subex kayıtları
subex üreticisine ait 2 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-639 Authorization Bypass Through User-Controlled Key1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
2 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2020-9384İstismar yok | An Insecure Direct Object Reference (IDOR) vulnerability in the Change Password feature of Subex ROC Partner Settlement 10.5 allows remote asubex · roc partner settlement · CWE-639 | Yüksek8,8 | — | %1,9 | 14 Nis 2020 |
30İzleyin | CVE-2014-8728Kavram kanıtı | SQL injection vulnerability in the login page (login/login) in Subex ROC Fraud Management (aka Fraud Management System and FMS) 7.4 and earlsubex · roc fraud management system · CWE-89 | Yüksek7,5 | — | %1,2 | 2 Ara 2014 |
- CVE-2020-938436İzleyin
An Insecure Direct Object Reference (IDOR) vulnerability in the Change Password feature of Subex ROC Partner Settlement 10.5 allows remote a
YüksekCVSS 8,8İstismar yokEPSS %2subex · roc partner settlement14 Nis 2020
- CVE-2014-872830İzleyin
SQL injection vulnerability in the login page (login/login) in Subex ROC Fraud Management (aka Fraud Management System and FMS) 7.4 and earl
YüksekCVSS 7,5Kavram kanıtıEPSS %1subex · roc fraud management system2 Ara 2014