TOTVS kayıtları
totvs üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %20
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-290 Authentication Bypass by Spoofing1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
42Planlayın | CVE-2020-29134Kavram kanıtı | The TOTVS Fluig platform allows path traversal through the parameter "file = ..totvs · fluig · CWE-22 | Yüksek8,6 | — | %27,6 | 5 Mar 2021 |
39İzleyin | CVE-2024-55210İstismar yok | An issue in TOTVS Framework (Linha Protheus) 12.1.2310 allows attackers to bypass multi-factor authentication (MFA) via a crafted websocket totvs · framework \(linha protheus\) · CWE-290 | Kritik9,8 | — | %0,5 | 9 Nis 2025 |
25İzleyin | CVE-2023-6275Kavram kanıtı | TOTVS Fluig Platform mobileredir openApp.jsp cross site scriptingtotvs · fluig · CWE-79 | Orta6,1 | — | %2,4 | 24 Kas 2023 |
24İzleyin | CVE-2023-4710İstismar yok | TOTVS RM Portal cross site scriptingtotvs · rm · CWE-79 | Orta6,1 | — | %0,5 | 1 Eyl 2023 |
9İzleyin | CVE-2023-4709İstismar yok | TOTVS RM Portal Login.aspx cross site scriptingtotvs · rm · CWE-79 | Düşük2,3 | — | %0,4 | 1 Eyl 2023 |
- CVE-2020-2913442Planlayın
The TOTVS Fluig platform allows path traversal through the parameter "file = ..
YüksekCVSS 8,6Kavram kanıtıEPSS %28totvs · fluig5 Mar 2021
- CVE-2024-5521039İzleyin
An issue in TOTVS Framework (Linha Protheus) 12.1.2310 allows attackers to bypass multi-factor authentication (MFA) via a crafted websocket
KritikCVSS 9,8İstismar yokEPSS %1totvs · framework \(linha protheus\)9 Nis 2025
- CVE-2023-627525İzleyin
TOTVS Fluig Platform mobileredir openApp.jsp cross site scripting
OrtaCVSS 6,1Kavram kanıtıEPSS %2totvs · fluig24 Kas 2023
- CVE-2023-471024İzleyin
TOTVS RM Portal cross site scripting
OrtaCVSS 6,1İstismar yokEPSS %1totvs · rm1 Eyl 2023
- CVE-2023-47099İzleyin
TOTVS RM Portal Login.aspx cross site scripting
DüşükCVSS 2,3İstismar yokEPSS %0totvs · rm1 Eyl 2023