slimcms kayıtları
slimcms üreticisine ait 2 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-287 Improper Authentication1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
2 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2008-5708Kavram kanıtı | redirect.php in SlimCMS 1.0.0 does not require authentication, which allows remote attackers to create administrative users by using the newslimcms · slimcms · CWE-287 | Yüksek7,5 | — | %2,6 | 24 Ara 2008 |
30İzleyin | CVE-2008-5491Kavram kanıtı | SQL injection vulnerability in edit.php in SlimCMS 1.0.0 and earlier allows remote attackers to execute arbitrary SQL commands via the pageIslimcms · slimcms · CWE-89 | Yüksek7,5 | — | %1,0 | 12 Ara 2008 |
- CVE-2008-570831İzleyin
redirect.php in SlimCMS 1.0.0 does not require authentication, which allows remote attackers to create administrative users by using the new
YüksekCVSS 7,5Kavram kanıtıEPSS %3slimcms · slimcms24 Ara 2008
- CVE-2008-549130İzleyin
SQL injection vulnerability in edit.php in SlimCMS 1.0.0 and earlier allows remote attackers to execute arbitrary SQL commands via the pageI
YüksekCVSS 7,5Kavram kanıtıEPSS %1slimcms · slimcms12 Ara 2008