phpoutsourcing kayıtları
phpoutsourcing üreticisine ait 23 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 7
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
23 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
32İzleyin | CVE-2006-0881Kavram kanıtı | Multiple PHP remote file include vulnerabilities in gorum/gorumlib.php in Noah's Classifieds 1.3, when register_globals is enabled, allow rephpoutsourcing · noahs classifieds | Yüksek7,5 | — | %7,7 | 24 Şub 2006 |
32İzleyin | CVE-2005-2651Kavram kanıtı | gorum/prod.php in Zorum 3.5 allows remote attackers to execute arbitrary code via shell metacharacters in the argv parameter.phpoutsourcing · zorum | Yüksek7,5 | — | %5,1 | 23 Ağu 2005 |
31İzleyin | CVE-2008-5199Kavram kanıtı | PHP remote file inclusion vulnerability in include.php in PHPOutsourcing IdeaBox (aka IdeBox) 1.1 allows remote attackers to execute arbitraphpoutsourcing · ideabox · CWE-94 | Yüksek7,5 | — | %2,9 | 21 Kas 2008 |
31İzleyin | CVE-2006-5431Kavram kanıtı | PHP remote file inclusion vulnerability in gorum/dbproperty.php in PHPOutsourcing Zorum 3.5 and earlier allows remote attackers to execute aphpoutsourcing · zorum | Yüksek7,5 | — | %2,5 | 20 Eki 2006 |
30İzleyin | CVE-2005-0676İstismar yok | index.php in Zorum 3.5 allows remote attackers to trigger an SQL error, and possibly inject arbitrary SQL commands, via the search capabilitphpoutsourcing · zorum | Yüksek7,5 | — | %1,4 | 4 May 2005 |
30İzleyin | CVE-2006-0879Kavram kanıtı | SQL injection vulnerability in the search tool in Noah's Classifieds 1.3 allows remote attackers to execute arbitrary SQL commands via unspephpoutsourcing · noahs classifieds | Yüksek7,5 | — | %1,3 | 24 Şub 2006 |
30İzleyin | CVE-2006-3332İstismar yok | SQL injection vulnerability in index.php in Zorum Forum 3.5 allows remote attackers to execute arbitrary SQL commands via the (1) offset, (2phpoutsourcing · zorum | Yüksek7,5 | — | %1,2 | 30 Haz 2006 |
30İzleyin | CVE-2005-2979Kavram kanıtı | SQL injection vulnerability in index.php in phpoutsourcing Noah's classifieds allows remote attackers to execute arbitrary SQL commands via phpoutsourcing · noahs classifieds | Yüksek7,5 | — | %1,2 | 19 Eyl 2005 |
30İzleyin | CVE-2005-4619Kavram kanıtı | SQL injection vulnerability in index.php in phpoutsourcing Zorum Forum 3.5 and earlier allows remote attackers to execute arbitrary SQL commphpoutsourcing · zorum | Yüksek7,5 | — | %1,1 | 31 Ara 2005 |
27İzleyin | CVE-2006-1331İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Noah's Classifieds 1.3 and earlier allow remote attackers to inject arbiphpoutsourcing · noahs classifieds | Orta6,8 | — | %1,4 | 20 Mar 2006 |
27İzleyin | CVE-2006-5293İstismar yok | Cross-site scripting (XSS) vulnerability in index.php in PhpOutsourcing Noah's Classifieds 1.3 and earlier allows remote attackers to injectphpoutsourcing · noahs classifieds | Orta6,8 | — | %1,3 | 16 Eki 2006 |
25İzleyin | CVE-2006-1332İstismar yok | Noah's Classifieds 1.3 and earlier allows remote attackers to obtain sensitive information via an invalid list parameter in the showdetails phpoutsourcing · noahs classifieds | Orta6,4 | — | %1,6 | 20 Mar 2006 |
21İzleyin | CVE-2003-1089Kavram kanıtı | index.php for Zorum 3.4 allows remote attackers to determine the full path of the web root via invalid parameter names, which reveals the paphpoutsourcing · zorum | Orta5,0 | — | %2,9 | 31 Ara 2003 |
21İzleyin | CVE-2006-0882Kavram kanıtı | Directory traversal vulnerability in include.php in Noah's Classifieds 1.3 allows remote attackers to include arbitrary local files via the phpoutsourcing · noahs classifieds | Orta5,0 | — | %2,8 | 24 Şub 2006 |
