netcommons kayıtları
netcommons üreticisine ait 4 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-284 Improper Access Control1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
4 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2016-4813İstismar yok | NetCommons 2.4.2.1 and earlier allows remote authenticated secretariat (aka CLERK) users to gain privileges by creating a SYSTEM_ADMIN accounetcommons · netcommons · CWE-284 | Yüksek8,8 | — | %1,9 | 18 Haz 2016 |
27İzleyin | CVE-2006-4165İstismar yok | Cross-site scripting (XSS) vulnerability in NetCommons 1.0.8 and earlier allows remote attackers to inject arbitrary web script or HTML via netcommons · netcommons | Orta6,8 | — | %1,3 | 16 Ağu 2006 |
24İzleyin | CVE-2019-6018İstismar yok | Cross-site scripting vulnerability in NetCommons 3.2.2 and earlier (NetCommons3.x) allows remote attackers to inject arbitrary web script ornetcommons · netcommons · CWE-79 | Orta6,1 | — | %0,8 | 26 Ara 2019 |
17İzleyin | CVE-2007-5950İstismar yok | Cross-site scripting (XSS) vulnerability in NetCommons before 1.0.11, and 1.1.x before 1.1.2, allows remote attackers to inject arbitrary wenetcommons · netcommons · CWE-79 | Orta4,3 | — | %1,2 | 13 Kas 2007 |
- CVE-2016-481336İzleyin
NetCommons 2.4.2.1 and earlier allows remote authenticated secretariat (aka CLERK) users to gain privileges by creating a SYSTEM_ADMIN accou
YüksekCVSS 8,8İstismar yokEPSS %2netcommons · netcommons18 Haz 2016
- CVE-2006-416527İzleyin
Cross-site scripting (XSS) vulnerability in NetCommons 1.0.8 and earlier allows remote attackers to inject arbitrary web script or HTML via
OrtaCVSS 6,8İstismar yokEPSS %1netcommons · netcommons16 Ağu 2006
- CVE-2019-601824İzleyin
Cross-site scripting vulnerability in NetCommons 3.2.2 and earlier (NetCommons3.x) allows remote attackers to inject arbitrary web script or
OrtaCVSS 6,1İstismar yokEPSS %1netcommons · netcommons26 Ara 2019
- CVE-2007-595017İzleyin
Cross-site scripting (XSS) vulnerability in NetCommons before 1.0.11, and 1.1.x before 1.1.2, allows remote attackers to inject arbitrary we
OrtaCVSS 4,3İstismar yokEPSS %1netcommons · netcommons13 Kas 2007