İçeriğe atla
Noroxi

roundup-tracker kayıtları

roundup-tracker üreticisine ait 13 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%100
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

13 kayıt
  • CVE-2008-1475
    26İzleyin

    The xml-rpc server in Roundup 1.4.4 does not check property permissions, which allows attackers to bypass restrictions and edit or read rest

    OrtaCVSS 6,4İstismar yokEPSS %2

    roundup-tracker · roundup24 Mar 2008

  • CVE-2019-10904
    24İzleyin

    Roundup 1.6 allows XSS via the URI because frontends/roundup.cgi and roundup/cgi/wsgi_handler.py mishandle 404 errors.

    OrtaCVSS 6,1İstismar yokEPSS %2

    debian · debian linux6 Nis 2019

  • CVE-2012-6133
    24İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in Roundup before 1.4.20 allow remote attackers to inject arbitrary web script or HTML v

    OrtaCVSS 6,1İstismar yokEPSS %2

    roundup-tracker · roundup30 Oca 2020

  • CVE-2004-1444
    23İzleyin

    Directory traversal vulnerability in Roundup 0.6.4 and earlier allows remote attackers to view arbitrary files via ..

    OrtaCVSS 5,0Kavram kanıtıEPSS %9

    roundup-tracker · roundup31 Ara 2004

  • CVE-2024-39126
    21İzleyin

    Roundup before 2.4.0 allows XSS via JavaScript in PDF, XML, and SVG documents.

    OrtaCVSS 5,4İstismar yokEPSS %0

    roundup-tracker · roundup17 Tem 2024

  • CVE-2024-39124
    21İzleyin

    In Roundup before 2.4.0, classhelpers (_generic.help.html) allow XSS.

    OrtaCVSS 5,4İstismar yokEPSS %0

    roundup-tracker · roundup17 Tem 2024

  • CVE-2024-39125
    21İzleyin

    Roundup before 2.4.0 allows XSS via a SCRIPT element in an HTTP Referer header.

    OrtaCVSS 5,4İstismar yokEPSS %0

    roundup-tracker · roundup17 Tem 2024

  • CVE-2010-2491
    18İzleyin

    Cross-site scripting (XSS) vulnerability in cgi/client.py in Roundup before 1.4.14 allows remote attackers to inject arbitrary web script or

    OrtaCVSS 4,3İstismar yokEPSS %3

    roundup-tracker · roundup24 Eyl 2010

  • CVE-2012-6131
    18İzleyin

    Cross-site scripting (XSS) vulnerability in cgi/client.py in Roundup before 1.4.20 allows remote attackers to inject arbitrary web script or

    OrtaCVSS 4,3İstismar yokEPSS %2

    roundup-tracker · roundup11 Nis 2014

  • CVE-2012-6130
    18İzleyin

    Cross-site scripting (XSS) vulnerability in the history display in Roundup before 1.4.20 allows remote attackers to inject arbitrary web scr

    OrtaCVSS 4,3İstismar yokEPSS %2

    roundup-tracker · roundup11 Nis 2014

  • CVE-2012-6132
    18İzleyin

    Cross-site scripting (XSS) vulnerability in Roundup before 1.4.20 allows remote attackers to inject arbitrary web script or HTML via the otk

    OrtaCVSS 4,3İstismar yokEPSS %2

    roundup-tracker · roundup10 Nis 2014

  • CVE-2014-6276
    17İzleyin

    schema.py in Roundup before 1.5.1 does not properly limit attributes included in default user permissions, which might allow remote authenti

    OrtaCVSS 4,3İstismar yokEPSS %2

    roundup-tracker · roundup13 Nis 2016

  • CVE-2008-1474
    17İzleyin

    Multiple unspecified vulnerabilities in Roundup before 1.4.4 have unknown impact and attack vectors, some of which may be related to cross-s

    OrtaCVSS 4,3İstismar yokEPSS %1

    roundup-tracker · roundup24 Mar 2008