İçeriğe atla
Noroxi

OpenID kayıtları

openid üreticisine ait 7 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
1
Düzeltme kaydı olan
%42,9
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

7 kayıt
  • CVE-2019-11027
    40Planlayın

    Ruby OpenID (aka ruby-openid) through 2.8.0 has a remotely exploitable flaw.

    KritikCVSS 9,8İstismar yokEPSS %3

    openid · ruby-openid10 Haz 2019

  • CVE-2007-1652
    30İzleyin

    OpenID allows remote attackers to forcibly log a user into an OpenID enabled site, divulge the user's personal information to this site, and

    YüksekCVSS 7,5İstismar yokEPSS %1

    openid · openid23 Mar 2007

  • CVE-2007-5173
    28İzleyin

    PHP remote file inclusion vulnerability in includes/openid/Auth/OpenID/BBStore.php in phpBB Openid 0.2.0 allows remote attackers to execute

    OrtaCVSS 6,8Kavram kanıtıEPSS %3

    openid · openid3 Eki 2007

  • CVE-2007-1651
    27İzleyin

    Cross-site request forgery (CSRF) vulnerability in OpenID allows remote attackers to restore the login session of a user on an OpenID enable

    OrtaCVSS 6,8İstismar yokEPSS %1

    openid · openid23 Mar 2007

  • CVE-2008-3280
    24İzleyin

    It was found that various OpenID Providers (OPs) had TLS Server Certificates that used weak keys, as a result of the Debian Predictable Rand

    OrtaCVSS 5,9Kavram kanıtıEPSS %4

    openid · openid21 May 2021

  • CVE-2011-4314
    24İzleyin

    message/ax/AxMessage.java in OpenID4Java before 0.9.6 final, as used in JBoss Enterprise Application Platform 5.1 before 5.1.2, Step2, Kay F

    OrtaCVSS 5,8İstismar yokEPSS %3

    openid · openid4java27 Oca 2012

  • CVE-2019-9837
    24İzleyin

    Doorkeeper::OpenidConnect (aka the OpenID Connect extension for Doorkeeper) 1.4.x and 1.5.x before 1.5.4 has an open redirect via the redire

    OrtaCVSS 6,1İstismar yokEPSS %1

    openid · openid connect21 Mar 2019