TOBESOFT kayıtları
tobesoft üreticisine ait 18 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 10
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-20 Improper Input Validation7
- CWE-494 Download of Code Without Integrity Check4
- CWE-345 Insufficient Verification of Data Authenticity1
- CWE-416 Use After Free1
- CWE-470 Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection')1
- CWE-125 Out-of-bounds Read1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
18 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2020-7825İstismar yok | A vulnerability exists that could allow the execution of operating system commands on systems running MiPlatform 2019.05.16 and earlier.tobesoft · miplatform · CWE-78 | Kritik9,8 | — | %2,1 | 17 Tem 2020 |
40Planlayın | CVE-2021-26607İstismar yok | TOBESOFT NEXACRO17 arbitrary command execution vulnerabilitytobesoft · nexacro · CWE-20 | Kritik9,8 | — | %1,9 | 26 Eki 2021 |
39İzleyin | CVE-2021-26612İstismar yok | tobesoft Nexacro platform arbitrary file creation vulnerabilitytobesoft · nexacro · CWE-20 | Kritik9,8 | — | %1,2 | 30 Kas 2021 |
39İzleyin | CVE-2020-7815İstismar yok | XPLATFORM v9.2.260 and eariler versions contain a vulnerability that could allow remote files to be downloaded by setting the arguments to ttobesoft · xplatform | Kritik9,8 | — | %1,2 | 10 Tem 2020 |
39İzleyin | CVE-2020-7857İstismar yok | A vulnerability of XPlatform could allow an unauthenticated attacker to execute arbitrary command.tobesoft · xplatform · CWE-470 | Kritik9,8 | — | %1,0 | 20 Nis 2021 |
39İzleyin | CVE-2020-7866İstismar yok | Tobesoft XPLATFORM Arbitrary Command Execution Vulnerabilitytobesoft · xplatform · CWE-20 | Kritik9,8 | — | %1,0 | 20 Tem 2021 |
39İzleyin | CVE-2020-7853İstismar yok | TOBESOFT XPLATFORM Out-of-Bounds Read/Write Vulnerabilitiestobesoft · xplatform · CWE-125 | Kritik9,8 | — | %0,8 | 24 Mar 2021 |
39İzleyin | CVE-2020-7806İstismar yok | Tobesoft Xplatform ActiveX File Download Vulnerabilitytobesoft · xplatform · CWE-494 | Kritik9,8 | — | %0,7 | 6 May 2020 |
39İzleyin | CVE-2019-19167İstismar yok | Tobesoft Nexacro14 ActiveX File Download Vulnerabilitytobesoft · nexacro · CWE-494 | Kritik9,8 | — | %0,7 | 6 May 2020 |
35İzleyin | CVE-2020-7841İstismar yok | TOBESOFT XPLATFORM arbitrary hta file execution vulnerabilitytobesoft · xplatform · CWE-20 | Yüksek8,8 | — | %1,6 | 17 Kas 2020 |
35İzleyin | CVE-2021-26629İstismar yok | tobesoft XPLATFORM Path Traversal Vulnerabilitytobesoft · xplatform · CWE-22 | Yüksek8,8 | — | %1,6 | 26 Nis 2022 |
35İzleyin | CVE-2021-26626İstismar yok | tobesoft XPLATFORM Arbitrary file execution Vulnerabilitytobesoft · xplatform · CWE-20 | Yüksek8,8 | — | %1,3 | 19 Nis 2022 |
35İzleyin | CVE-2021-26625İstismar yok | tobesoft Nexacro arbitrary file download vulnerabilitytobesoft · nexacro · CWE-345 | Yüksek8,8 | — | %0,6 | 19 Nis 2022 |
35İzleyin | CVE-2020-7874İstismar yok | NEXACRO14 Runtime arbitrary file download and execution vulnerabilitytobesoft · nexacro · CWE-494 | Yüksek8,8 | — | %0,6 | 9 Eyl 2021 |
31İzleyin | CVE-2019-19162İstismar yok | A use-after-free vulnerability in the TOBESOFT XPLATFORM versions 9.1 to 9.2.2 may lead to code execution on a system running it.tobesoft · xplatform · CWE-416 | Yüksek7,8 | — | %1,2 | 11 May 2020 |
31İzleyin | CVE-2018-5197İstismar yok | A vulnerability in the ExtCommon.dll user extension module version 9.2, 9.2.1, 9.2.2 of Xplatform ActiveX could allow attacker to perform a tobesoft · xplatform · CWE-20 | Yüksek7,8 | — | %1,1 | 2 Oca 2019 |
31İzleyin | CVE-2019-19166İstismar yok | Tobesoft XPlatform Arbitrary File Execution Vulnerabilitytobesoft · xplatform · CWE-494 | Yüksek7,8 | — | %0,4 | 6 May 2020 |
30İzleyin | CVE-2021-26613İstismar yok | tobesoft nexacro arbitrary file creation vulnerabilitytobesoft · nexacro · CWE-20 | Yüksek7,5 | — | %0,8 | 9 Şub 2022 |
- CVE-2020-782540Planlayın
A vulnerability exists that could allow the execution of operating system commands on systems running MiPlatform 2019.05.16 and earlier.
