remoteclinic kayıtları
remoteclinic üreticisine ait 17 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')9
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')4
- CWE-284 Improper Access Control2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
17 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2022-48152İstismar yok | SQL Injection vulnerability in RemoteClinic 2.0 allows attackers to execute arbitrary commands and gain sensitive information via the id parremoteclinic · remote clinic · CWE-89 | Kritik9,8 | — | %0,8 | 20 Oca 2023 |
39İzleyin | CVE-2023-33478İstismar yok | RemoteClinic 2.0 has a SQL injection vulnerability in the ID parameter of /medicines/stocks.php.remoteclinic · remote clinic · CWE-89 | Kritik9,8 | — | %0,7 | 7 Kas 2023 |
39İzleyin | CVE-2023-33479İstismar yok | RemoteClinic version 2.0 contains a SQL injection vulnerability in the /staff/edit.php file.remoteclinic · remote clinic · CWE-89 | Kritik9,8 | — | %0,7 | 7 Kas 2023 |
39İzleyin | CVE-2023-33481İstismar yok | RemoteClinic 2.0 is vulnerable to a time-based blind SQL injection attack in the 'start' GET parameter of patients/index.php.remoteclinic · remote clinic · CWE-89 | Kritik9,8 | — | %0,7 | 7 Kas 2023 |
36İzleyin | CVE-2023-33480İstismar yok | RemoteClinic 2.0 contains a critical vulnerability chain that can be exploited by a remote attacker with low-privileged user credentials to remoteclinic · remote clinic · CWE-434 | Yüksek8,8 | — | %1,9 | 7 Kas 2023 |
24İzleyin | CVE-2021-39416İstismar yok | Multiple Cross Site Scripting (XSS) vulnerabilities exists in Remote Clinic v2.0 in (1) patients/register-patient.php via the (a) Contact, (remoteclinic · remote clinic · CWE-79 | Orta6,1 | — | %1,1 | 5 Kas 2021 |
22İzleyin | CVE-2021-30030Kavram kanıtı | Cross Site Scripting (XSS) in Remote Clinic v2.0 via the Full Name field on register-patient.php.remoteclinic · remote clinic · CWE-79 | Orta5,4 | — | %1,8 | 12 Nis 2021 |
22İzleyin | CVE-2021-30034Kavram kanıtı | Cross Site Scripting (XSS) in Remote Clinic v2.0 via the Symptons field on patients/register-report.php.remoteclinic · remote clinic · CWE-79 | Orta5,4 | — | %1,8 | 12 Nis 2021 |
22İzleyin | CVE-2021-30039Kavram kanıtı | Cross Site Scripting (XSS) in Remote Clinic v2.0 via the "Fever" or "Blood Pressure" field on the patients/register-report.php.remoteclinic · remote clinic · CWE-79 | Orta5,4 | — | %1,8 | 12 Nis 2021 |
22İzleyin | CVE-2021-30042Kavram kanıtı | Cross Site Scripting (XSS) in Remote Clinic v2.0 via the "Clinic Name", "Clinic Address", "Clinic City", or "Clinic Contact" field on clinicremoteclinic · remote clinic · CWE-79 | Orta5,4 | — | %1,8 | 12 Nis 2021 |
22İzleyin | CVE-2021-30044Kavram kanıtı | Cross Site Scripting (XSS) in Remote Clinic v2.0 via the First Name or Last Name field on staff/register.php.remoteclinic · remote clinic · CWE-79 | Orta5,4 | — | %1,8 | 12 Nis 2021 |
22İzleyin | CVE-2025-9772İstismar yok | RemoteClinic edit.php unrestricted uploadremoteclinic · remote clinic · CWE-284 | Orta5,5 | — | %0,5 | 1 Eyl 2025 |
22İzleyin | CVE-2025-9775İstismar yok | RemoteClinic edit-my-profile.php unrestricted uploadremoteclinic · remote clinic · CWE-284 | Orta5,5 | — | %0,5 | 1 Eyl 2025 |
21İzleyin | CVE-2021-31329Kavram kanıtı | Cross Site Scripting (XSS) in Remote Clinic v2.0 via the "Chat" and "Personal Address" field on staff/register.phpremoteclinic · remote clinic · CWE-79 | Orta5,4 | — | %1,7 | 21 Nis 2021 |
21İzleyin | CVE-2021-31327Kavram kanıtı | Stored XSS in Remote Clinic v2.0 in /medicines due to Medicine Name Field.remoteclinic · remote clinic · CWE-79 | Orta5,4 | — | %1,7 | 21 Nis 2021 |
8İzleyin | CVE-2025-9773İstismar yok | RemoteClinic edit.php cross site scriptingremoteclinic · remote clinic · CWE-79 | Düşük2,1 | — | %0,4 | 1 Eyl 2025 |
8İzleyin | CVE-2025-9774İstismar yok | RemoteClinic edit-patient.php information disclosureremoteclinic · remote clinic · CWE-200 | Düşük2,1 | — | %0,4 | 1 Eyl 2025 |
- CVE-2022-4815239İzleyin
SQL Injection vulnerability in RemoteClinic 2.0 allows attackers to execute arbitrary commands and gain sensitive information via the id par
KritikCVSS 9,8İstismar yokEPSS %1remoteclinic · remote clinic20 Oca 2023
- CVE-2023-3347839İzleyin
RemoteClinic 2.0 has a SQL injection vulnerability in the ID parameter of /medicines/stocks.php.
