openmicroscopy kayıtları
openmicroscopy üreticisine ait 18 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %50
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor4
- CWE-209 Generation of Error Message Containing Sensitive Information1
- CWE-269 Improper Privilege Management1
- CWE-276 Incorrect Default Permissions1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-502 Deserialization of Untrusted Data1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
18 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2019-16244İstismar yok | OMERO.server before 5.6.1 allows attackers to bypass the security filters and access hidden objects via a crafted query.openmicroscopy · omero.server | Kritik9,8 | — | %1,2 | 22 Tem 2020 |
35İzleyin | CVE-2014-7198İstismar yok | OMERO before 5.0.6 has multiple CSRF vulnerabilities because the framework for OMERO's web interface lacks CSRF protection.openmicroscopy · omero · CWE-352 | Yüksek8,8 | — | %0,6 | 31 Mar 2019 |
33İzleyin | CVE-2017-1000438İstismar yok | In OMERO 5.3.3 or earlier a user could create an OriginalFile and adjust its path such that it now points to another user's file on the undeopenmicroscopy · omero | Yüksek8,3 | — | %0,9 | 2 Oca 2018 |
30İzleyin | CVE-2019-9944İstismar yok | In Open Microscopy Environment OMERO.server 5.0.0 through 5.6.0, the reading of files from imported image filesets may circumvent OMERO permopenmicroscopy · omero.server | Yüksek7,5 | — | %1,1 | 17 Haz 2020 |
30İzleyin | CVE-2019-9943İstismar yok | In ome.services.graphs.GraphTraversal.findObjectDetails in Open Microscopy Environment OMERO.server 5.1.0 through 5.6.0, permissions on OMERopenmicroscopy · omero.server · CWE-276 | Yüksek7,5 | — | %0,8 | 17 Haz 2020 |
28İzleyin | CVE-2018-1000633İstismar yok | The Open Microscopy Environment OMERO.web version prior to 5.4.7 contains an Information Exposure Through Log Files vulnerability in the logopenmicroscopy · omero · CWE-200 | Yüksek7,2 | — | %1,2 | 20 Ağu 2018 |
28İzleyin | CVE-2018-1000634İstismar yok | The Open Microscopy Environment OMERO.server version 5.4.0 to 5.4.6 contains an Improper Access Control vulnerability in User management thaopenmicroscopy · omero · CWE-269 | Yüksek7,2 | — | %1,0 | 20 Ağu 2018 |
27İzleyin | CVE-2026-22187Kavram kanıtı | Bio-Formats <= 8.3.0 Memoizer Unsafe Deserialization via .bfmemo Cache Filesopenmicroscopy · bio-formats · CWE-502 | Orta6,8 | — | %0,5 | 7 Oca 2026 |
26İzleyin | CVE-2021-21376İstismar yok | Information Exposure in OMERO.webopenmicroscopy · omero.web · CWE-200 | Orta6,5 | — | %1,5 | 23 Mar 2021 |
26İzleyin | CVE-2018-1000635İstismar yok | The Open Microscopy Environment OMERO.server version 5.4.0 to 5.4.6 contains a Information Exposure Through Sent Data vulnerability in OMEROopenmicroscopy · omero · CWE-200 | Orta6,7 | — | %0,3 | 20 Ağu 2018 |
24İzleyin | CVE-2021-41132İstismar yok | Inconsistent input sanitisation leads to XSS vectorsopenmicroscopy · omero-figure · CWE-116 | Orta6,1 | — | %1,0 | 14 Eki 2021 |
24İzleyin | CVE-2024-35180İstismar yok | OMERO.web JSONP callback vulnerabilityopenmicroscopy · omero-web · CWE-830 | Orta6,1 | — | %0,3 | 21 May 2024 |
22İzleyin | CVE-2020-7932İstismar yok | OMERO.web before 5.6.3 optionally allows sensitive data elements (e.g., a session key) to be passed as URL query parameters.openmicroscopy · omero.web · CWE-200 | Orta5,7 | — | %0,8 | 17 Haz 2020 |
21İzleyin | CVE-2019-16245İstismar yok | OMERO before 5.6.1 makes the details of each user available to all users.openmicroscopy · omero | Orta5,3 | — | %0,9 | 17 Haz 2020 |
21İzleyin | CVE-2021-21377İstismar yok | Open Redirect in OMERO.webopenmicroscopy · omero.web · CWE-601 | Orta5,4 | — | %0,8 | 23 Mar 2021 |
21İzleyin | CVE-2025-54791İstismar yok | OMERO.web displays unecessary user information when requesting to reset the passwordopenmicroscopy · omero-web · CWE-209 | Orta5,3 | — | %0,3 | 13 Ağu 2025 |
18İzleyin | CVE-2026-22186İstismar yok | Bio-Formats <= 8.3.0 XXE in Leica XLEF Metadata Parseropenmicroscopy · bio-formats · CWE-611 | Orta4,6 | — | %0,2 | 7 Oca 2026 |
15İzleyin | CVE-2020-6752İstismar yok | In OMERO before 5.6.1, group owners can access members' data in other groups.openmicroscopy · omero · CWE-863 | Düşük3,8 | — | %0,6 | 17 Haz 2020 |
- CVE-2019-1624439İzleyin
OMERO.server before 5.6.1 allows attackers to bypass the security filters and access hidden objects via a crafted query.
