orpak kayıtları
orpak üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-310 Cryptographic Issues1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-798 Use of Hard-coded Credentials1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2017-14728İstismar yok | An authentication bypass was found in an unknown area of the SiteOmat source code.orpak · siteomat · CWE-798 | Kritik9,8 | — | %6,3 | 3 Haz 2019 |
40Planlayın | CVE-2017-14851İstismar yok | A SQL injection vulnerability exists in all Orpak SiteOmat versions prior to 2017-09-25.orpak · siteomat · CWE-89 | Kritik9,8 | — | %4,1 | 3 Haz 2019 |
38İzleyin | CVE-2017-14854İstismar yok | A stack buffer overflow exists in one of the Orpak SiteOmat CGI components, allowing for remote code execution.orpak · siteomat · CWE-119 | Kritik9,1 | — | %7,3 | 3 Haz 2019 |
35İzleyin | CVE-2017-14853İstismar yok | The Orpak SiteOmat OrCU component is vulnerable to code injection, for all versions prior to 2017-09-25, due to a search query that uses a dorpak · siteomat · CWE-94 | Yüksek8,6 | — | %3,8 | 3 Haz 2019 |
34İzleyin | CVE-2017-14852İstismar yok | An insecure communication was found between a user and the Orpak SiteOmat management console for all known versions, due to an invalid SSL corpak · siteomat · CWE-310 | Yüksek8,6 | — | %1,0 | 3 Haz 2019 |
25İzleyin | CVE-2017-14850İstismar yok | All known versions of the Orpak SiteOmat web management console is vulnerable to multiple instances of Stored Cross-site Scripting due to imorpak · siteomat · CWE-79 | Orta6,1 | — | %1,7 | 3 Haz 2019 |
- CVE-2017-1472841Planlayın
An authentication bypass was found in an unknown area of the SiteOmat source code.
KritikCVSS 9,8İstismar yokEPSS %6orpak · siteomat3 Haz 2019
- CVE-2017-1485140Planlayın
A SQL injection vulnerability exists in all Orpak SiteOmat versions prior to 2017-09-25.
KritikCVSS 9,8İstismar yokEPSS %4orpak · siteomat3 Haz 2019
- CVE-2017-1485438İzleyin
A stack buffer overflow exists in one of the Orpak SiteOmat CGI components, allowing for remote code execution.
KritikCVSS 9,1İstismar yokEPSS %7orpak · siteomat3 Haz 2019
- CVE-2017-1485335İzleyin
The Orpak SiteOmat OrCU component is vulnerable to code injection, for all versions prior to 2017-09-25, due to a search query that uses a d
YüksekCVSS 8,6İstismar yokEPSS %4orpak · siteomat3 Haz 2019
- CVE-2017-1485234İzleyin
An insecure communication was found between a user and the Orpak SiteOmat management console for all known versions, due to an invalid SSL c
YüksekCVSS 8,6İstismar yokEPSS %1orpak · siteomat3 Haz 2019
- CVE-2017-1485025İzleyin
All known versions of the Orpak SiteOmat web management console is vulnerable to multiple instances of Stored Cross-site Scripting due to im
OrtaCVSS 6,1İstismar yokEPSS %2orpak · siteomat3 Haz 2019