valarsoft kayıtları
valarsoft üreticisine ait 9 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 6
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')4
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
9 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2007-0839Kavram kanıtı | Multiple PHP remote file inclusion vulnerabilities in index/index_album.php in Valarsoft WebMatic 2.6 allow remote attackers to execute arbivalarsoft · webmatic | Yüksek7,5 | — | %3,3 | 7 Şub 2007 |
30İzleyin | CVE-2007-3727İstismar yok | Multiple unspecified vulnerabilities in Webmatic before 2.7 have unknown impact and attack vectors, related to the "administration area."valarsoft · webmatic | Yüksek7,5 | — | %1,2 | 12 Tem 2007 |
30İzleyin | CVE-2007-3648İstismar yok | SQL injection vulnerability in Webmatic before 2.6.2, and possibly other versions before 2.7, allows remote attackers to execute arbitrary Svalarsoft · webmatic | Yüksek7,5 | — | %1,1 | 10 Tem 2007 |
30İzleyin | CVE-2008-2925İstismar yok | SQL injection vulnerability in Webmatic before 2.8 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.valarsoft · webmatic · CWE-89 | Yüksek7,5 | — | %1,1 | 30 Haz 2008 |
30İzleyin | CVE-2009-4380İstismar yok | Multiple SQL injection vulnerabilities in Valarsoft Webmatic before 3.0.3 allow remote attackers to execute arbitrary SQL commands via unspevalarsoft · webmatic · CWE-89 | Yüksek7,5 | — | %1,1 | 22 Ara 2009 |
30İzleyin | CVE-2010-4808Kavram kanıtı | SQL injection vulnerability in index.php in Webmatic allows remote attackers to execute arbitrary SQL commands via the p parameter.valarsoft · webmatic · CWE-89 | Yüksek7,5 | — | %1,0 | 8 Tem 2011 |
28İzleyin | CVE-2012-3350Kavram kanıtı | SQL injection vulnerability in index.php in Webmatic 3.1.1 allows remote attackers to execute arbitrary SQL commands via the Referer HTTP hevalarsoft · webmatic · CWE-89 | Orta6,8 | — | %2,9 | 12 Tem 2012 |
17İzleyin | CVE-2008-2924İstismar yok | Cross-site scripting (XSS) vulnerability in Webmatic before 2.8 allows remote attackers to inject arbitrary web script or HTML via unspecifivalarsoft · webmatic · CWE-79 | Orta4,3 | — | %1,0 | 30 Haz 2008 |
17İzleyin | CVE-2009-4379İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in Valarsoft Webmatic before 3.0.3 allow remote attackers to inject arbitrary web scriptvalarsoft · webmatic · CWE-79 | Orta4,3 | — | %1,0 | 22 Ara 2009 |
- CVE-2007-083931İzleyin
Multiple PHP remote file inclusion vulnerabilities in index/index_album.php in Valarsoft WebMatic 2.6 allow remote attackers to execute arbi
YüksekCVSS 7,5Kavram kanıtıEPSS %3valarsoft · webmatic7 Şub 2007
- CVE-2007-372730İzleyin
Multiple unspecified vulnerabilities in Webmatic before 2.7 have unknown impact and attack vectors, related to the "administration area."
YüksekCVSS 7,5İstismar yokEPSS %1valarsoft · webmatic12 Tem 2007
- CVE-2007-364830İzleyin
SQL injection vulnerability in Webmatic before 2.6.2, and possibly other versions before 2.7, allows remote attackers to execute arbitrary S
YüksekCVSS 7,5İstismar yokEPSS %1valarsoft · webmatic10 Tem 2007
- CVE-2008-292530İzleyin
SQL injection vulnerability in Webmatic before 2.8 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
YüksekCVSS 7,5İstismar yokEPSS %1valarsoft · webmatic30 Haz 2008
- CVE-2009-438030İzleyin
Multiple SQL injection vulnerabilities in Valarsoft Webmatic before 3.0.3 allow remote attackers to execute arbitrary SQL commands via unspe
YüksekCVSS 7,5İstismar yokEPSS %1valarsoft · webmatic22 Ara 2009
- CVE-2010-480830İzleyin
SQL injection vulnerability in index.php in Webmatic allows remote attackers to execute arbitrary SQL commands via the p parameter.
YüksekCVSS 7,5Kavram kanıtıEPSS %1valarsoft · webmatic8 Tem 2011
- CVE-2012-335028İzleyin
SQL injection vulnerability in index.php in Webmatic 3.1.1 allows remote attackers to execute arbitrary SQL commands via the Referer HTTP he
OrtaCVSS 6,8Kavram kanıtıEPSS %3valarsoft · webmatic12 Tem 2012
- CVE-2008-292417İzleyin
Cross-site scripting (XSS) vulnerability in Webmatic before 2.8 allows remote attackers to inject arbitrary web script or HTML via unspecifi
OrtaCVSS 4,3İstismar yokEPSS %1valarsoft · webmatic30 Haz 2008
- CVE-2009-437917İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in Valarsoft Webmatic before 3.0.3 allow remote attackers to inject arbitrary web script
OrtaCVSS 4,3İstismar yokEPSS %1valarsoft · webmatic22 Ara 2009