preprojects kayıtları
preprojects üreticisine ait 29 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 18
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')18
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-264 Permissions, Privileges, and Access Controls3
- CWE-255 Credentials Management Errors2
- CWE-20 Improper Input Validation1
- CWE-287 Improper Authentication1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
29 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2008-6231Kavram kanıtı | Pre Classified Listing PHP allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and preprojects · pre classified listings · CWE-255 | Yüksek7,5 | — | %2,9 | 20 Şub 2009 |
31İzleyin | CVE-2008-6232Kavram kanıtı | Pre Shopping Mall allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) apreprojects · pre shopping mall · CWE-255 | Yüksek7,5 | — | %2,9 | 20 Şub 2009 |
31İzleyin | CVE-2008-6716Kavram kanıtı | homeadmin/adminhome.php in Pre ADS Portal 2.0 and earlier does not require administrative authentication, which allows remote attackers to hpreprojects · pre ads portal · CWE-287 | Yüksek7,5 | — | %2,5 | 13 Nis 2009 |
31İzleyin | CVE-2008-2917Kavram kanıtı | SQL injection vulnerability in productsofcat.asp in E-SMART CART allows remote attackers to execute arbitrary SQL commands via the category_preprojects · e-smart cart · CWE-89 | Yüksek7,5 | — | %1,7 | 30 Haz 2008 |
30İzleyin | CVE-2010-0954İstismar yok | SQL injection vulnerability in search_result.asp in Pre Projects Pre E-Learning Portal allows remote attackers to execute arbitrary SQL commpreprojects · pre e-learning portal · CWE-89 | Yüksek7,5 | — | %1,3 | 10 Mar 2010 |
30İzleyin | CVE-2012-5334Kavram kanıtı | SQL injection vulnerability in product_desc.php in Pre Printing Press allows remote attackers to execute arbitrary SQL commands via the pid preprojects · pre printing press · CWE-89 | Yüksek7,5 | — | %1,3 | 8 Eki 2012 |
30İzleyin | CVE-2012-5333Kavram kanıtı | SQL injection vulnerability in page.php in Pre Printing Press allows remote attackers to execute arbitrary SQL commands via the id parameterpreprojects · pre printing press · CWE-89 | Yüksek7,5 | — | %1,2 | 8 Eki 2012 |
30İzleyin | CVE-2010-1370İstismar yok | SQL injection vulnerability in detailad.asp in Pre Classified Listings ASP allows remote attackers to execute arbitrary SQL commands via thepreprojects · pre classified listings asp · CWE-89 | Yüksek7,5 | — | %1,1 | 13 Nis 2010 |
30İzleyin | CVE-2011-5139Kavram kanıtı | SQL injection vulnerability in page.php in Pre Studio Business Cards Designer allows remote attackers to execute arbitrary SQL commands via preprojects · business cards designer · CWE-89 | Yüksek7,5 | — | %1,1 | 31 Ağu 2012 |
30İzleyin | CVE-2008-2915Kavram kanıtı | Multiple SQL injection vulnerabilities in jobseekers/JobSearch.php (aka the search module) in Pre Job Board allow remote attackers to executpreprojects · pre job board · CWE-89 | Yüksek7,5 | — | %1,0 | 30 Haz 2008 |
30İzleyin | CVE-2008-6230Kavram kanıtı | SQL injection vulnerability in Tour.php in Pre Projects Pre Podcast Portal allows remote attackers to execute arbitrary SQL commands via thepreprojects · pre podcast portal · CWE-89 | Yüksek7,5 | — | %1,0 | 20 Şub 2009 |
30İzleyin | CVE-2008-2914Kavram kanıtı | SQL injection vulnerability in jobseekers/JobSearch3.php (aka the search module) in PHP JOBWEBSITE PRO allows remote attackers to execute arpreprojects · php jobwebsite pro · CWE-89 | Yüksek7,5 | — | %1,0 | 30 Haz 2008 |
30İzleyin | CVE-2008-6887Kavram kanıtı | SQL injection vulnerability in detailad.asp in Pre Classified Listings 1.0 allows remote attackers to execute arbitrary SQL commands via thepreprojects · pre classified listings · CWE-89 | Yüksek7,5 | — | %1,0 | 3 Ağu 2009 |
30İzleyin | CVE-2010-4776Kavram kanıtı | SQL injection vulnerability in takefreestart.php in PreProjects Pre Online Tests Generator Pro allows remote attackers to execute arbitrary preprojects · pre online tests generator · CWE-89 | Yüksek7,5 | — | %1,0 | 23 Mar 2011 |
30İzleyin | CVE-2008-6796Kavram kanıtı | SQL injection vulnerability in manager/login.php in Pre Projects Pre Real Estate Listings allows remote attackers to execute arbitrary SQL cpreprojects · pre real estate listings · CWE-89 | Yüksek7,5 | — | %1,0 | 7 May 2009 |
