İçeriğe atla
Noroxi

paperthin kayıtları

paperthin üreticisine ait 19 yayımlanmış kayıt.

Tüm kayıtlar

19 kayıt
  • CVE-2014-2864
    42Planlayın

    Multiple directory traversal vulnerabilities in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allow remote attackers to have an uns

    KritikCVSS 10,0İstismar yokEPSS %5

    paperthin · commonspot content server15 Nis 2014

  • CVE-2014-2874
    42Planlayın

    PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to execute arbitrary code via shell metacharacters in an unsp

    KritikCVSS 10,0İstismar yokEPSS %5

    paperthin · commonspot content server15 Nis 2014

  • CVE-2014-2867
    41Planlayın

    Unrestricted file upload vulnerability in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to execute arbitrar

    KritikCVSS 10,0İstismar yokEPSS %5

    paperthin · commonspot content server15 Nis 2014

  • CVE-2014-2863
    41Planlayın

    Multiple absolute path traversal vulnerabilities in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allow remote attackers to have an

    KritikCVSS 10,0İstismar yokEPSS %4

    paperthin · commonspot content server15 Nis 2014

  • CVE-2014-2866
    41Planlayın

    PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 relies on client JavaScript code for access restrictions, which allows remote attacke

    KritikCVSS 10,0İstismar yokEPSS %3

    paperthin · commonspot content server15 Nis 2014

  • CVE-2014-2868
    31İzleyin

    PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to modify the flow of execution of ColdFusion code by using a

    YüksekCVSS 7,5İstismar yokEPSS %3

    paperthin · commonspot content server15 Nis 2014

  • CVE-2014-2865
    31İzleyin

    PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to bypass intended access restrictions via a '\0' character,

    YüksekCVSS 7,5İstismar yokEPSS %2

    paperthin · commonspot content server15 Nis 2014

  • CVE-2014-2859
    31İzleyin

    PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to bypass intended access restrictions via a direct request.

    YüksekCVSS 7,5İstismar yokEPSS %2

    paperthin · commonspot content server15 Nis 2014

  • CVE-2014-2862
    27İzleyin

    PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 does not check authorization in unspecified situations, which allows remote authentic

    OrtaCVSS 6,5İstismar yokEPSS %2

    paperthin · commonspot content server15 Nis 2014

  • CVE-2014-2873
    21İzleyin

    PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 does not require authentication for access to log files, which allows remote attacker

    OrtaCVSS 5,0İstismar yokEPSS %2

    paperthin · commonspot content server15 Nis 2014

  • CVE-2014-2869
    21İzleyin

    PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to obtain sensitive information via requests to unspecified U

    OrtaCVSS 5,0İstismar yokEPSS %2

    paperthin · commonspot content server15 Nis 2014

  • CVE-2014-2872
    21İzleyin

    PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to obtain potentially sensitive information from a directory

    OrtaCVSS 5,0İstismar yokEPSS %2

    paperthin · commonspot content server15 Nis 2014

  • CVE-2014-2871
    21İzleyin

    PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 relies on an HTTP session for entering credentials on login pages, which allows remot

    OrtaCVSS 5,0İstismar yokEPSS %2

    paperthin · commonspot content server15 Nis 2014

  • CVE-2014-2870
    20İzleyin

    The default configuration of PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 uses cleartext for storage of credentials in a database,

    OrtaCVSS 5,0İstismar yokEPSS %1

    paperthin · commonspot content server15 Nis 2014

  • CVE-2005-4575
    20İzleyin

    PaperThin CommonSpot Content Server 4.5 and earlier allow remote attackers to obtain sensitive information via an invalid errmsg parameter t

    OrtaCVSS 5,0İstismar yokEPSS %1

    paperthin · commonspot content server29 Ara 2005

  • CVE-2014-2861
    18İzleyin

    Incomplete blacklist vulnerability in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to conduct cross-site s

    OrtaCVSS 4,3İstismar yokEPSS %2

    paperthin · commonspot content server15 Nis 2014

  • CVE-2014-2860
    18İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allow remote attackers to inje

    OrtaCVSS 4,3İstismar yokEPSS %2

    paperthin · commonspot content server15 Nis 2014

  • CVE-2005-4574
    18İzleyin

    Cross-site scripting (XSS) vulnerability in loader.cfm in PaperThin CommonSpot Content Server 4.5 and earlier allows remote attackers to inj

    OrtaCVSS 4,3Kavram kanıtıEPSS %2

    paperthin · commonspot content server29 Ara 2005

  • CVE-2010-0468
    17İzleyin

    Cross-site scripting (XSS) vulnerability in utilities/longproc.cfm in PaperThin CommonSpot Content Server allows remote attackers to inject

    OrtaCVSS 4,3Kavram kanıtıEPSS %2

    paperthin · commonspot content server2 Şub 2010