ows kayıtları
ows üreticisine ait 3 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
3 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
20İzleyin | CVE-2015-7305İstismar yok | The Scald module 7.x-1.x before 7.x-1.5 for Drupal does not properly restrict access to fields, which allows remote attackers to obtain sensows · scald · CWE-200 | Orta5,0 | — | %1,2 | 21 Eyl 2015 |
17İzleyin | CVE-2013-4174İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in the Scald module 7.x-1.x before 7.x-1.1 for Drupal allow remote attackers to inject adrupal · drupal · CWE-79 | Orta4,3 | — | %1,4 | 19 Ağu 2013 |
11İzleyin | CVE-2013-5315İstismar yok | Cross-site scripting (XSS) vulnerability in the Resource Manager in the MEE submodule (mee.module) in the Scald module 6.x-1.x before 6.x-1.ows · scald · CWE-79 | Düşük2,6 | — | %1,7 | 19 Ağu 2013 |
- CVE-2015-730520İzleyin
The Scald module 7.x-1.x before 7.x-1.5 for Drupal does not properly restrict access to fields, which allows remote attackers to obtain sens
OrtaCVSS 5,0İstismar yokEPSS %1ows · scald21 Eyl 2015
- CVE-2013-417417İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in the Scald module 7.x-1.x before 7.x-1.1 for Drupal allow remote attackers to inject a
OrtaCVSS 4,3İstismar yokEPSS %1drupal · drupal19 Ağu 2013
- CVE-2013-531511İzleyin
Cross-site scripting (XSS) vulnerability in the Resource Manager in the MEE submodule (mee.module) in the Scald module 6.x-1.x before 6.x-1.
DüşükCVSS 2,6İstismar yokEPSS %2ows · scald19 Ağu 2013