KritikCVSS 9,8İstismar yokEPSS %1remoteclinic · remote clinic7 Kas 2023
- CVE-2023-3347939İzleyin
RemoteClinic version 2.0 contains a SQL injection vulnerability in the /staff/edit.php file.
KritikCVSS 9,8İstismar yokEPSS %1remoteclinic · remote clinic7 Kas 2023
- CVE-2023-3348139İzleyin
RemoteClinic 2.0 is vulnerable to a time-based blind SQL injection attack in the 'start' GET parameter of patients/index.php.
KritikCVSS 9,8İstismar yokEPSS %1remoteclinic · remote clinic7 Kas 2023
- CVE-2023-3348036İzleyin
RemoteClinic 2.0 contains a critical vulnerability chain that can be exploited by a remote attacker with low-privileged user credentials to
YüksekCVSS 8,8İstismar yokEPSS %2remoteclinic · remote clinic7 Kas 2023
- CVE-2021-3941624İzleyin
Multiple Cross Site Scripting (XSS) vulnerabilities exists in Remote Clinic v2.0 in (1) patients/register-patient.php via the (a) Contact, (
OrtaCVSS 6,1İstismar yokEPSS %1remoteclinic · remote clinic5 Kas 2021
- CVE-2021-3003022İzleyin
Cross Site Scripting (XSS) in Remote Clinic v2.0 via the Full Name field on register-patient.php.
OrtaCVSS 5,4Kavram kanıtıEPSS %2remoteclinic · remote clinic12 Nis 2021
- CVE-2021-3003422İzleyin
Cross Site Scripting (XSS) in Remote Clinic v2.0 via the Symptons field on patients/register-report.php.
OrtaCVSS 5,4Kavram kanıtıEPSS %2remoteclinic · remote clinic12 Nis 2021
- CVE-2021-3003922İzleyin
Cross Site Scripting (XSS) in Remote Clinic v2.0 via the "Fever" or "Blood Pressure" field on the patients/register-report.php.
OrtaCVSS 5,4Kavram kanıtıEPSS %2remoteclinic · remote clinic12 Nis 2021
- CVE-2021-3004222İzleyin
Cross Site Scripting (XSS) in Remote Clinic v2.0 via the "Clinic Name", "Clinic Address", "Clinic City", or "Clinic Contact" field on clinic
OrtaCVSS 5,4Kavram kanıtıEPSS %2remoteclinic · remote clinic12 Nis 2021
- CVE-2021-3004422İzleyin
Cross Site Scripting (XSS) in Remote Clinic v2.0 via the First Name or Last Name field on staff/register.php.
OrtaCVSS 5,4Kavram kanıtıEPSS %2remoteclinic · remote clinic12 Nis 2021
- CVE-2025-977222İzleyin
RemoteClinic edit.php unrestricted upload
OrtaCVSS 5,5İstismar yokEPSS %1remoteclinic · remote clinic1 Eyl 2025
- CVE-2025-977522İzleyin
RemoteClinic edit-my-profile.php unrestricted upload
OrtaCVSS 5,5İstismar yokEPSS %1remoteclinic · remote clinic1 Eyl 2025
- CVE-2021-3132921İzleyin
Cross Site Scripting (XSS) in Remote Clinic v2.0 via the "Chat" and "Personal Address" field on staff/register.php
OrtaCVSS 5,4Kavram kanıtıEPSS %2remoteclinic · remote clinic21 Nis 2021
- CVE-2021-3132721İzleyin
Stored XSS in Remote Clinic v2.0 in /medicines due to Medicine Name Field.
OrtaCVSS 5,4Kavram kanıtıEPSS %2remoteclinic · remote clinic21 Nis 2021
- CVE-2025-97738İzleyin
RemoteClinic edit.php cross site scripting
DüşükCVSS 2,1İstismar yokEPSS %0remoteclinic · remote clinic1 Eyl 2025
- CVE-2025-97748İzleyin
RemoteClinic edit-patient.php information disclosure
DüşükCVSS 2,1İstismar yokEPSS %0remoteclinic · remote clinic1 Eyl 2025