KritikCVSS 9,8İstismar yokEPSS %1openmicroscopy · omero.server22 Tem 2020
- CVE-2014-719835İzleyin
OMERO before 5.0.6 has multiple CSRF vulnerabilities because the framework for OMERO's web interface lacks CSRF protection.
YüksekCVSS 8,8İstismar yokEPSS %1openmicroscopy · omero31 Mar 2019
- CVE-2017-100043833İzleyin
In OMERO 5.3.3 or earlier a user could create an OriginalFile and adjust its path such that it now points to another user's file on the unde
YüksekCVSS 8,3İstismar yokEPSS %1openmicroscopy · omero2 Oca 2018
- CVE-2019-994430İzleyin
In Open Microscopy Environment OMERO.server 5.0.0 through 5.6.0, the reading of files from imported image filesets may circumvent OMERO perm
YüksekCVSS 7,5İstismar yokEPSS %1openmicroscopy · omero.server17 Haz 2020
- CVE-2019-994330İzleyin
In ome.services.graphs.GraphTraversal.findObjectDetails in Open Microscopy Environment OMERO.server 5.1.0 through 5.6.0, permissions on OMER
YüksekCVSS 7,5İstismar yokEPSS %1openmicroscopy · omero.server17 Haz 2020
- CVE-2018-100063328İzleyin
The Open Microscopy Environment OMERO.web version prior to 5.4.7 contains an Information Exposure Through Log Files vulnerability in the log
YüksekCVSS 7,2İstismar yokEPSS %1openmicroscopy · omero20 Ağu 2018
- CVE-2018-100063428İzleyin
The Open Microscopy Environment OMERO.server version 5.4.0 to 5.4.6 contains an Improper Access Control vulnerability in User management tha
YüksekCVSS 7,2İstismar yokEPSS %1openmicroscopy · omero20 Ağu 2018
- CVE-2026-2218727İzleyin
Bio-Formats <= 8.3.0 Memoizer Unsafe Deserialization via .bfmemo Cache Files
OrtaCVSS 6,8Kavram kanıtıEPSS %1openmicroscopy · bio-formats7 Oca 2026
- CVE-2021-2137626İzleyin
Information Exposure in OMERO.web
OrtaCVSS 6,5İstismar yokEPSS %1openmicroscopy · omero.web23 Mar 2021
- CVE-2018-100063526İzleyin
The Open Microscopy Environment OMERO.server version 5.4.0 to 5.4.6 contains a Information Exposure Through Sent Data vulnerability in OMERO
OrtaCVSS 6,7İstismar yokEPSS %0openmicroscopy · omero20 Ağu 2018
- CVE-2021-4113224İzleyin
Inconsistent input sanitisation leads to XSS vectors
OrtaCVSS 6,1İstismar yokEPSS %1openmicroscopy · omero-figure14 Eki 2021
- CVE-2024-3518024İzleyin
OMERO.web JSONP callback vulnerability
OrtaCVSS 6,1İstismar yokEPSS %0openmicroscopy · omero-web21 May 2024
- CVE-2020-793222İzleyin
OMERO.web before 5.6.3 optionally allows sensitive data elements (e.g., a session key) to be passed as URL query parameters.
OrtaCVSS 5,7İstismar yokEPSS %1openmicroscopy · omero.web17 Haz 2020
- CVE-2019-1624521İzleyin
OMERO before 5.6.1 makes the details of each user available to all users.
OrtaCVSS 5,3İstismar yokEPSS %1openmicroscopy · omero17 Haz 2020
- CVE-2021-2137721İzleyin
Open Redirect in OMERO.web
OrtaCVSS 5,4İstismar yokEPSS %1openmicroscopy · omero.web23 Mar 2021
- CVE-2025-5479121İzleyin
OMERO.web displays unecessary user information when requesting to reset the password
OrtaCVSS 5,3İstismar yokEPSS %0openmicroscopy · omero-web13 Ağu 2025
- CVE-2026-2218618İzleyin
Bio-Formats <= 8.3.0 XXE in Leica XLEF Metadata Parser
OrtaCVSS 4,6İstismar yokEPSS %0openmicroscopy · bio-formats7 Oca 2026
- CVE-2020-675215İzleyin
In OMERO before 5.6.1, group owners can access members' data in other groups.
DüşükCVSS 3,8İstismar yokEPSS %1openmicroscopy · omero17 Haz 2020