simplog kayıtları
simplog üreticisine ait 14 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 6
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
14 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
34İzleyin | CVE-2006-1776Kavram kanıtı | PHP remote file inclusion vulnerability in doc/index.php in Jeremy Ashcraft Simplog 0.9.2 and earlier allows remote attackers to execute arbsimplog · simplog | Yüksek7,5 | — | %12,7 | 13 Nis 2006 |
33İzleyin | CVE-2006-1777Kavram kanıtı | Directory traversal vulnerability in doc/index.php in Jeremy Ashcraft Simplog 0.9.2 and earlier allows remote attackers to include and execusimplog · simplog | Yüksek7,5 | — | %9,8 | 13 Nis 2006 |
31İzleyin | CVE-2006-1778Kavram kanıtı | Multiple SQL injection vulnerabilities in Jeremy Ashcraft Simplog 0.9.2 and earlier allow remote attackers to execute arbitrary SQL commandssimplog · simplog | Yüksek7,5 | — | %4,3 | 13 Nis 2006 |
30İzleyin | CVE-2005-3076İstismar yok | Simplog 0.9.1 might allow remote attackers to execute arbitrary SQL commands or trigger SQL error messages via invalid (1) pid, (2) blogid, simplog · simplog | Yüksek7,5 | — | %1,5 | 27 Eyl 2005 |
30İzleyin | CVE-2006-5398Kavram kanıtı | SQL injection vulnerability in comments.php in Simplog 0.9.3.1 allows remote attackers to execute arbitrary SQL commands via the cid parametsimplog · simplog | Yüksek7,5 | — | %1,3 | 18 Eki 2006 |
29İzleyin | CVE-2006-1779Kavram kanıtı | Cross-site scripting (XSS) vulnerability in login.php in Jeremy Ashcraft Simplog 0.9.2 and earlier allows remote attackers to inject arbitrasimplog · simplog | Orta6,8 | — | %5,8 | 13 Nis 2006 |
29İzleyin | CVE-2009-4092Kavram kanıtı | Cross-site request forgery (CSRF) vulnerability in user.php in Simplog 0.9.3.2, and possibly earlier, allows remote attackers to hijack the simplog · simplog · CWE-352 | Orta6,8 | — | %5,3 | 29 Kas 2009 |
27İzleyin | CVE-2006-4058İstismar yok | Cross-site scripting (XSS) vulnerability in archive.php in Simplog 0.9.3 and earlier allows remote attackers to inject arbitrary web script simplog · simplog | Orta6,8 | — | %1,5 | 9 Ağu 2006 |
26İzleyin | CVE-2006-1073Kavram kanıtı | Directory traversal vulnerability in index.php in Daverave Simplog 1.0.2 and earlier allows remote attackers to include or read arbitrary .tsimplog · simplog | Orta6,4 | — | %3,1 | 7 Mar 2006 |
26İzleyin | CVE-2006-2029Kavram kanıtı | Multiple SQL injection vulnerabilities in Jeremy Ashcraft Simplog 0.9.3 and earlier allow remote attackers to execute arbitrary SQL commandssimplog · simplog | Orta6,4 | — | %2,3 | 25 Nis 2006 |
24İzleyin | CVE-2006-2028Kavram kanıtı | Cross-site scripting (XSS) vulnerability in imagelist.php in Jeremy Ashcraft Simplog 0.9.3 and earlier allows remote attackers to inject arbsimplog · simplog | Orta5,8 | — | %2,7 | 25 Nis 2006 |
22İzleyin | CVE-2009-4091Kavram kanıtı | comments.php in Simplog 0.9.3.2, and possibly earlier, does not properly restrict access, which allows remote attackers to edit or delete cosimplog · simplog · CWE-264 | Orta5,0 | — | %6,4 | 29 Kas 2009 |
18İzleyin | CVE-2009-4093Kavram kanıtı | Multiple cross-site scripting (XSS) vulnerabilities in comments.php in Simplog 0.9.3.2, and possibly earlier, allow remote attackers to injesimplog · simplog · CWE-79 | Orta4,3 | — | %3,9 | 29 Kas 2009 |
