thinkjs kayıtları
thinkjs üreticisine ait 2 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %50
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-1321 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
2 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2020-21176İstismar yok | SQL injection vulnerability in the model.increment and model.decrement function in ThinkJS 3.2.10 allows remote attackers to execute arbitrathinkjs · thinkjs · CWE-89 | Kritik9,8 | — | %1,5 | 1 Şub 2021 |
30İzleyin | CVE-2021-32736İstismar yok | Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in think-helperthinkjs · think-helper · CWE-1321 | Yüksek7,5 | — | %1,0 | 30 Haz 2021 |
- CVE-2020-2117639İzleyin
SQL injection vulnerability in the model.increment and model.decrement function in ThinkJS 3.2.10 allows remote attackers to execute arbitra
KritikCVSS 9,8İstismar yokEPSS %1thinkjs · thinkjs1 Şub 2021
- CVE-2021-3273630İzleyin
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in think-helper
YüksekCVSS 7,5İstismar yokEPSS %1thinkjs · think-helper30 Haz 2021