İçeriğe atla
Noroxi

ObjectPlanet kayıtları

objectplanet üreticisine ait 9 yayımlanmış kayıt.

Tüm kayıtlar

9 kayıt
  • CVE-2023-4472
    39İzleyin

    Cryptographically weak PRNG in Opinio 7.22

    KritikCVSS 9,8İstismar yokEPSS %1

    objectplanet · opinio1 Şub 2024

  • CVE-2020-26806
    37İzleyin

    admin/file.do in ObjectPlanet Opinio before 7.15 allows Unrestricted File Upload of executable JSP files, resulting in remote code execution

    YüksekCVSS 8,8İstismar yokEPSS %6

    objectplanet · opinio31 Tem 2021

  • CVE-2020-26565
    31İzleyin

    ObjectPlanet Opinio before 7.14 allows Expression Language Injection via the admin/permissionList.do from parameter.

    YüksekCVSS 7,5İstismar yokEPSS %2

    objectplanet · opinio31 Tem 2021

  • CVE-2020-26564
    26İzleyin

    ObjectPlanet Opinio before 7.15 allows XXE attacks via three steps: modify a .css file to have <!ENTITY content, create a .xml file for a ge

    OrtaCVSS 6,5İstismar yokEPSS %1

    objectplanet · opinio31 Tem 2021

  • CVE-2020-26563
    24İzleyin

    ObjectPlanet Opinio before 7.14 allows reflected XSS via the survey/admin/surveyAdmin.do?action=viewSurveyAdmin query string.

    OrtaCVSS 6,1İstismar yokEPSS %1

    objectplanet · opinio30 Tem 2021

  • CVE-2017-10798
    24İzleyin

    In ObjectPlanet Opinio before 7.6.4, there is XSS.

    OrtaCVSS 6,1İstismar yokEPSS %1

    objectplanet · opinio2 Tem 2017

  • CVE-2025-13873
    19İzleyin

    The feature to import a survey is prone to stored Cross-Site Script attacks

    OrtaCVSS 4,8İstismar yokEPSS %0

    objectplanet · opinio2 Ara 2025

  • The feature to manage resources is prone to Cross-Site Request Forgery attacks

    DüşükCVSS 2,3İstismar yokEPSS %0

    objectplanet · opinio2 Ara 2025

  • Blind Server-Side Request Forgery (SSRF) in the survey-import feature of ObjectPlanet Opinio

    DüşükCVSS 2,1İstismar yokEPSS %0

    objectplanet · opinio2 Ara 2025