puppycms kayıtları
puppycms üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-281 Improper Preservation of Permissions1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-707 Improper Neutralization1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-862 Missing Authorization1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2020-18890İstismar yok | Rmote Code Execution (RCE) vulnerability in puppyCMS v5.1 due to insecure permissions, which could let a remote malicious user getshell via puppycms · puppycms · CWE-281 | Kritik9,8 | — | %1,5 | 6 May 2021 |
30İzleyin | CVE-2020-18888İstismar yok | Arbitrary File Deletion vulnerability in puppyCMS v5.1 allows remote malicious attackers to delete the file/folder via /admin/functions.php.puppycms · puppycms · CWE-862 | Yüksek7,5 | — | %0,8 | 6 May 2021 |
26İzleyin | CVE-2020-18889İstismar yok | Cross Site Request Forgery (CSRF) vulnerability in puppyCMS v5.1 that can change the admin's password via /admin/settings.php.puppycms · puppycms · CWE-352 | Orta6,5 | — | %0,4 | 6 May 2021 |
24İzleyin | CVE-2018-15847İstismar yok | An issue was discovered in puppyCMS 5.1.puppycms · puppycms · CWE-79 | Orta6,1 | — | %0,9 | 25 Ağu 2018 |
24İzleyin | CVE-2022-3464Kavram kanıtı | puppyCMS settings.php cross site scriptingpuppycms · puppycms · CWE-707 | Orta6,1 | — | %0,7 | 12 Eki 2022 |
- CVE-2020-1889039İzleyin
Rmote Code Execution (RCE) vulnerability in puppyCMS v5.1 due to insecure permissions, which could let a remote malicious user getshell via
KritikCVSS 9,8İstismar yokEPSS %2puppycms · puppycms6 May 2021
- CVE-2020-1888830İzleyin
Arbitrary File Deletion vulnerability in puppyCMS v5.1 allows remote malicious attackers to delete the file/folder via /admin/functions.php.
YüksekCVSS 7,5İstismar yokEPSS %1puppycms · puppycms6 May 2021
- CVE-2020-1888926İzleyin
Cross Site Request Forgery (CSRF) vulnerability in puppyCMS v5.1 that can change the admin's password via /admin/settings.php.
OrtaCVSS 6,5İstismar yokEPSS %0puppycms · puppycms6 May 2021
- CVE-2018-1584724İzleyin
An issue was discovered in puppyCMS 5.1.
OrtaCVSS 6,1İstismar yokEPSS %1puppycms · puppycms25 Ağu 2018
- CVE-2022-346424İzleyin
puppyCMS settings.php cross site scripting
OrtaCVSS 6,1Kavram kanıtıEPSS %1puppycms · puppycms12 Eki 2022