swoole kayıtları
swoole üreticisine ait 4 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %25
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-502 Deserialization of Untrusted Data1
- CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
4 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2021-43676İstismar yok | matyhtf framework v3.0.5 is affected by a path manipulation vulnerability in Smarty.class.php.swoole · swoole php framework · CWE-22 | Kritik9,8 | — | %1,4 | 3 Ara 2021 |
31İzleyin | CVE-2018-15503İstismar yok | The unpack implementation in Swoole version 4.0.4 lacks correct size checks in the deserialization process.swoole · swoole · CWE-502 | Yüksek7,5 | — | %2,3 | 17 Ağu 2018 |
26İzleyin | CVE-2020-24275İstismar yok | A HTTP response header injection vulnerability in Swoole v4.5.2 allows attackers to execute arbitrary code via supplying a crafted URL.swoole · swoole · CWE-74 | Orta6,5 | — | %0,8 | 20 Tem 2023 |
22İzleyin | CVE-2019-15518İstismar yok | Swoole before 4.2.13 allows directory traversal in swPort_http_static_handler.swoole · swoole · CWE-22 | Orta5,3 | — | %2,0 | 23 Ağu 2019 |
- CVE-2021-4367639İzleyin
matyhtf framework v3.0.5 is affected by a path manipulation vulnerability in Smarty.class.php.
KritikCVSS 9,8İstismar yokEPSS %1swoole · swoole php framework3 Ara 2021
- CVE-2018-1550331İzleyin
The unpack implementation in Swoole version 4.0.4 lacks correct size checks in the deserialization process.
YüksekCVSS 7,5İstismar yokEPSS %2swoole · swoole17 Ağu 2018
- CVE-2020-2427526İzleyin
A HTTP response header injection vulnerability in Swoole v4.5.2 allows attackers to execute arbitrary code via supplying a crafted URL.
OrtaCVSS 6,5İstismar yokEPSS %1swoole · swoole20 Tem 2023
- CVE-2019-1551822İzleyin
Swoole before 4.2.13 allows directory traversal in swPort_http_static_handler.
OrtaCVSS 5,3İstismar yokEPSS %2swoole · swoole23 Ağu 2019