turnkeyforms kayıtları
turnkeyforms üreticisine ait 12 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 4
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')4
- CWE-264 Permissions, Privileges, and Access Controls3
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-287 Improper Authentication2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
12 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2008-6939Kavram kanıtı | TurnkeyForms Web Hosting Directory allows remote attackers to bypass authentication and (1) gain administrative privileges by setting the adturnkeyforms · web hosting directory · CWE-287 | Yüksek7,5 | — | %3,1 | 12 Ağu 2009 |
31İzleyin | CVE-2008-6940Kavram kanıtı | TurnkeyForms Web Hosting Directory stores sensitive information under the web root with insufficient access control, which allows remote attturnkeyforms · web hosting directory · CWE-264 | Yüksek7,5 | — | %2,8 | 12 Ağu 2009 |
31İzleyin | CVE-2008-6723Kavram kanıtı | TurnkeyForms Entertainment Portal 2.0 allows remote attackers to bypass authentication and gain administrative access by setting the adminLoturnkeyforms · entertainment portal · CWE-287 | Yüksek7,5 | — | %2,6 | 14 Nis 2009 |
31İzleyin | CVE-2008-6302Kavram kanıtı | TurnkeyForms Local Classifieds allows remote attackers to bypass authentication and gain administrative access via a direct request to Site_turnkeyforms · local classifieds · CWE-264 | Yüksek7,5 | — | %2,6 | 26 Şub 2009 |
31İzleyin | CVE-2008-6963Kavram kanıtı | admin.php in TurnkeyForms Text Link Sales allows remote attackers to bypass authentication and gain administrative privileges via a direct rturnkeyforms · text link sales · CWE-264 | Yüksek7,5 | — | %2,5 | 13 Ağu 2009 |
30İzleyin | CVE-2008-6941Kavram kanıtı | SQL injection vulnerability in the login functionality in TurnkeyForms Web Hosting Directory allows remote attackers to execute arbitrary SQturnkeyforms · web hosting directory · CWE-89 | Yüksek7,5 | — | %1,1 | 12 Ağu 2009 |
30İzleyin | CVE-2008-5486Kavram kanıtı | SQL injection vulnerability in admin.php in TurnkeyForms Text Link Sales allows remote attackers to execute arbitrary SQL commands via the iturnkeyforms · text link sales · CWE-89 | Yüksek7,5 | — | %1,0 | 12 Ara 2008 |
30İzleyin | CVE-2008-6350Kavram kanıtı | SQL injection vulnerability in listtest.php in TurnkeyForms Local Classifieds allows remote attackers to execute arbitrary SQL commands via turnkeyforms · local classifieds · CWE-89 | Yüksek7,5 | — | %1,0 | 2 Mar 2009 |
30İzleyin | CVE-2008-6349Kavram kanıtı | SQL injection vulnerability in survey_results_text.php in TurnkeyForms Business Survey Pro 1.0 allows remote attackers to execute arbitrary turnkeyforms · business survey pro · CWE-89 | Yüksek7,5 | — | %1,0 | 2 Mar 2009 |
17İzleyin | CVE-2008-5487Kavram kanıtı | Cross-site scripting (XSS) vulnerability in admin.php in TurnkeyForms Text Link Sales allows remote attackers to inject arbitrary web scriptturnkeyforms · text link sales · CWE-79 | Orta4,3 | — | %1,6 | 12 Ara 2008 |
17İzleyin | CVE-2008-6351Kavram kanıtı | Cross-site scripting (XSS) vulnerability in listtest.php in TurnkeyForms Local Classifieds allows remote attackers to inject arbitrary web sturnkeyforms · local classifieds · CWE-79 | Orta4,3 | — | %1,5 | 2 Mar 2009 |
17İzleyin | CVE-2009-4858Kavram kanıtı | Cross-site scripting (XSS) vulnerability in questiondetail.php in Yahoo Answers Clone allows remote attackers to inject arbitrary web scriptturnkeyforms · yahoo-answers-clone · CWE-79 | Orta4,3 | — | %1,3 | 11 May 2010 |
- CVE-2008-693931İzleyin
TurnkeyForms Web Hosting Directory allows remote attackers to bypass authentication and (1) gain administrative privileges by setting the ad
YüksekCVSS 7,5Kavram kanıtıEPSS %3turnkeyforms · web hosting directory12 Ağu 2009
- CVE-2008-694031İzleyin
TurnkeyForms Web Hosting Directory stores sensitive information under the web root with insufficient access control, which allows remote att
YüksekCVSS 7,5Kavram kanıtıEPSS %3turnkeyforms · web hosting directory12 Ağu 2009
- CVE-2008-672331İzleyin
TurnkeyForms Entertainment Portal 2.0 allows remote attackers to bypass authentication and gain administrative access by setting the adminLo
YüksekCVSS 7,5Kavram kanıtıEPSS %3turnkeyforms · entertainment portal14 Nis 2009
- CVE-2008-630231İzleyin
TurnkeyForms Local Classifieds allows remote attackers to bypass authentication and gain administrative access via a direct request to Site_
YüksekCVSS 7,5Kavram kanıtıEPSS %3turnkeyforms · local classifieds26 Şub 2009
- CVE-2008-696331İzleyin
admin.php in TurnkeyForms Text Link Sales allows remote attackers to bypass authentication and gain administrative privileges via a direct r
YüksekCVSS 7,5Kavram kanıtıEPSS %2turnkeyforms · text link sales13 Ağu 2009
- CVE-2008-694130İzleyin
SQL injection vulnerability in the login functionality in TurnkeyForms Web Hosting Directory allows remote attackers to execute arbitrary SQ
YüksekCVSS 7,5Kavram kanıtıEPSS %1turnkeyforms · web hosting directory12 Ağu 2009
- CVE-2008-548630İzleyin
SQL injection vulnerability in admin.php in TurnkeyForms Text Link Sales allows remote attackers to execute arbitrary SQL commands via the i
YüksekCVSS 7,5Kavram kanıtıEPSS %1turnkeyforms · text link sales12 Ara 2008
- CVE-2008-635030İzleyin
SQL injection vulnerability in listtest.php in TurnkeyForms Local Classifieds allows remote attackers to execute arbitrary SQL commands via
YüksekCVSS 7,5Kavram kanıtıEPSS %1turnkeyforms · local classifieds2 Mar 2009
- CVE-2008-634930İzleyin
SQL injection vulnerability in survey_results_text.php in TurnkeyForms Business Survey Pro 1.0 allows remote attackers to execute arbitrary
YüksekCVSS 7,5Kavram kanıtıEPSS %1turnkeyforms · business survey pro2 Mar 2009
- CVE-2008-548717İzleyin
Cross-site scripting (XSS) vulnerability in admin.php in TurnkeyForms Text Link Sales allows remote attackers to inject arbitrary web script
OrtaCVSS 4,3Kavram kanıtıEPSS %2turnkeyforms · text link sales12 Ara 2008
- CVE-2008-635117İzleyin
Cross-site scripting (XSS) vulnerability in listtest.php in TurnkeyForms Local Classifieds allows remote attackers to inject arbitrary web s
OrtaCVSS 4,3Kavram kanıtıEPSS %1turnkeyforms · local classifieds2 Mar 2009
- CVE-2009-485817İzleyin
Cross-site scripting (XSS) vulnerability in questiondetail.php in Yahoo Answers Clone allows remote attackers to inject arbitrary web script
OrtaCVSS 4,3Kavram kanıtıEPSS %1turnkeyforms · yahoo-answers-clone11 May 2010