timgreen kayıtları
timgreen üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-352 Cross-Site Request Forgery (CSRF)6
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-863 Incorrect Authorization1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2024-50649İstismar yok | The user avatar upload function in python_book V1.0 has an arbitrary file upload vulnerability.timgreen · python book · CWE-22 | Kritik9,8 | — | %1,0 | 15 Kas 2024 |
37İzleyin | CVE-2024-50966İstismar yok | dingfanzu CMS V1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/doAdminAction.php?act=addAdmin.timgreen · dingfanzu cms · CWE-352 | Kritik9,3 | — | %0,3 | 8 Kas 2024 |
30İzleyin | CVE-2024-50650İstismar yok | python_book V1.0 is vulnerable to Incorrect Access Control, which allows attackers to obtain sensitive information of users with different Itimgreen · python book · CWE-863 | Yüksek7,5 | — | %0,6 | 15 Kas 2024 |
25İzleyin | CVE-2024-46485İstismar yok | dingfanzu CMS 1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admin/doAdminAction.php?act=addCatetimgreen · dingfanzu cms · CWE-352 | Orta6,3 | — | %0,2 | 25 Eyl 2024 |
25İzleyin | CVE-2024-48191İstismar yok | dingfanzu CMS 1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/doAdminAction.php?act=delAdmin&id=1timgreen · dingfanzu cms · CWE-352 | Orta6,3 | — | %0,2 | 28 Eki 2024 |
25İzleyin | CVE-2024-48291İstismar yok | dingfanzu CMS 1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admin/doAdminAction.php?act=editAdmin&id=17timgreen · dingfanzu cms · CWE-352 | Orta6,3 | — | %0,2 | 28 Eki 2024 |
24İzleyin | CVE-2024-48758İstismar yok | dingfanzu CMS V1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the addPro parameter of the component doAdminAction.phptimgreen · dingfanzu cms · CWE-352 | Orta6,1 | — | %0,3 | 16 Eki 2024 |
18İzleyin | CVE-2024-46600İstismar yok | dingfanzu CMS 1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/doAdminAction.php?act=delCate&id=31timgreen · dingfanzu cms · CWE-352 | Orta4,7 | — | %0,2 | 25 Eyl 2024 |
- CVE-2024-5064939İzleyin
The user avatar upload function in python_book V1.0 has an arbitrary file upload vulnerability.
KritikCVSS 9,8İstismar yokEPSS %1timgreen · python book15 Kas 2024
- CVE-2024-5096637İzleyin
dingfanzu CMS V1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/doAdminAction.php?act=addAdmin.
KritikCVSS 9,3İstismar yokEPSS %0timgreen · dingfanzu cms8 Kas 2024
- CVE-2024-5065030İzleyin
python_book V1.0 is vulnerable to Incorrect Access Control, which allows attackers to obtain sensitive information of users with different I
YüksekCVSS 7,5İstismar yokEPSS %1timgreen · python book15 Kas 2024
- CVE-2024-4648525İzleyin
dingfanzu CMS 1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admin/doAdminAction.php?act=addCate
OrtaCVSS 6,3İstismar yokEPSS %0timgreen · dingfanzu cms25 Eyl 2024
- CVE-2024-4819125İzleyin
dingfanzu CMS 1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/doAdminAction.php?act=delAdmin&id=1
OrtaCVSS 6,3İstismar yokEPSS %0timgreen · dingfanzu cms28 Eki 2024
- CVE-2024-4829125İzleyin
dingfanzu CMS 1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admin/doAdminAction.php?act=editAdmin&id=17
OrtaCVSS 6,3İstismar yokEPSS %0timgreen · dingfanzu cms28 Eki 2024
- CVE-2024-4875824İzleyin
dingfanzu CMS V1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the addPro parameter of the component doAdminAction.php
OrtaCVSS 6,1İstismar yokEPSS %0timgreen · dingfanzu cms16 Eki 2024
- CVE-2024-4660018İzleyin
dingfanzu CMS 1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/doAdminAction.php?act=delCate&id=31
OrtaCVSS 4,7İstismar yokEPSS %0timgreen · dingfanzu cms25 Eyl 2024