İçeriğe atla
Noroxi

peel kayıtları

peel üreticisine ait 15 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
5
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

15 kayıt
  • CVE-2021-37593
    38İzleyin

    PEEL Shopping version 9.4.0 allows remote SQL injection.

    KritikCVSS 9,1Kavram kanıtıEPSS %5

    peel · peel shopping30 Tem 2021

  • CVE-2018-20848
    35İzleyin

    Advisto PEEL SHOPPING 9.0.0 has CSRF via en/achat/caddie_ajout.php and en/achat/caddie_affichage.php, as demonstrated by an XSS payload in t

    YüksekCVSS 8,8İstismar yokEPSS %1

    peel · peel shopping30 Haz 2019

  • CVE-2008-1507
    31İzleyin

    PEEL, possibly 3.x and earlier, has (1) a default info@peel.fr account with password admin, and (2) a default contact@peel.fr account with p

    YüksekCVSS 7,5Kavram kanıtıEPSS %2

    peel · peel25 Mar 2008

  • CVE-2008-6892
    31İzleyin

    SQL injection vulnerability in lire/index.php in Peel 3.1 allows remote attackers to execute arbitrary SQL commands via the rubid parameter.

    YüksekCVSS 7,5Kavram kanıtıEPSS %2

    peel · peel3 Ağu 2009

  • CVE-2005-3572
    30İzleyin

    SQL injection vulnerability in index.php in Peel 2.6 through 2.7 allows remote attackers to execute arbitrary SQL commands via the rubid par

    YüksekCVSS 7,5İstismar yokEPSS %1

    peel · peel16 Kas 2005

  • CVE-2008-1496
    30İzleyin

    Multiple SQL injection vulnerabilities in PEEL, possibly 3.x and earlier, allow remote attackers to execute arbitrary SQL commands via the (

    YüksekCVSS 7,5Kavram kanıtıEPSS %1

    peel · peel25 Mar 2008

  • CVE-2012-5227
    30İzleyin

    SQL injection vulnerability in administrer/tva.php in Peel SHOPPING 2.8 and 2.9 allows remote attackers to execute arbitrary SQL commands vi

    YüksekCVSS 7,5Kavram kanıtıEPSS %1

    peel · peel shopping1 Eki 2012

  • CVE-2008-1495
    27İzleyin

    Unrestricted file upload vulnerability in administrer/produits.php in PEEL, possibly 3.x and earlier, allows remote authenticated administra

    OrtaCVSS 6,5Kavram kanıtıEPSS %2

    peel · peel25 Mar 2008

  • CVE-2021-41672
    26İzleyin

    PEEL Shopping CMS 9.4.0 is vulnerable to authenticated SQL injection in utilisateurs.php.

    OrtaCVSS 6,5İstismar yokEPSS %1

    peel · peel shopping15 Haz 2022

  • CVE-2019-20178
    26İzleyin

    Advisto PEEL Shopping 9.2.1 has CSRF via administrer/utilisateurs.php to delete a user.

    OrtaCVSS 6,5İstismar yokEPSS %0

    peel · peel shopping9 Oca 2020

  • CVE-2008-1506
    21İzleyin

    PEEL, possibly 3.x and earlier, allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls

    OrtaCVSS 5,0Kavram kanıtıEPSS %2

    peel · peel25 Mar 2008

  • CVE-2002-2134
    21İzleyin

    haut.php in PEEL 1.0b allows remote attackers to execute arbitrary PHP code by modifying the dirroot parameter to reference a URL on a remot

    OrtaCVSS 5,0Kavram kanıtıEPSS %2

    peel · peel31 Ara 2002

  • CVE-2021-27190
    21İzleyin

    A Stored Cross Site Scripting(XSS) Vulnerability was discovered in PEEL SHOPPING 9.3.0 and 9.4.0, which are publicly available.

    OrtaCVSS 5,4Kavram kanıtıEPSS %2

    peel · peel shopping11 Şub 2021

  • Peel shopping peel-shopping_9_1_0 version contains a Cross Site Scripting (XSS) vulnerability that can result in an authenticated user injec

    OrtaCVSS 4,8İstismar yokEPSS %1

    peel · peel shopping28 Ara 2018

  • CVE-2012-5226
    17İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in Peel SHOPPING 2.8 and 2.9 allow remote attackers to inject arbitrary web script or HT

    OrtaCVSS 4,3Kavram kanıtıEPSS %2

    peel · peel shopping1 Eki 2012