tigris kayıtları
tigris üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %33,3
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-264 Permissions, Privileges, and Access Controls2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-338 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
38İzleyin | CVE-2010-3199İstismar yok | Untrusted search path vulnerability in TortoiseSVN 1.6.10, Build 19898 and earlier allows local users, and possibly remote attackers, to exetigris · tortoisesvn · CWE-264 | Kritik9,3 | — | %4,2 | 10 Eyl 2010 |
31İzleyin | CVE-2008-5920Kavram kanıtı | The create_anchors function in utils.inc in WebSVN 1.x allows remote attackers to execute arbitrary PHP code via a crafted username that is tigris · websvn · CWE-94 | Yüksek7,5 | — | %3,0 | 20 Oca 2009 |
29İzleyin | CVE-2008-5919Kavram kanıtı | Directory traversal vulnerability in rss.php in WebSVN 2.0 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to overwrtigris · websvn · CWE-22 | Orta6,8 | — | %6,3 | 20 Oca 2009 |
25İzleyin | CVE-2024-31497Kavram kanıtı | In PuTTY 0.68 through 0.80 before 0.81, biased ECDSA nonce generation allows an attacker to recover a user's NIST P-521 secret key via a quiputty · putty · CWE-338 | Orta5,9 | — | %5,8 | 15 Nis 2024 |
18İzleyin | CVE-2008-5918Kavram kanıtı | Cross-site scripting (XSS) vulnerability in the getParameterisedSelfUrl function in index.php in WebSVN 2.0 and earlier allows remote attacktigris · websvn · CWE-79 | Orta4,3 | — | %4,5 | 20 Oca 2009 |
14İzleyin | CVE-2009-0240İstismar yok | listing.php in WebSVN 2.0 and possibly 1.7 beta, when using an SVN authz file, allows remote authenticated users to read changelogs or diffstigris · websvn · CWE-264 | Düşük3,5 | — | %1,6 | 20 Oca 2009 |
- CVE-2010-319938İzleyin
Untrusted search path vulnerability in TortoiseSVN 1.6.10, Build 19898 and earlier allows local users, and possibly remote attackers, to exe
KritikCVSS 9,3İstismar yokEPSS %4tigris · tortoisesvn10 Eyl 2010
- CVE-2008-592031İzleyin
The create_anchors function in utils.inc in WebSVN 1.x allows remote attackers to execute arbitrary PHP code via a crafted username that is
YüksekCVSS 7,5Kavram kanıtıEPSS %3tigris · websvn20 Oca 2009
- CVE-2008-591929İzleyin
Directory traversal vulnerability in rss.php in WebSVN 2.0 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to overwr
OrtaCVSS 6,8Kavram kanıtıEPSS %6tigris · websvn20 Oca 2009
- CVE-2024-3149725İzleyin
In PuTTY 0.68 through 0.80 before 0.81, biased ECDSA nonce generation allows an attacker to recover a user's NIST P-521 secret key via a qui
OrtaCVSS 5,9Kavram kanıtıEPSS %6putty · putty15 Nis 2024
- CVE-2008-591818İzleyin
Cross-site scripting (XSS) vulnerability in the getParameterisedSelfUrl function in index.php in WebSVN 2.0 and earlier allows remote attack
OrtaCVSS 4,3Kavram kanıtıEPSS %4tigris · websvn20 Oca 2009
- CVE-2009-024014İzleyin
listing.php in WebSVN 2.0 and possibly 1.7 beta, when using an SVN authz file, allows remote authenticated users to read changelogs or diffs
DüşükCVSS 3,5İstismar yokEPSS %2tigris · websvn20 Oca 2009