pulsecms kayıtları
pulsecms üreticisine ait 9 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')3
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
9 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
28İzleyin | CVE-2010-4330Kavram kanıtı | Directory traversal vulnerability in includes/controller.php in Pulse CMS Basic before 1.2.9 allows remote attackers to include and execute pulsecms · pulse cms · CWE-22 | Orta6,8 | — | %2,6 | 7 Ara 2010 |
27İzleyin | CVE-2010-0992İstismar yok | Multiple cross-site request forgery (CSRF) vulnerabilities in Pulse CMS Basic 1.2.2 and 1.2.3, and possibly Pulse Pro before 1.3.2, allow repulsecms · pulse cms · CWE-352 | Orta6,8 | — | %0,6 | 9 Nis 2010 |
24İzleyin | CVE-2010-0993İstismar yok | Unrestricted file upload vulnerability in Pulse CMS Basic 1.2.2 and 1.2.3, and possibly Pulse Pro before 1.3.2, allows remote authenticated pulsecms · pulse cms | Orta6,0 | — | %1,6 | 9 Nis 2010 |
24İzleyin | CVE-2010-1334İstismar yok | Unrestricted file upload vulnerability in Pulse CMS Basic 1.2.4 allows remote authenticated users to execute arbitrary code by uploading a fpulsecms · pulse cms | Orta6,0 | — | %1,3 | 9 Nis 2010 |
24İzleyin | CVE-2010-0988İstismar yok | Multiple unspecified vulnerabilities in Pulse CMS before 1.2.3 allow (1) remote attackers to write to arbitrary files and execute arbitrary pulsecms · pulse cms · CWE-94 | Orta6,0 | — | %1,2 | 26 Mar 2010 |
22İzleyin | CVE-2010-0989İstismar yok | Directory traversal vulnerability in delete.php in Pulse CMS before 1.2.3 allows remote authenticated users to delete arbitrary files via dipulsecms · pulse cms · CWE-22 | Orta5,5 | — | %1,3 | 26 Mar 2010 |
17İzleyin | CVE-2011-5041Kavram kanıtı | Multiple cross-site scripting (XSS) vulnerabilities in Pulse Pro CMS 1.7.2 allow remote attackers to inject arbitrary web script or HTML viapulsecms · pulse cms · CWE-79 | Orta4,3 | — | %1,5 | 30 Ara 2011 |
17İzleyin | CVE-2010-1080İstismar yok | Cross-site scripting (XSS) vulnerability in view.php in Pulse CMS 1.2.2 allows remote attackers to inject arbitrary web script or HTML via tpulsecms · pulse cms · CWE-79 | Orta4,3 | — | %1,1 | 23 Mar 2010 |
16İzleyin | CVE-2010-1298İstismar yok | Directory traversal vulnerability in view.php in Pulse CMS 1.2.2 allows remote attackers to read arbitrary files via directory traversal seqpulsecms · pulse cms · CWE-22 | Orta4,0 | — | %1,2 | 6 Nis 2010 |
- CVE-2010-433028İzleyin
Directory traversal vulnerability in includes/controller.php in Pulse CMS Basic before 1.2.9 allows remote attackers to include and execute
OrtaCVSS 6,8Kavram kanıtıEPSS %3pulsecms · pulse cms7 Ara 2010
- CVE-2010-099227İzleyin
Multiple cross-site request forgery (CSRF) vulnerabilities in Pulse CMS Basic 1.2.2 and 1.2.3, and possibly Pulse Pro before 1.3.2, allow re
OrtaCVSS 6,8İstismar yokEPSS %1pulsecms · pulse cms9 Nis 2010
- CVE-2010-099324İzleyin
Unrestricted file upload vulnerability in Pulse CMS Basic 1.2.2 and 1.2.3, and possibly Pulse Pro before 1.3.2, allows remote authenticated
OrtaCVSS 6,0İstismar yokEPSS %2pulsecms · pulse cms9 Nis 2010
- CVE-2010-133424İzleyin
Unrestricted file upload vulnerability in Pulse CMS Basic 1.2.4 allows remote authenticated users to execute arbitrary code by uploading a f
OrtaCVSS 6,0İstismar yokEPSS %1pulsecms · pulse cms9 Nis 2010
- CVE-2010-098824İzleyin
Multiple unspecified vulnerabilities in Pulse CMS before 1.2.3 allow (1) remote attackers to write to arbitrary files and execute arbitrary
OrtaCVSS 6,0İstismar yokEPSS %1pulsecms · pulse cms26 Mar 2010
- CVE-2010-098922İzleyin
Directory traversal vulnerability in delete.php in Pulse CMS before 1.2.3 allows remote authenticated users to delete arbitrary files via di
OrtaCVSS 5,5İstismar yokEPSS %1pulsecms · pulse cms26 Mar 2010
- CVE-2011-504117İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in Pulse Pro CMS 1.7.2 allow remote attackers to inject arbitrary web script or HTML via
OrtaCVSS 4,3Kavram kanıtıEPSS %1pulsecms · pulse cms30 Ara 2011
- CVE-2010-108017İzleyin
Cross-site scripting (XSS) vulnerability in view.php in Pulse CMS 1.2.2 allows remote attackers to inject arbitrary web script or HTML via t
OrtaCVSS 4,3İstismar yokEPSS %1pulsecms · pulse cms23 Mar 2010
- CVE-2010-129816İzleyin
Directory traversal vulnerability in view.php in Pulse CMS 1.2.2 allows remote attackers to read arbitrary files via directory traversal seq
OrtaCVSS 4,0İstismar yokEPSS %1pulsecms · pulse cms6 Nis 2010