riken kayıtları
riken üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-502 Deserialization of Untrusted Data1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2020-5664İstismar yok | Deserialization of untrusted data vulnerability in XooNIps 3.49 and earlier allows remote attackers to execute arbitrary code via unspecifieriken · xoonips · CWE-502 | Kritik9,8 | — | %2,7 | 16 Kas 2020 |
39İzleyin | CVE-2020-5624İstismar yok | SQL injection vulnerability in the XooNIps 3.48 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectorriken · xoonips · CWE-89 | Kritik9,8 | — | %1,4 | 28 Ağu 2020 |
35İzleyin | CVE-2020-5659İstismar yok | SQL injection vulnerability in the XooNIps 3.49 and earlier allows remote authenticated attackers to execute arbitrary SQL commands via unspriken · xoonips · CWE-89 | Yüksek8,8 | — | %1,2 | 16 Kas 2020 |
24İzleyin | CVE-2020-5625İstismar yok | Cross-site scripting vulnerability in XooNIps 3.48 and earlier allows remote attackers to inject an arbitrary script via unspecified vectorsriken · xoonips · CWE-79 | Orta6,1 | — | %1,0 | 28 Ağu 2020 |
21İzleyin | CVE-2020-5662İstismar yok | Reflected cross-site scripting vulnerability in XooNIps 3.49 and earlier allows remote authenticated attackers to inject arbitrary script viriken · xoonips · CWE-79 | Orta5,4 | — | %0,8 | 16 Kas 2020 |
21İzleyin | CVE-2020-5663İstismar yok | Stored cross-site scripting vulnerability in XooNIps 3.49 and earlier allows remote authenticated attackers to inject arbitrary script via uriken · xoonips · CWE-79 | Orta5,4 | — | %0,7 | 16 Kas 2020 |
17İzleyin | CVE-2014-1968İstismar yok | Cross-site scripting (XSS) vulnerability in the XooNIps module 3.47 and earlier for XOOPS allows remote attackers to inject arbitrary web scriken · xoonips · CWE-79 | Orta4,3 | — | %1,2 | 26 Şub 2014 |
- CVE-2020-566440Planlayın
Deserialization of untrusted data vulnerability in XooNIps 3.49 and earlier allows remote attackers to execute arbitrary code via unspecifie
KritikCVSS 9,8İstismar yokEPSS %3riken · xoonips16 Kas 2020
- CVE-2020-562439İzleyin
SQL injection vulnerability in the XooNIps 3.48 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vector
KritikCVSS 9,8İstismar yokEPSS %1riken · xoonips28 Ağu 2020
- CVE-2020-565935İzleyin
SQL injection vulnerability in the XooNIps 3.49 and earlier allows remote authenticated attackers to execute arbitrary SQL commands via unsp
YüksekCVSS 8,8İstismar yokEPSS %1riken · xoonips16 Kas 2020
- CVE-2020-562524İzleyin
Cross-site scripting vulnerability in XooNIps 3.48 and earlier allows remote attackers to inject an arbitrary script via unspecified vectors
OrtaCVSS 6,1İstismar yokEPSS %1riken · xoonips28 Ağu 2020
- CVE-2020-566221İzleyin
Reflected cross-site scripting vulnerability in XooNIps 3.49 and earlier allows remote authenticated attackers to inject arbitrary script vi
OrtaCVSS 5,4İstismar yokEPSS %1riken · xoonips16 Kas 2020
- CVE-2020-566321İzleyin
Stored cross-site scripting vulnerability in XooNIps 3.49 and earlier allows remote authenticated attackers to inject arbitrary script via u
OrtaCVSS 5,4İstismar yokEPSS %1riken · xoonips16 Kas 2020
- CVE-2014-196817İzleyin
Cross-site scripting (XSS) vulnerability in the XooNIps module 3.47 and earlier for XOOPS allows remote attackers to inject arbitrary web sc
OrtaCVSS 4,3İstismar yokEPSS %1riken · xoonips26 Şub 2014