Loway kayıtları
loway üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')3
- CWE-204 Observable Response Discrepancy1
- CWE-444 Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling')1
- CWE-601 URL Redirection to Untrusted Site ('Open Redirect')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
35İzleyin | CVE-2020-13127İstismar yok | A SQL injection vulnerability at a tpf URI in Loway QueueMetrics before 19.04.1 allows remote authenticated attackers to execute arbitrary Sloway · queuemetrics · CWE-89 | Yüksek8,8 | — | %1,4 | 9 Eyl 2020 |
35İzleyin | CVE-2020-15925İstismar yok | A SQL injection vulnerability at a tpf URI in Loway QueueMetrics before 19.10.21 allows remote authenticated attackers to execute arbitrary loway · queuemetrics · CWE-89 | Yüksek8,8 | — | %1,1 | 13 Ağu 2020 |
35İzleyin | CVE-2020-15947İstismar yok | A SQL injection vulnerability in the qm_adm/qm_export_stats_run.do endpoint of Loway QueueMetrics before 19.10.21 allows remote authenticateloway · queuemetrics · CWE-89 | Yüksek8,8 | — | %1,1 | 13 Ağu 2020 |
30İzleyin | CVE-2024-42343İstismar yok | Loway - CWE-204: Observable Response Discrepancyloway · queuemetrics · CWE-204 | Yüksek7,5 | — | %0,3 | 8 Eyl 2024 |
24İzleyin | CVE-2024-42341İstismar yok | Loway - CWE-601: URL Redirection to Untrusted Site ('Open Redirect')loway · queuemetrics · CWE-601 | Orta6,1 | — | %0,2 | 8 Eyl 2024 |
17İzleyin | CVE-2024-42342İstismar yok | Loway - CWE-444: Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling')loway · queuemetrics · CWE-444 | Orta4,3 | — | %0,3 | 8 Eyl 2024 |
- CVE-2020-1312735İzleyin
A SQL injection vulnerability at a tpf URI in Loway QueueMetrics before 19.04.1 allows remote authenticated attackers to execute arbitrary S
YüksekCVSS 8,8İstismar yokEPSS %1loway · queuemetrics9 Eyl 2020
- CVE-2020-1592535İzleyin
A SQL injection vulnerability at a tpf URI in Loway QueueMetrics before 19.10.21 allows remote authenticated attackers to execute arbitrary
YüksekCVSS 8,8İstismar yokEPSS %1loway · queuemetrics13 Ağu 2020
- CVE-2020-1594735İzleyin
A SQL injection vulnerability in the qm_adm/qm_export_stats_run.do endpoint of Loway QueueMetrics before 19.10.21 allows remote authenticate
YüksekCVSS 8,8İstismar yokEPSS %1loway · queuemetrics13 Ağu 2020
- CVE-2024-4234330İzleyin
Loway - CWE-204: Observable Response Discrepancy
YüksekCVSS 7,5İstismar yokEPSS %0loway · queuemetrics8 Eyl 2024
- CVE-2024-4234124İzleyin
Loway - CWE-601: URL Redirection to Untrusted Site ('Open Redirect')
OrtaCVSS 6,1İstismar yokEPSS %0loway · queuemetrics8 Eyl 2024
- CVE-2024-4234217İzleyin
Loway - CWE-444: Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling')
OrtaCVSS 4,3İstismar yokEPSS %0loway · queuemetrics8 Eyl 2024