30İzleyin | CVE-2010-1369Kavram kanıtı | SQL injection vulnerability in signup.asp in Pre Classified Listings ASP allows remote attackers to execute arbitrary SQL commands via the epreprojects · pre classified listings asp · CWE-89 | Yüksek7,5 | — | %1,0 | 13 Nis 2010 |
30İzleyin | CVE-2008-2114Kavram kanıtı | SQL injection vulnerability in emall/search.php in Pre Shopping Mall 1.1 allows remote attackers to execute arbitrary SQL commands via the spreprojects · pre shopping mall · CWE-89 | Yüksek7,5 | — | %1,0 | 8 May 2008 |
30İzleyin | CVE-2008-4177Kavram kanıtı | SQL injection vulnerability in search.php in Pre Real Estate Listings allows remote attackers to execute arbitrary SQL commands via the c papreprojects · pre real estate listings · CWE-89 | Yüksek7,5 | — | %1,0 | 23 Eyl 2008 |
30İzleyin | CVE-2008-5977Kavram kanıtı | SQL injection vulnerability in siteadmin/forgot.php in PHP JOBWEBSITE PRO allows remote attackers to execute arbitrary SQL commands via the preprojects · php jobwebsite pro · CWE-89 | Yüksek7,5 | — | %1,0 | 26 Oca 2009 |
30İzleyin | CVE-2008-6798Kavram kanıtı | Multiple SQL injection vulnerabilities in login.php in Pre Projects Pre Real Estate Listings allow remote attackers to execute arbitrary SQLpreprojects · pre real estate listings · CWE-89 | Yüksek7,5 | — | %1,0 | 7 May 2009 |
27İzleyin | CVE-2008-7052Kavram kanıtı | Unrestricted file upload vulnerability in profile.php in Pre Projects Pre Real Estate Listings allows remote authenticated users to execute preprojects · pre real estate listings · CWE-20 | Orta6,5 | — | %3,3 | 24 Ağu 2009 |
27İzleyin | CVE-2008-2916Kavram kanıtı | Multiple SQL injection vulnerabilities in Pre ADS Portal 2.0 and earlier, when magic_quotes_gpc is disabled, allow remote attackers to execupreprojects · pre ads portal · CWE-89 | Orta6,8 | — | %1,1 | 30 Haz 2008 |
20İzleyin | CVE-2008-6053İstismar yok | PreProjects Pre Resume Submitter stores onlineresume.mdb under the web root with insufficient access control, which allows remote attackers preprojects · pre resume submitter · CWE-264 | Orta5,0 | — | %1,3 | 4 Şub 2009 |
20İzleyin | CVE-2008-6052İstismar yok | PreProjects Pre E-Learning Portal stores db_elearning.mdb under the web root with insufficient access control, which allows remote attackerspreprojects · pre e-learning portal · CWE-264 | Orta5,0 | — | %1,3 | 4 Şub 2009 |
20İzleyin | CVE-2008-6055İstismar yok | PreProjects Pre Classified Listings stores pclasp.mdb under the web root with insufficient access control, which allows remote attackers to preprojects · pre classified listings · CWE-264 | Orta5,0 | — | %1,1 | 4 Şub 2009 |
- CVE-2008-623131İzleyin
Pre Classified Listing PHP allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and
YüksekCVSS 7,5Kavram kanıtıEPSS %3preprojects · pre classified listings20 Şub 2009
- CVE-2008-623231İzleyin
Pre Shopping Mall allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) a
YüksekCVSS 7,5Kavram kanıtıEPSS %3preprojects · pre shopping mall20 Şub 2009
- CVE-2008-671631İzleyin
homeadmin/adminhome.php in Pre ADS Portal 2.0 and earlier does not require administrative authentication, which allows remote attackers to h
YüksekCVSS 7,5Kavram kanıtıEPSS %2preprojects · pre ads portal13 Nis 2009
- CVE-2008-291731İzleyin
SQL injection vulnerability in productsofcat.asp in E-SMART CART allows remote attackers to execute arbitrary SQL commands via the category_
YüksekCVSS 7,5Kavram kanıtıEPSS %2preprojects · e-smart cart30 Haz 2008
- CVE-2010-095430İzleyin
SQL injection vulnerability in search_result.asp in Pre Projects Pre E-Learning Portal allows remote attackers to execute arbitrary SQL comm
YüksekCVSS 7,5İstismar yokEPSS %1preprojects · pre e-learning portal10 Mar 2010
- CVE-2012-533430İzleyin
SQL injection vulnerability in product_desc.php in Pre Printing Press allows remote attackers to execute arbitrary SQL commands via the pid
YüksekCVSS 7,5Kavram kanıtıEPSS %1preprojects · pre printing press8 Eki 2012
- CVE-2012-533330İzleyin
SQL injection vulnerability in page.php in Pre Printing Press allows remote attackers to execute arbitrary SQL commands via the id parameter
YüksekCVSS 7,5Kavram kanıtıEPSS %1preprojects · pre printing press8 Eki 2012
- CVE-2010-137030İzleyin
SQL injection vulnerability in detailad.asp in Pre Classified Listings ASP allows remote attackers to execute arbitrary SQL commands via the