20İzleyin | CVE-2005-2652İstismar yok | Zorum 3.5 allows remote attackers to obtain the full installation path via direct requests to (1) gorum/notification.php, (2) user.php, (3) phpoutsourcing · zorum | Orta5,0 | — | %1,6 | 23 Ağu 2005 |
20İzleyin | CVE-2006-0878İstismar yok | Noah's Classifieds 1.3 allows remote attackers to obtain the installation path via a direct request to include files, as demonstrated by claphpoutsourcing · noahs classifieds | Orta5,0 | — | %1,5 | 24 Şub 2006 |
20İzleyin | CVE-2005-0677İstismar yok | index.php for Zorum 3.5 allows remote attackers to perform certain actions as other users by modifying the id parameter.phpoutsourcing · zorum | Orta5,0 | — | %1,1 | 2 May 2005 |
18İzleyin | CVE-2006-0880Kavram kanıtı | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Noah's Classifieds 1.3 allow remote attackers to inject arbitrary web scphpoutsourcing · noahs classifieds | Orta4,3 | — | %1,9 | 24 Şub 2006 |
18İzleyin | CVE-2005-2980Kavram kanıtı | Cross-site scripting (XSS) vulnerability in index.php in phpoutsourcing Noah's classifieds 1.3 allows remote attackers to inject arbitrary wphpoutsourcing · noahs classifieds | Orta4,3 | — | %1,8 | 19 Eyl 2005 |
18İzleyin | CVE-2003-1088Kavram kanıtı | Cross-site scripting (XSS) vulnerability in index.php for Zorum 3.4 and 3.5 allows remote attackers to inject arbitrary web script or HTML vphpoutsourcing · zorum | Orta4,3 | — | %1,7 | 11 Ağu 2003 |
17İzleyin | CVE-2005-0675İstismar yok | Cross-site scripting (XSS) vulnerability in index.php for Zorum 3.5 allows remote attackers to inject arbitrary web script or HTML via the (phpoutsourcing · zorum | Orta4,3 | — | %1,0 | 2 May 2005 |
17İzleyin | CVE-2002-2350İstismar yok | Cross-site scripting (XSS) vulnerability in z_user_show.php in dbtreelistproperty_method.php in Zorum 2.4 allows remote attackers to inject phpoutsourcing · zorum · CWE-79 | Orta4,3 | — | %0,9 | 31 Ara 2002 |
10İzleyin | CVE-2006-3333İstismar yok | Cross-site scripting (XSS) vulnerability in index.php in Zorum Forum 3.5 allows remote attackers to inject web script or HTML via the multipphpoutsourcing · zorum | Düşük2,6 | — | %0,8 | 30 Haz 2006 |
- CVE-2006-088132İzleyin
Multiple PHP remote file include vulnerabilities in gorum/gorumlib.php in Noah's Classifieds 1.3, when register_globals is enabled, allow re
YüksekCVSS 7,5Kavram kanıtıEPSS %8phpoutsourcing · noahs classifieds24 Şub 2006
- CVE-2005-265132İzleyin
gorum/prod.php in Zorum 3.5 allows remote attackers to execute arbitrary code via shell metacharacters in the argv parameter.
YüksekCVSS 7,5Kavram kanıtıEPSS %5phpoutsourcing · zorum23 Ağu 2005
- CVE-2008-519931İzleyin
PHP remote file inclusion vulnerability in include.php in PHPOutsourcing IdeaBox (aka IdeBox) 1.1 allows remote attackers to execute arbitra
YüksekCVSS 7,5Kavram kanıtıEPSS %3phpoutsourcing · ideabox21 Kas 2008
- CVE-2006-543131İzleyin
PHP remote file inclusion vulnerability in gorum/dbproperty.php in PHPOutsourcing Zorum 3.5 and earlier allows remote attackers to execute a
YüksekCVSS 7,5Kavram kanıtıEPSS %2phpoutsourcing · zorum20 Eki 2006
- CVE-2005-067630İzleyin
index.php in Zorum 3.5 allows remote attackers to trigger an SQL error, and possibly inject arbitrary SQL commands, via the search capabilit
YüksekCVSS 7,5İstismar yokEPSS %1phpoutsourcing · zorum4 May 2005
- CVE-2006-087930İzleyin
SQL injection vulnerability in the search tool in Noah's Classifieds 1.3 allows remote attackers to execute arbitrary SQL commands via unspe
YüksekCVSS 7,5Kavram kanıtıEPSS %1phpoutsourcing · noahs classifieds24 Şub 2006
- CVE-2006-333230İzleyin
SQL injection vulnerability in index.php in Zorum Forum 3.5 allows remote attackers to execute arbitrary SQL commands via the (1) offset, (2
YüksekCVSS 7,5İstismar yokEPSS %1phpoutsourcing · zorum30 Haz 2006