KritikCVSS 9,8İstismar yokEPSS %2tobesoft · miplatform17 Tem 2020
- CVE-2021-2660740Planlayın
TOBESOFT NEXACRO17 arbitrary command execution vulnerability
KritikCVSS 9,8İstismar yokEPSS %2tobesoft · nexacro26 Eki 2021
- CVE-2021-2661239İzleyin
tobesoft Nexacro platform arbitrary file creation vulnerability
KritikCVSS 9,8İstismar yokEPSS %1tobesoft · nexacro30 Kas 2021
- CVE-2020-781539İzleyin
XPLATFORM v9.2.260 and eariler versions contain a vulnerability that could allow remote files to be downloaded by setting the arguments to t
KritikCVSS 9,8İstismar yokEPSS %1tobesoft · xplatform10 Tem 2020
- CVE-2020-785739İzleyin
A vulnerability of XPlatform could allow an unauthenticated attacker to execute arbitrary command.
KritikCVSS 9,8İstismar yokEPSS %1tobesoft · xplatform20 Nis 2021
- CVE-2020-786639İzleyin
Tobesoft XPLATFORM Arbitrary Command Execution Vulnerability
KritikCVSS 9,8İstismar yokEPSS %1tobesoft · xplatform20 Tem 2021
- CVE-2020-785339İzleyin
TOBESOFT XPLATFORM Out-of-Bounds Read/Write Vulnerabilities
KritikCVSS 9,8İstismar yokEPSS %1tobesoft · xplatform24 Mar 2021
- CVE-2020-780639İzleyin
Tobesoft Xplatform ActiveX File Download Vulnerability
KritikCVSS 9,8İstismar yokEPSS %1tobesoft · xplatform6 May 2020
- CVE-2019-1916739İzleyin
Tobesoft Nexacro14 ActiveX File Download Vulnerability
KritikCVSS 9,8İstismar yokEPSS %1tobesoft · nexacro6 May 2020
- CVE-2020-784135İzleyin
TOBESOFT XPLATFORM arbitrary hta file execution vulnerability
YüksekCVSS 8,8İstismar yokEPSS %2tobesoft · xplatform17 Kas 2020
- CVE-2021-2662935İzleyin
tobesoft XPLATFORM Path Traversal Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %2tobesoft · xplatform26 Nis 2022
- CVE-2021-2662635İzleyin
tobesoft XPLATFORM Arbitrary file execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1tobesoft · xplatform19 Nis 2022
- CVE-2021-2662535İzleyin
tobesoft Nexacro arbitrary file download vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1tobesoft · nexacro19 Nis 2022
- CVE-2020-787435İzleyin
NEXACRO14 Runtime arbitrary file download and execution vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1tobesoft · nexacro9 Eyl 2021
- CVE-2019-1916231İzleyin
A use-after-free vulnerability in the TOBESOFT XPLATFORM versions 9.1 to 9.2.2 may lead to code execution on a system running it.
YüksekCVSS 7,8İstismar yokEPSS %1tobesoft · xplatform11 May 2020
- CVE-2018-519731İzleyin
A vulnerability in the ExtCommon.dll user extension module version 9.2, 9.2.1, 9.2.2 of Xplatform ActiveX could allow attacker to perform a
YüksekCVSS 7,8İstismar yokEPSS %1tobesoft · xplatform2 Oca 2019
- CVE-2019-1916631İzleyin
Tobesoft XPlatform Arbitrary File Execution Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %0tobesoft · xplatform6 May 2020
- CVE-2021-2661330İzleyin
tobesoft nexacro arbitrary file creation vulnerability
YüksekCVSS 7,5İstismar yokEPSS %1tobesoft · nexacro9 Şub 2022