ozeki kayıtları
ozeki üreticisine ait 12 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-1236 Improper Neutralization of Formula Elements in a CSV File1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-310 Cryptographic Issues1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
- CWE-502 Deserialization of Untrusted Data1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
12 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2020-14022İstismar yok | Ozeki NG SMS Gateway 4.17.1 through 4.17.6 does not check the file type when bulk importing new contacts ("Import Contacts" functionality) fozeki · ozeki ng sms gateway · CWE-434 | Yüksek8,8 | — | %1,8 | 22 Eyl 2020 |
36İzleyin | CVE-2020-14026İstismar yok | CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the Export Of Contacts feature in Ozeki NG SMS Gateway through 4.17ozeki · ozeki ng sms gateway · CWE-1236 | Yüksek8,8 | — | %1,7 | 22 Eyl 2020 |
35İzleyin | CVE-2020-14025İstismar yok | Ozeki NG SMS Gateway through 4.17.6 has multiple CSRF vulnerabilities.ozeki · ozeki ng sms gateway · CWE-352 | Yüksek8,8 | — | %0,5 | 22 Eyl 2020 |
30İzleyin | CVE-2020-14029İstismar yok | An issue was discovered in Ozeki NG SMS Gateway through 4.17.6.ozeki · ozeki ng sms gateway · CWE-611 | Yüksek7,5 | — | %1,4 | 18 Eyl 2020 |
29İzleyin | CVE-2020-14028İstismar yok | An issue was discovered in Ozeki NG SMS Gateway through 4.17.6.ozeki · ozeki ng sms gateway · CWE-22 | Yüksek7,2 | — | %1,9 | 22 Eyl 2020 |
29İzleyin | CVE-2020-14030İstismar yok | An issue was discovered in Ozeki NG SMS Gateway through 4.17.6.ozeki · ozeki ng sms gateway · CWE-502 | Yüksek7,2 | — | %1,8 | 30 Eyl 2020 |
28İzleyin | CVE-2020-14031İstismar yok | An issue was discovered in Ozeki NG SMS Gateway through 4.17.6.ozeki · ozeki ng sms gateway | Yüksek7,2 | — | %1,6 | 22 Eyl 2020 |
24İzleyin | CVE-2020-14024İstismar yok | Ozeki NG SMS Gateway through 4.17.6 has multiple authenticated stored and/or reflected XSS vulnerabilities via the (1) Receiver or Recipientozeki · ozeki ng sms gateway · CWE-79 | Orta6,1 | — | %0,7 | 22 Eyl 2020 |
21İzleyin | CVE-2020-14027İstismar yok | An issue was discovered in Ozeki NG SMS Gateway through 4.17.6.ozeki · ozeki ng sms gateway · CWE-88 | Orta5,3 | — | %0,8 | 22 Eyl 2020 |
19İzleyin | CVE-2020-14021İstismar yok | An issue was discovered in Ozeki NG SMS Gateway through 4.17.6.ozeki · ozeki ng sms gateway | Orta4,9 | — | %1,1 | 18 Eyl 2020 |
19İzleyin | CVE-2020-14023İstismar yok | Ozeki NG SMS Gateway through 4.17.6 allows SSRF via SMS WCF or RSS To SMS.ozeki · ozeki ng sms gateway · CWE-918 | Orta4,9 | — | %1,0 | 22 Eyl 2020 |
8İzleyin | CVE-2006-6674İstismar yok | Ozeki HTTP-SMS Gateway 1.0, and possibly earlier, stores usernames and passwords in plaintext in the HKLM\Software\Ozeki\SMSServer\CurrentVeozeki · http-sms gateway · CWE-310 | Düşük2,1 | — | %0,3 | 20 Ara 2006 |
- CVE-2020-1402236İzleyin
Ozeki NG SMS Gateway 4.17.1 through 4.17.6 does not check the file type when bulk importing new contacts ("Import Contacts" functionality) f
YüksekCVSS 8,8İstismar yokEPSS %2ozeki · ozeki ng sms gateway22 Eyl 2020
- CVE-2020-1402636İzleyin
CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the Export Of Contacts feature in Ozeki NG SMS Gateway through 4.17
YüksekCVSS 8,8İstismar yokEPSS %2ozeki · ozeki ng sms gateway22 Eyl 2020
- CVE-2020-1402535İzleyin
Ozeki NG SMS Gateway through 4.17.6 has multiple CSRF vulnerabilities.
YüksekCVSS 8,8İstismar yokEPSS %1ozeki · ozeki ng sms gateway22 Eyl 2020
- CVE-2020-1402930İzleyin
An issue was discovered in Ozeki NG SMS Gateway through 4.17.6.
YüksekCVSS 7,5İstismar yokEPSS %1ozeki · ozeki ng sms gateway18 Eyl 2020
- CVE-2020-1402829İzleyin
An issue was discovered in Ozeki NG SMS Gateway through 4.17.6.
YüksekCVSS 7,2İstismar yokEPSS %2ozeki · ozeki ng sms gateway22 Eyl 2020
- CVE-2020-1403029İzleyin
An issue was discovered in Ozeki NG SMS Gateway through 4.17.6.
YüksekCVSS 7,2İstismar yokEPSS %2ozeki · ozeki ng sms gateway30 Eyl 2020
- CVE-2020-1403128İzleyin
An issue was discovered in Ozeki NG SMS Gateway through 4.17.6.
YüksekCVSS 7,2İstismar yokEPSS %2ozeki · ozeki ng sms gateway22 Eyl 2020
- CVE-2020-1402424İzleyin
Ozeki NG SMS Gateway through 4.17.6 has multiple authenticated stored and/or reflected XSS vulnerabilities via the (1) Receiver or Recipient
OrtaCVSS 6,1İstismar yokEPSS %1ozeki · ozeki ng sms gateway22 Eyl 2020
- CVE-2020-1402721İzleyin
An issue was discovered in Ozeki NG SMS Gateway through 4.17.6.
OrtaCVSS 5,3İstismar yokEPSS %1ozeki · ozeki ng sms gateway22 Eyl 2020
- CVE-2020-1402119İzleyin
An issue was discovered in Ozeki NG SMS Gateway through 4.17.6.
OrtaCVSS 4,9İstismar yokEPSS %1ozeki · ozeki ng sms gateway18 Eyl 2020
- CVE-2020-1402319İzleyin
Ozeki NG SMS Gateway through 4.17.6 allows SSRF via SMS WCF or RSS To SMS.
OrtaCVSS 4,9İstismar yokEPSS %1ozeki · ozeki ng sms gateway22 Eyl 2020
- CVE-2006-66748İzleyin
Ozeki HTTP-SMS Gateway 1.0, and possibly earlier, stores usernames and passwords in plaintext in the HKLM\Software\Ozeki\SMSServer\CurrentVe
DüşükCVSS 2,1İstismar yokEPSS %0ozeki · http-sms gateway20 Ara 2006