smartstore kayıtları
smartstore üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-287 Improper Authentication1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-601 URL Redirection to Untrusted Site ('Open Redirect')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
49Planlayın | CVE-2021-32608İstismar yok | An issue was discovered in Smartstore (aka SmartStoreNET) through 4.1.1.smartstore · smartstore | Kritik9,8 | — | %33,4 | 12 May 2021 |
49Planlayın | CVE-2021-32607İstismar yok | An issue was discovered in Smartstore (aka SmartStoreNET) through 4.1.1.smartstore · smartstore | Kritik9,8 | — | %33,4 | 12 May 2021 |
39İzleyin | CVE-2020-15243İstismar yok | WebApi Authentication attribute missing in Smartstoresmartstore · smartstore · CWE-287 | Kritik9,8 | — | %1,2 | 8 Eki 2020 |
37İzleyin | CVE-2020-36364İstismar yok | An issue was discovered in Smartstore (aka SmartStoreNET) before 4.1.0.smartstore · smartstorenet · CWE-22 | Kritik9,1 | — | %1,8 | 19 May 2021 |
36İzleyin | CVE-2020-27996İstismar yok | An issue was discovered in SmartStoreNET before 4.0.1.smartstore · smartstorenet | Yüksek8,8 | — | %2,2 | 29 Eki 2020 |
35İzleyin | CVE-2020-27997İstismar yok | An issue was discovered in SmartStoreNET before 4.1.0.smartstore · smartstorenet · CWE-352 | Yüksek8,8 | — | %0,8 | 19 Şub 2021 |
25İzleyin | CVE-2020-36365Kavram kanıtı | Smartstore (aka SmartStoreNET) before 4.1.0 allows CommonController.ClearCache, ClearDatabaseCache, RestartApplication, and ScheduleTaskContsmartstore · smartstorenet · CWE-601 | Orta6,1 | — | %3,0 | 19 May 2021 |
- CVE-2021-3260849Planlayın
An issue was discovered in Smartstore (aka SmartStoreNET) through 4.1.1.
KritikCVSS 9,8İstismar yokEPSS %33smartstore · smartstore12 May 2021
- CVE-2021-3260749Planlayın
An issue was discovered in Smartstore (aka SmartStoreNET) through 4.1.1.
KritikCVSS 9,8İstismar yokEPSS %33smartstore · smartstore12 May 2021
- CVE-2020-1524339İzleyin
WebApi Authentication attribute missing in Smartstore
KritikCVSS 9,8İstismar yokEPSS %1smartstore · smartstore8 Eki 2020
- CVE-2020-3636437İzleyin
An issue was discovered in Smartstore (aka SmartStoreNET) before 4.1.0.
KritikCVSS 9,1İstismar yokEPSS %2smartstore · smartstorenet19 May 2021
- CVE-2020-2799636İzleyin
An issue was discovered in SmartStoreNET before 4.0.1.
YüksekCVSS 8,8İstismar yokEPSS %2smartstore · smartstorenet29 Eki 2020
- CVE-2020-2799735İzleyin
An issue was discovered in SmartStoreNET before 4.1.0.
YüksekCVSS 8,8İstismar yokEPSS %1smartstore · smartstorenet19 Şub 2021
- CVE-2020-3636525İzleyin
Smartstore (aka SmartStoreNET) before 4.1.0 allows CommonController.ClearCache, ClearDatabaseCache, RestartApplication, and ScheduleTaskCont
OrtaCVSS 6,1Kavram kanıtıEPSS %3smartstore · smartstorenet19 May 2021