- CVE-2005-297930İzleyin
SQL injection vulnerability in index.php in phpoutsourcing Noah's classifieds allows remote attackers to execute arbitrary SQL commands via
YüksekCVSS 7,5Kavram kanıtıEPSS %1phpoutsourcing · noahs classifieds19 Eyl 2005
- CVE-2005-461930İzleyin
SQL injection vulnerability in index.php in phpoutsourcing Zorum Forum 3.5 and earlier allows remote attackers to execute arbitrary SQL comm
YüksekCVSS 7,5Kavram kanıtıEPSS %1phpoutsourcing · zorum31 Ara 2005
- CVE-2006-133127İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Noah's Classifieds 1.3 and earlier allow remote attackers to inject arbi
OrtaCVSS 6,8İstismar yokEPSS %1phpoutsourcing · noahs classifieds20 Mar 2006
- CVE-2006-529327İzleyin
Cross-site scripting (XSS) vulnerability in index.php in PhpOutsourcing Noah's Classifieds 1.3 and earlier allows remote attackers to inject
OrtaCVSS 6,8İstismar yokEPSS %1phpoutsourcing · noahs classifieds16 Eki 2006
- CVE-2006-133225İzleyin
Noah's Classifieds 1.3 and earlier allows remote attackers to obtain sensitive information via an invalid list parameter in the showdetails
OrtaCVSS 6,4İstismar yokEPSS %2phpoutsourcing · noahs classifieds20 Mar 2006
- CVE-2003-108921İzleyin
index.php for Zorum 3.4 allows remote attackers to determine the full path of the web root via invalid parameter names, which reveals the pa
OrtaCVSS 5,0Kavram kanıtıEPSS %3phpoutsourcing · zorum31 Ara 2003
- CVE-2006-088221İzleyin
Directory traversal vulnerability in include.php in Noah's Classifieds 1.3 allows remote attackers to include arbitrary local files via the
OrtaCVSS 5,0Kavram kanıtıEPSS %3phpoutsourcing · noahs classifieds24 Şub 2006
- CVE-2005-265220İzleyin
Zorum 3.5 allows remote attackers to obtain the full installation path via direct requests to (1) gorum/notification.php, (2) user.php, (3)
OrtaCVSS 5,0İstismar yokEPSS %2phpoutsourcing · zorum23 Ağu 2005
- CVE-2006-087820İzleyin
Noah's Classifieds 1.3 allows remote attackers to obtain the installation path via a direct request to include files, as demonstrated by cla
OrtaCVSS 5,0İstismar yokEPSS %2phpoutsourcing · noahs classifieds24 Şub 2006
- CVE-2005-067720İzleyin
index.php for Zorum 3.5 allows remote attackers to perform certain actions as other users by modifying the id parameter.
OrtaCVSS 5,0İstismar yokEPSS %1phpoutsourcing · zorum2 May 2005
- CVE-2006-088018İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Noah's Classifieds 1.3 allow remote attackers to inject arbitrary web sc
OrtaCVSS 4,3Kavram kanıtıEPSS %2phpoutsourcing · noahs classifieds24 Şub 2006
- CVE-2005-298018İzleyin
Cross-site scripting (XSS) vulnerability in index.php in phpoutsourcing Noah's classifieds 1.3 allows remote attackers to inject arbitrary w
OrtaCVSS 4,3Kavram kanıtıEPSS %2phpoutsourcing · noahs classifieds19 Eyl 2005
- CVE-2003-108818İzleyin
Cross-site scripting (XSS) vulnerability in index.php for Zorum 3.4 and 3.5 allows remote attackers to inject arbitrary web script or HTML v
OrtaCVSS 4,3Kavram kanıtıEPSS %2phpoutsourcing · zorum11 Ağu 2003
- CVE-2005-067517İzleyin
Cross-site scripting (XSS) vulnerability in index.php for Zorum 3.5 allows remote attackers to inject arbitrary web script or HTML via the (
OrtaCVSS 4,3İstismar yokEPSS %1phpoutsourcing · zorum2 May 2005
- CVE-2002-235017İzleyin
Cross-site scripting (XSS) vulnerability in z_user_show.php in dbtreelistproperty_method.php in Zorum 2.4 allows remote attackers to inject
OrtaCVSS 4,3İstismar yokEPSS %1phpoutsourcing · zorum31 Ara 2002
- CVE-2006-333310İzleyin
Cross-site scripting (XSS) vulnerability in index.php in Zorum Forum 3.5 allows remote attackers to inject web script or HTML via the multip
DüşükCVSS 2,6İstismar yokEPSS %1phpoutsourcing · zorum30 Haz 2006