17İzleyin | CVE-2006-1072İstismar yok | Cross-site scripting (XSS) vulnerability in Daverave Simplog 1.0.2 and earlier allows remote attackers to inject arbitrary web script or HTMsimplog · simplog | Orta4,3 | — | %1,2 | 7 Mar 2006 |
- CVE-2006-177634İzleyin
PHP remote file inclusion vulnerability in doc/index.php in Jeremy Ashcraft Simplog 0.9.2 and earlier allows remote attackers to execute arb
YüksekCVSS 7,5Kavram kanıtıEPSS %13simplog · simplog13 Nis 2006
- CVE-2006-177733İzleyin
Directory traversal vulnerability in doc/index.php in Jeremy Ashcraft Simplog 0.9.2 and earlier allows remote attackers to include and execu
YüksekCVSS 7,5Kavram kanıtıEPSS %10simplog · simplog13 Nis 2006
- CVE-2006-177831İzleyin
Multiple SQL injection vulnerabilities in Jeremy Ashcraft Simplog 0.9.2 and earlier allow remote attackers to execute arbitrary SQL commands
YüksekCVSS 7,5Kavram kanıtıEPSS %4simplog · simplog13 Nis 2006
- CVE-2005-307630İzleyin
Simplog 0.9.1 might allow remote attackers to execute arbitrary SQL commands or trigger SQL error messages via invalid (1) pid, (2) blogid,
YüksekCVSS 7,5İstismar yokEPSS %2simplog · simplog27 Eyl 2005
- CVE-2006-539830İzleyin
SQL injection vulnerability in comments.php in Simplog 0.9.3.1 allows remote attackers to execute arbitrary SQL commands via the cid paramet
YüksekCVSS 7,5Kavram kanıtıEPSS %1simplog · simplog18 Eki 2006
- CVE-2006-177929İzleyin
Cross-site scripting (XSS) vulnerability in login.php in Jeremy Ashcraft Simplog 0.9.2 and earlier allows remote attackers to inject arbitra
OrtaCVSS 6,8Kavram kanıtıEPSS %6simplog · simplog13 Nis 2006
- CVE-2009-409229İzleyin
Cross-site request forgery (CSRF) vulnerability in user.php in Simplog 0.9.3.2, and possibly earlier, allows remote attackers to hijack the
OrtaCVSS 6,8Kavram kanıtıEPSS %5simplog · simplog29 Kas 2009
- CVE-2006-405827İzleyin
Cross-site scripting (XSS) vulnerability in archive.php in Simplog 0.9.3 and earlier allows remote attackers to inject arbitrary web script
OrtaCVSS 6,8İstismar yokEPSS %1simplog · simplog9 Ağu 2006
- CVE-2006-107326İzleyin
Directory traversal vulnerability in index.php in Daverave Simplog 1.0.2 and earlier allows remote attackers to include or read arbitrary .t
OrtaCVSS 6,4Kavram kanıtıEPSS %3simplog · simplog7 Mar 2006
- CVE-2006-202926İzleyin
Multiple SQL injection vulnerabilities in Jeremy Ashcraft Simplog 0.9.3 and earlier allow remote attackers to execute arbitrary SQL commands
OrtaCVSS 6,4Kavram kanıtıEPSS %2simplog · simplog25 Nis 2006
- CVE-2006-202824İzleyin
Cross-site scripting (XSS) vulnerability in imagelist.php in Jeremy Ashcraft Simplog 0.9.3 and earlier allows remote attackers to inject arb
OrtaCVSS 5,8Kavram kanıtıEPSS %3simplog · simplog25 Nis 2006
- CVE-2009-409122İzleyin
comments.php in Simplog 0.9.3.2, and possibly earlier, does not properly restrict access, which allows remote attackers to edit or delete co
OrtaCVSS 5,0Kavram kanıtıEPSS %6simplog · simplog29 Kas 2009
- CVE-2009-409318İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in comments.php in Simplog 0.9.3.2, and possibly earlier, allow remote attackers to inje
OrtaCVSS 4,3Kavram kanıtıEPSS %4simplog · simplog29 Kas 2009
- CVE-2006-107217İzleyin
Cross-site scripting (XSS) vulnerability in Daverave Simplog 1.0.2 and earlier allows remote attackers to inject arbitrary web script or HTM
OrtaCVSS 4,3İstismar yokEPSS %1simplog · simplog7 Mar 2006