1.4.2 allows attackers to execute arbitrary
OrtaCVSS 5,4İstismar yokEPSS %1jeesns · jeesns9 Eyl 2021
- CVE-2018-1788621İzleyin
An issue was discovered in JEESNS 1.3.
OrtaCVSS 5,4İstismar yokEPSS %1jeesns · jeesns2 Eki 2018
- CVE-2020-1928521İzleyin
A stored cross-site scripting (XSS) vulnerability in the /group/apply component of Jeesns 1.4.2 allows attackers to execute arbitrary web sc
OrtaCVSS 5,4İstismar yokEPSS %1jeesns · jeesns9 Eyl 2021
- CVE-2020-1928921İzleyin
A stored cross-site scripting (XSS) vulnerability in the /member/picture/album component of Jeesns 1.4.2 allows attackers to execute arbitra
OrtaCVSS 5,4İstismar yokEPSS %1jeesns · jeesns9 Eyl 2021
- CVE-2020-1929221İzleyin
A stored cross-site scripting (XSS) vulnerability in the /question/ask component of Jeesns 1.4.2 allows attackers to execute arbitrary web s
OrtaCVSS 5,4İstismar yokEPSS %1jeesns · jeesns9 Eyl 2021
- CVE-2020-1929321İzleyin
A stored cross-site scripting (XSS) vulnerability in the /article/add component of Jeesns 1.4.2 allows attackers to execute arbitrary web sc
OrtaCVSS 5,4İstismar yokEPSS %1jeesns · jeesns9 Eyl 2021
- CVE-2020-1928621İzleyin
A stored cross-site scripting (XSS) vulnerability in the /question/detail component of Jeesns 1.4.2 allows attackers to execute arbitrary we
OrtaCVSS 5,4İstismar yokEPSS %1jeesns · jeesns9 Eyl 2021
- CVE-2020-1928121İzleyin
A stored cross-site scripting (XSS) vulnerability in the /manage/loginusername component of Jeesns 1.4.2 allows attackers to execute arbitra
OrtaCVSS 5,4İstismar yokEPSS %1jeesns · jeesns9 Eyl 2021
- CVE-2018-1917821İzleyin
In JEESNS 1.3, com/lxinet/jeesns/core/utils/XssHttpServletRequestWrapper.java allows stored XSS via an HTML EMBED element, a different vulne
OrtaCVSS 5,4İstismar yokEPSS %1jeesns · jeesns11 Kas 2018
- CVE-2020-1928421İzleyin
A stored cross-site scripting (XSS) vulnerability in the /group/comment component of Jeesns 1.4.2 allows attackers to execute arbitrary web
OrtaCVSS 5,4İstismar yokEPSS %1jeesns · jeesns9 Eyl 2021
- CVE-2020-1928821İzleyin
A stored cross-site scripting (XSS) vulnerability in the /localhost/u component of Jeesns 1.4.2 allows attackers to execute arbitrary web sc
OrtaCVSS 5,4İstismar yokEPSS %1jeesns · jeesns9 Eyl 2021
- CVE-2020-1929421İzleyin
A stored cross-site scripting (XSS) vulnerability in the /article/comment component of Jeesns 1.4.2 allows attackers to execute arbitrary we
OrtaCVSS 5,4İstismar yokEPSS %1jeesns · jeesns9 Eyl 2021
- CVE-2020-1929021İzleyin
A stored cross-site scripting (XSS) vulnerability in the /weibo/comment component of Jeesns 1.4.2 allows attackers to execute arbitrary web
OrtaCVSS 5,4İstismar yokEPSS %1jeesns · jeesns9 Eyl 2021
- CVE-2018-1242921İzleyin
JEESNS through 1.2.1 allows XSS attacks by ordinary users who publish articles containing a crafted payload in order to capture an administr
OrtaCVSS 5,4İstismar yokEPSS %1jeesns · jeesns18 Tem 2018
- CVE-2022-3855021İzleyin
A stored cross-site scripting (XSS) vulnerability in the /weibo/list component of Jeesns v2.0.0 allows attackers to execute arbitrary web sc
OrtaCVSS 5,4İstismar yokEPSS %0jeesns · jeesns19 Eyl 2022