osstech kayıtları
osstech üreticisine ait 4 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-601 URL Redirection to Untrusted Site ('Open Redirect')2
- CWE-287 Improper Authentication1
- CWE-640 Weak Password Recovery Mechanism for Forgotten Password1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
4 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
33İzleyin | CVE-2017-10873İstismar yok | OpenAM (Open Source Edition) allows an attacker to bypass authentication and access unauthorized contents via unspecified vectors.osstech · openam · CWE-287 | Yüksek8,1 | — | %2,6 | 2 Kas 2017 |
30İzleyin | CVE-2018-0696İstismar yok | OpenAM (Open Source Edition) 13.0 and later does not properly manage sessions, which allows remote authenticated attackers to change the secosstech · openam · CWE-640 | Yüksek7,5 | — | %1,1 | 13 Şub 2019 |
24İzleyin | CVE-2019-5915İstismar yok | Open redirect vulnerability in OpenAM (Open Source Edition) 13.0 allows remote attackers to redirect users to arbitrary web sites and conducosstech · openam · CWE-601 | Orta6,1 | — | %1,1 | 13 Şub 2019 |
24İzleyin | CVE-2022-31735İstismar yok | OpenAM Consortium Edition version 14.0.0 provided by OpenAM Consortium contains an open redirect vulnerability (CWE-601).osstech · openam · CWE-601 | Orta6,1 | — | %0,5 | 15 Eyl 2022 |
- CVE-2017-1087333İzleyin
OpenAM (Open Source Edition) allows an attacker to bypass authentication and access unauthorized contents via unspecified vectors.
YüksekCVSS 8,1İstismar yokEPSS %3osstech · openam2 Kas 2017
- CVE-2018-069630İzleyin
OpenAM (Open Source Edition) 13.0 and later does not properly manage sessions, which allows remote authenticated attackers to change the sec
YüksekCVSS 7,5İstismar yokEPSS %1osstech · openam13 Şub 2019
- CVE-2019-591524İzleyin
Open redirect vulnerability in OpenAM (Open Source Edition) 13.0 allows remote attackers to redirect users to arbitrary web sites and conduc
OrtaCVSS 6,1İstismar yokEPSS %1osstech · openam13 Şub 2019
- CVE-2022-3173524İzleyin
OpenAM Consortium Edition version 14.0.0 provided by OpenAM Consortium contains an open redirect vulnerability (CWE-601).
OrtaCVSS 6,1İstismar yokEPSS %1osstech · openam15 Eyl 2022