İçeriğe atla
Noroxi

sitos kayıtları

sitos üreticisine ait 6 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
3
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

6 kayıt
  • CVE-2019-15751
    40Planlayın

    An unrestricted file upload vulnerability in SITOS six Build v6.2.1 allows remote attackers to execute arbitrary code by uploading a SCORM f

    KritikCVSS 9,8İstismar yokEPSS %4

    sitos · sitos six7 Eki 2019

  • CVE-2019-15746
    40Planlayın

    SITOS six Build v6.2.1 allows an attacker to inject arbitrary PHP commands.

    KritikCVSS 9,8İstismar yokEPSS %2

    sitos · sitos six7 Eki 2019

  • CVE-2019-15748
    39İzleyin

    SITOS six Build v6.2.1 permits unauthorised users to upload and import a SCORM 2004 package by browsing directly to affected pages.

    KritikCVSS 9,8İstismar yokEPSS %2

    sitos · sitos six7 Eki 2019

  • CVE-2019-15747
    35İzleyin

    SITOS six Build v6.2.1 allows a user with the user role of Seminar Coordinator to escalate their permission to the Systemadministrator role

    YüksekCVSS 8,8İstismar yokEPSS %1

    sitos · sitos six7 Eki 2019

  • CVE-2019-15749
    26İzleyin

    SITOS six Build v6.2.1 allows a user to change their password and recovery email address without requiring them to confirm the change with t

    OrtaCVSS 6,5İstismar yokEPSS %1

    sitos · sitos six7 Eki 2019

  • CVE-2019-15750
    24İzleyin

    A Cross-Site Scripting (XSS) vulnerability in the blog function in SITOS six Build v6.2.1 allows remote attackers to inject arbitrary web sc

    OrtaCVSS 6,1İstismar yokEPSS %1

    sitos · sitos six7 Eki 2019