prozilla kayıtları
prozilla üreticisine ait 15 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 12
- Düzeltme kaydı olan
- %20
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')7
- CWE-264 Permissions, Privileges, and Access Controls2
- CWE-20 Improper Input Validation1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
15 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
44Planlayın | CVE-2004-1120Kavram kanıtı | Multiple buffer overflows in (1) http.c, (2) http-retr.c, (3) main.c and other code that handles network protocols in ProZilla 1.3.6-r2 and prozilla · prozilla download accelerator | Kritik10,0 | — | %14,6 | 10 Oca 2005 |
33İzleyin | CVE-2005-0523Kavram kanıtı | Format string vulnerability in ProZilla 1.3.7.3 and earlier allows remote attackers to execute arbitrary code via format string specifiers iprozilla · prozilla download accelerator | Yüksek7,5 | — | %9,9 | 2 May 2005 |
33İzleyin | CVE-2005-2961Kavram kanıtı | Buffer overflow in the get_string_ahref function for ProZilla 1.3.7.4 and possibly earlier, with the -ftpsearch option enabled, allows remotprozilla · prozilla download accelerator | Yüksek7,5 | — | %8,6 | 5 Eki 2005 |
31İzleyin | CVE-2008-1784Kavram kanıtı | Prozilla Topsites 1.0 allows remote attackers to perform administrative actions via a direct request to (1) addu.php, (2) editu.php, and (3)prozilla · topsites · CWE-264 | Yüksek7,5 | — | %2,5 | 15 Nis 2008 |
31İzleyin | CVE-2008-1863Kavram kanıtı | SQL injection vulnerability in view_reviews.php in Prozilla Cheat Script (aka Cheats) 2.0 allows remote attackers to execute arbitrary SQL cprozilla · cheats · CWE-89 | Yüksek7,5 | — | %2,1 | 17 Nis 2008 |
30İzleyin | CVE-2008-6115Kavram kanıtı | SQL injection vulnerability in directory.php in Prozilla Hosting Index allows remote attackers to execute arbitrary SQL commands via the id prozilla · hosting index · CWE-89 | Yüksek7,5 | — | %1,1 | 11 Şub 2009 |
30İzleyin | CVE-2007-3809Kavram kanıtı | Multiple SQL injection vulnerabilities in Prozilla Directory Script allow remote attackers to execute arbitrary SQL commands via the cat_id prozilla · prozilla directory script | Yüksek7,5 | — | %1,0 | 16 Tem 2007 |
30İzleyin | CVE-2008-1864Kavram kanıtı | SQL injection vulnerability in project.php in Prozilla Freelancers allows remote attackers to execute arbitrary SQL commands via the projectprozilla · prozilla freelancers · CWE-89 | Yüksek7,5 | — | %1,0 | 17 Nis 2008 |
30İzleyin | CVE-2007-4258Kavram kanıtı | SQL injection vulnerability in directory.php in Prozilla Pub Site Directory allows remote attackers to execute arbitrary SQL commands via thprozilla · prozilla pub site directory · CWE-89 | Yüksek7,5 | — | %1,0 | 8 Ağu 2007 |
30İzleyin | CVE-2008-1788Kavram kanıtı | SQL injection vulnerability in directory.php in Prozilla Entertainers 1.1 and earlier allows remote attackers to execute arbitrary SQL commaprozilla · entertainers · CWE-89 | Yüksek7,5 | — | %0,9 | 15 Nis 2008 |
27İzleyin | CVE-2007-4362Kavram kanıtı | SQL injection vulnerability in category.php in Prozilla Webring allows remote attackers to execute arbitrary SQL commands via the cat parameprozilla · webring | Orta6,8 | — | %1,2 | 15 Ağu 2007 |
27İzleyin | CVE-2008-2083Kavram kanıtı | SQL injection vulnerability in directory.php in Prozilla Hosting Index, when magic_quotes_gpc is disabled, allows remote attackers to executprozilla · hosting index · CWE-89 | Orta6,8 | — | %1,1 | 5 May 2008 |
27İzleyin | CVE-2008-1789Kavram kanıtı | SQL injection vulnerability in forum.php in Prozilla Forum allows remote attackers to execute arbitrary SQL commands via the forum parameterprozilla · forum · CWE-89 | Orta6,8 | — | %0,9 | 15 Nis 2008 |
26İzleyin | CVE-2008-1783Kavram kanıtı | Prozilla Reviews 1.0 allows remote attackers to delete arbitrary users via a modified UserID parameter in a direct request to siteadmin/Deleprozilla · reviews · CWE-264 | Orta6,4 | — | %2,3 | 15 Nis 2008 |
