pineapp kayıtları
pineapp üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 1 · %14,3
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-264 Permissions, Privileges, and Access Controls2
- CWE-94 Improper Control of Generation of Code ('Code Injection')2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-287 Improper Authentication1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
54Planlayın | CVE-2013-6829Silahlaştırılmış | admin/confnetworking.html in PineApp Mail-SeCure allows remote attackers to execute arbitrary commands via shell metacharacters in the pinghpineapp · mail-secure · CWE-94 | Yüksek7,5 | — | %79,9 | 20 Kas 2013 |
35İzleyin | CVE-2013-4987Kavram kanıtı | PineApp Mail-SeCure before 3.70 allows remote authenticated users to gain privileges by leveraging console access and providing shell metachpineapp · mail-secure · CWE-264 | Yüksek8,5 | — | %2,6 | 8 Kas 2013 |
33İzleyin | CVE-2013-6830Kavram kanıtı | admin/confnetworking.html in PineApp Mail-SeCure 3.70 and earlier on 5099SK and earlier platforms allows remote attackers to execute arbitrapineapp · mail-secure 5099sk · CWE-94 | Yüksek7,5 | — | %8,9 | 20 Kas 2013 |
28İzleyin | CVE-2013-6831Kavram kanıtı | PineApp Mail-SeCure 3.70 and earlier on 5099SK and earlier platforms has a sudoers file that does not properly restrict user specifications,pineapp · mail-secure 5099sk · CWE-264 | Yüksek7,2 | — | %1,0 | 20 Kas 2013 |
25İzleyin | CVE-2013-6828İstismar yok | admin/management.html in PineApp Mail-SeCure allows remote attackers to bypass authentication and perform a sys_usermng operation via the itpineapp · mail-secure · CWE-287 | Orta6,4 | — | %1,3 | 20 Kas 2013 |
24İzleyin | CVE-2021-36720İstismar yok | PineApp - Mail Secure - Attacker sending a request to :/blocking.php?url=<script>alert(1)</script> and stealing cookies .pineapp · mail secure · CWE-79 | Orta6,1 | — | %0,6 | 8 Ara 2021 |
20İzleyin | CVE-2013-6827İstismar yok | Absolute path traversal vulnerability in admin/viewmsg.php in PineApp Mail-SeCure allows remote attackers to read arbitrary files via a fullpineapp · mail-secure · CWE-22 | Orta5,0 | — | %1,4 | 20 Kas 2013 |
- CVE-2013-682954Planlayın
admin/confnetworking.html in PineApp Mail-SeCure allows remote attackers to execute arbitrary commands via shell metacharacters in the pingh
YüksekCVSS 7,5SilahlaştırılmışEPSS %80pineapp · mail-secure20 Kas 2013
- CVE-2013-498735İzleyin
PineApp Mail-SeCure before 3.70 allows remote authenticated users to gain privileges by leveraging console access and providing shell metach
YüksekCVSS 8,5Kavram kanıtıEPSS %3pineapp · mail-secure8 Kas 2013
- CVE-2013-683033İzleyin
admin/confnetworking.html in PineApp Mail-SeCure 3.70 and earlier on 5099SK and earlier platforms allows remote attackers to execute arbitra
YüksekCVSS 7,5Kavram kanıtıEPSS %9pineapp · mail-secure 5099sk20 Kas 2013
- CVE-2013-683128İzleyin
PineApp Mail-SeCure 3.70 and earlier on 5099SK and earlier platforms has a sudoers file that does not properly restrict user specifications,
YüksekCVSS 7,2Kavram kanıtıEPSS %1pineapp · mail-secure 5099sk20 Kas 2013
- CVE-2013-682825İzleyin
admin/management.html in PineApp Mail-SeCure allows remote attackers to bypass authentication and perform a sys_usermng operation via the it
OrtaCVSS 6,4İstismar yokEPSS %1pineapp · mail-secure20 Kas 2013
- CVE-2021-3672024İzleyin
PineApp - Mail Secure - Attacker sending a request to :/blocking.php?url=<script>alert(1)</script> and stealing cookies .
OrtaCVSS 6,1İstismar yokEPSS %1pineapp · mail secure8 Ara 2021
- CVE-2013-682720İzleyin
Absolute path traversal vulnerability in admin/viewmsg.php in PineApp Mail-SeCure allows remote attackers to read arbitrary files via a full
OrtaCVSS 5,0İstismar yokEPSS %1pineapp · mail-secure20 Kas 2013