İçeriğe atla
Noroxi

SocialEngine kayıtları

socialengine üreticisine ait 8 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
3
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

8 kayıt
  • CVE-2026-41460
    37İzleyin

    SocialEngine <= 7.8.0 SQL Injection via activity/index/get-memberall

    KritikCVSS 9,3İstismar yokEPSS %1

    socialengine · socialengine23 Nis 2026

  • CVE-2008-6121
    30İzleyin

    CRLF injection vulnerability in SocialEngine (SE) 2.7 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP

    YüksekCVSS 7,5İstismar yokEPSS %1

    socialengine · socialengine11 Şub 2009

  • CVE-2008-6120
    30İzleyin

    SQL injection vulnerability in profile_comments.php in SocialEngine (SE) 2.7 and earlier allows remote attackers to execute arbitrary SQL co

    YüksekCVSS 7,5İstismar yokEPSS %1

    socialengine · socialengine11 Şub 2009

  • CVE-2013-4898
    27İzleyin

    Unrestricted file upload vulnerability in the user profile page feature in the Timeline Plugin 4.2.5p9 for SocialEngine allows remote authen

    OrtaCVSS 6,5Kavram kanıtıEPSS %3

    socialengine · socialengine29 Oca 2014

  • CVE-2009-0400
    27İzleyin

    SQL injection vulnerability in blog.php in SocialEngine 3.06 trial allows remote attackers to execute arbitrary SQL commands via the categor

    OrtaCVSS 6,8Kavram kanıtıEPSS %1

    socialengine · socialengine3 Şub 2009

  • CVE-2026-41461
    25İzleyin

    SocialEngine <= 7.8.0 Blind SSRF via /core/link/preview

    OrtaCVSS 6,3İstismar yokEPSS %0

    socialengine · socialengine23 Nis 2026

  • CVE-2012-6721
    25İzleyin

    Multiple cross-site request forgery (CSRF) vulnerabilities in the (1) Forum, (2) Event, and (3) Classifieds plugins in SocialEngine before 4

    OrtaCVSS 6,3İstismar yokEPSS %0

    socialengine · socialengine11 Şub 2020

  • CVE-2012-6720
    24İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in SocialEngine before 4.2.4 allow remote attackers to inject arbitrary web script or HT

    OrtaCVSS 6,1İstismar yokEPSS %1

    socialengine · socialengine11 Şub 2020