Netegrity kayıtları
netegrity üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Saldırı profili
Tüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2004-0425İstismar yok | Heap-based buffer overflow in SiteMinder Affiliate Agent 4.x allows remote attackers to execute arbitrary code via a large SMPROFILE cookie.netegrity · sideminder affiliate agent | Kritik10,0 | — | %5,0 | 18 Ağu 2004 |
31İzleyin | CVE-2001-1455İstismar yok | Netegrity SiteMinder 3.6 through 4.5.1 allows remote attackers to bypass filtering via URLs containing Unicode characters.netegrity · siteminder | Yüksek7,5 | — | %2,1 | 24 Ağu 2001 |
31İzleyin | CVE-2000-0850İstismar yok | Netegrity SiteMinder before 4.11 allows remote attackers to bypass its authentication mechanism by appending "$/FILENAME.ext" (where ext is netegrity · siteminder | Yüksek7,5 | — | %1,7 | 14 Kas 2000 |
28İzleyin | CVE-2004-0672Kavram kanıtı | Multiple cross-site scripting (XSS) vulnerabilities in the primary and management web interfaces in Netegrity IdentityMinder Web Edition 5.6netegrity · identityminder | Orta6,8 | — | %2,0 | 6 Ağu 2004 |
27İzleyin | CVE-2003-1311İstismar yok | siteminderagent/SmMakeCookie.ccc in Netegrity SiteMinder does not ensure that the TARGET parameter names a valid redirection resource, whichnetegrity · siteminder | Orta6,8 | — | %1,5 | 31 Ara 2003 |
17İzleyin | CVE-2003-1312İstismar yok | siteminderagent/SmMakeCookie.ccc in Netegrity SiteMinder places a session ID string in the value of the SMSESSION parameter in a URL, which netegrity · siteminder | Orta4,3 | — | %1,1 | 31 Ara 2003 |
- CVE-2004-042541Planlayın
Heap-based buffer overflow in SiteMinder Affiliate Agent 4.x allows remote attackers to execute arbitrary code via a large SMPROFILE cookie.
KritikCVSS 10,0İstismar yokEPSS %5netegrity · sideminder affiliate agent18 Ağu 2004
- CVE-2001-145531İzleyin
Netegrity SiteMinder 3.6 through 4.5.1 allows remote attackers to bypass filtering via URLs containing Unicode characters.
YüksekCVSS 7,5İstismar yokEPSS %2netegrity · siteminder24 Ağu 2001
- CVE-2000-085031İzleyin
Netegrity SiteMinder before 4.11 allows remote attackers to bypass its authentication mechanism by appending "$/FILENAME.ext" (where ext is
YüksekCVSS 7,5İstismar yokEPSS %2netegrity · siteminder14 Kas 2000
- CVE-2004-067228İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in the primary and management web interfaces in Netegrity IdentityMinder Web Edition 5.6
OrtaCVSS 6,8Kavram kanıtıEPSS %2netegrity · identityminder6 Ağu 2004
- CVE-2003-131127İzleyin
siteminderagent/SmMakeCookie.ccc in Netegrity SiteMinder does not ensure that the TARGET parameter names a valid redirection resource, which
OrtaCVSS 6,8İstismar yokEPSS %1netegrity · siteminder31 Ara 2003
- CVE-2003-131217İzleyin
siteminderagent/SmMakeCookie.ccc in Netegrity SiteMinder places a session ID string in the value of the SMSESSION parameter in a URL, which
OrtaCVSS 4,3İstismar yokEPSS %1netegrity · siteminder31 Ara 2003