23İzleyin | CVE-2008-1785Kavram kanıtı | delete.php in Prozilla Top 100 1.2 allows remote authenticated users to delete statistics and accounts of arbitrary users via a modified s pprozilla · top 100 · CWE-20 | Orta5,5 | — | %2,0 | 15 Nis 2008 |
- CVE-2004-112044Planlayın
Multiple buffer overflows in (1) http.c, (2) http-retr.c, (3) main.c and other code that handles network protocols in ProZilla 1.3.6-r2 and
KritikCVSS 10,0Kavram kanıtıEPSS %15prozilla · prozilla download accelerator10 Oca 2005
- CVE-2005-052333İzleyin
Format string vulnerability in ProZilla 1.3.7.3 and earlier allows remote attackers to execute arbitrary code via format string specifiers i
YüksekCVSS 7,5Kavram kanıtıEPSS %10prozilla · prozilla download accelerator2 May 2005
- CVE-2005-296133İzleyin
Buffer overflow in the get_string_ahref function for ProZilla 1.3.7.4 and possibly earlier, with the -ftpsearch option enabled, allows remot
YüksekCVSS 7,5Kavram kanıtıEPSS %9prozilla · prozilla download accelerator5 Eki 2005
- CVE-2008-178431İzleyin
Prozilla Topsites 1.0 allows remote attackers to perform administrative actions via a direct request to (1) addu.php, (2) editu.php, and (3)
YüksekCVSS 7,5Kavram kanıtıEPSS %3prozilla · topsites15 Nis 2008
- CVE-2008-186331İzleyin
SQL injection vulnerability in view_reviews.php in Prozilla Cheat Script (aka Cheats) 2.0 allows remote attackers to execute arbitrary SQL c
YüksekCVSS 7,5Kavram kanıtıEPSS %2prozilla · cheats17 Nis 2008
- CVE-2008-611530İzleyin
SQL injection vulnerability in directory.php in Prozilla Hosting Index allows remote attackers to execute arbitrary SQL commands via the id
YüksekCVSS 7,5Kavram kanıtıEPSS %1prozilla · hosting index11 Şub 2009
- CVE-2007-380930İzleyin
Multiple SQL injection vulnerabilities in Prozilla Directory Script allow remote attackers to execute arbitrary SQL commands via the cat_id
YüksekCVSS 7,5Kavram kanıtıEPSS %1prozilla · prozilla directory script16 Tem 2007
- CVE-2008-186430İzleyin
SQL injection vulnerability in project.php in Prozilla Freelancers allows remote attackers to execute arbitrary SQL commands via the project
YüksekCVSS 7,5Kavram kanıtıEPSS %1prozilla · prozilla freelancers17 Nis 2008
- CVE-2007-425830İzleyin
SQL injection vulnerability in directory.php in Prozilla Pub Site Directory allows remote attackers to execute arbitrary SQL commands via th
YüksekCVSS 7,5Kavram kanıtıEPSS %1prozilla · prozilla pub site directory8 Ağu 2007
- CVE-2008-178830İzleyin
SQL injection vulnerability in directory.php in Prozilla Entertainers 1.1 and earlier allows remote attackers to execute arbitrary SQL comma
YüksekCVSS 7,5Kavram kanıtıEPSS %1prozilla · entertainers15 Nis 2008
- CVE-2007-436227İzleyin
SQL injection vulnerability in category.php in Prozilla Webring allows remote attackers to execute arbitrary SQL commands via the cat parame
OrtaCVSS 6,8Kavram kanıtıEPSS %1prozilla · webring15 Ağu 2007
- CVE-2008-208327İzleyin
SQL injection vulnerability in directory.php in Prozilla Hosting Index, when magic_quotes_gpc is disabled, allows remote attackers to execut
OrtaCVSS 6,8Kavram kanıtıEPSS %1prozilla · hosting index5 May 2008
- CVE-2008-178927İzleyin
SQL injection vulnerability in forum.php in Prozilla Forum allows remote attackers to execute arbitrary SQL commands via the forum parameter
OrtaCVSS 6,8Kavram kanıtıEPSS %1prozilla · forum15 Nis 2008
- CVE-2008-178326İzleyin
Prozilla Reviews 1.0 allows remote attackers to delete arbitrary users via a modified UserID parameter in a direct request to siteadmin/Dele
OrtaCVSS 6,4Kavram kanıtıEPSS %2prozilla · reviews15 Nis 2008
- CVE-2008-178523İzleyin
delete.php in Prozilla Top 100 1.2 allows remote authenticated users to delete statistics and accounts of arbitrary users via a modified s p
OrtaCVSS 5,5Kavram kanıtıEPSS %2prozilla · top 10015 Nis 2008