YüksekCVSS 7,5İstismar yokEPSS %1preprojects · pre classified listings asp13 Nis 2010
- CVE-2011-513930İzleyin
SQL injection vulnerability in page.php in Pre Studio Business Cards Designer allows remote attackers to execute arbitrary SQL commands via
YüksekCVSS 7,5Kavram kanıtıEPSS %1preprojects · business cards designer31 Ağu 2012
- CVE-2008-291530İzleyin
Multiple SQL injection vulnerabilities in jobseekers/JobSearch.php (aka the search module) in Pre Job Board allow remote attackers to execut
YüksekCVSS 7,5Kavram kanıtıEPSS %1preprojects · pre job board30 Haz 2008
- CVE-2008-623030İzleyin
SQL injection vulnerability in Tour.php in Pre Projects Pre Podcast Portal allows remote attackers to execute arbitrary SQL commands via the
YüksekCVSS 7,5Kavram kanıtıEPSS %1preprojects · pre podcast portal20 Şub 2009
- CVE-2008-291430İzleyin
SQL injection vulnerability in jobseekers/JobSearch3.php (aka the search module) in PHP JOBWEBSITE PRO allows remote attackers to execute ar
YüksekCVSS 7,5Kavram kanıtıEPSS %1preprojects · php jobwebsite pro30 Haz 2008
- CVE-2008-688730İzleyin
SQL injection vulnerability in detailad.asp in Pre Classified Listings 1.0 allows remote attackers to execute arbitrary SQL commands via the
YüksekCVSS 7,5Kavram kanıtıEPSS %1preprojects · pre classified listings3 Ağu 2009
- CVE-2010-477630İzleyin
SQL injection vulnerability in takefreestart.php in PreProjects Pre Online Tests Generator Pro allows remote attackers to execute arbitrary
YüksekCVSS 7,5Kavram kanıtıEPSS %1preprojects · pre online tests generator23 Mar 2011
- CVE-2008-679630İzleyin
SQL injection vulnerability in manager/login.php in Pre Projects Pre Real Estate Listings allows remote attackers to execute arbitrary SQL c
YüksekCVSS 7,5Kavram kanıtıEPSS %1preprojects · pre real estate listings7 May 2009
- CVE-2010-136930İzleyin
SQL injection vulnerability in signup.asp in Pre Classified Listings ASP allows remote attackers to execute arbitrary SQL commands via the e
YüksekCVSS 7,5Kavram kanıtıEPSS %1preprojects · pre classified listings asp13 Nis 2010
- CVE-2008-211430İzleyin
SQL injection vulnerability in emall/search.php in Pre Shopping Mall 1.1 allows remote attackers to execute arbitrary SQL commands via the s
YüksekCVSS 7,5Kavram kanıtıEPSS %1preprojects · pre shopping mall8 May 2008
- CVE-2008-417730İzleyin
SQL injection vulnerability in search.php in Pre Real Estate Listings allows remote attackers to execute arbitrary SQL commands via the c pa
YüksekCVSS 7,5Kavram kanıtıEPSS %1preprojects · pre real estate listings23 Eyl 2008
- CVE-2008-597730İzleyin
SQL injection vulnerability in siteadmin/forgot.php in PHP JOBWEBSITE PRO allows remote attackers to execute arbitrary SQL commands via the
YüksekCVSS 7,5Kavram kanıtıEPSS %1preprojects · php jobwebsite pro26 Oca 2009
- CVE-2008-679830İzleyin
Multiple SQL injection vulnerabilities in login.php in Pre Projects Pre Real Estate Listings allow remote attackers to execute arbitrary SQL
YüksekCVSS 7,5Kavram kanıtıEPSS %1preprojects · pre real estate listings7 May 2009
- CVE-2008-705227İzleyin
Unrestricted file upload vulnerability in profile.php in Pre Projects Pre Real Estate Listings allows remote authenticated users to execute
OrtaCVSS 6,5Kavram kanıtıEPSS %3preprojects · pre real estate listings24 Ağu 2009
- CVE-2008-291627İzleyin
Multiple SQL injection vulnerabilities in Pre ADS Portal 2.0 and earlier, when magic_quotes_gpc is disabled, allow remote attackers to execu
OrtaCVSS 6,8Kavram kanıtıEPSS %1preprojects · pre ads portal30 Haz 2008
- CVE-2008-605320İzleyin
PreProjects Pre Resume Submitter stores onlineresume.mdb under the web root with insufficient access control, which allows remote attackers
OrtaCVSS 5,0İstismar yokEPSS %1preprojects · pre resume submitter4 Şub 2009
- CVE-2008-605220İzleyin
PreProjects Pre E-Learning Portal stores db_elearning.mdb under the web root with insufficient access control, which allows remote attackers
OrtaCVSS 5,0İstismar yokEPSS %1preprojects · pre e-learning portal4 Şub 2009
- CVE-2008-605520İzleyin
PreProjects Pre Classified Listings stores pclasp.mdb under the web root with insufficient access control, which allows remote attackers to
OrtaCVSS 5,0İstismar yokEPSS %1preprojects · pre classified listings4 Şub 2009