vdgsecurity kayıtları
vdgsecurity üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor3
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-287 Improper Authentication1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2014-9451İstismar yok | Multiple stack-based buffer overflows in the DIVA web service API (/webservice) in VDG Security SENSE (formerly DIVA) 2.3.13 allow remote atvdgsecurity · vdg sense · CWE-119 | Yüksek7,5 | — | %4,6 | 2 Oca 2015 |
26İzleyin | CVE-2014-9575İstismar yok | VDG Security SENSE (formerly DIVA) before 2.3.15 allows remote attackers to bypass authentication, and consequently read and modify arbitrarvdgsecurity · vdg sense · CWE-264 | Orta6,4 | — | %2,4 | 8 Oca 2015 |
21İzleyin | CVE-2014-9452İstismar yok | Directory traversal vulnerability in VDG Security SENSE (formerly DIVA) 2.3.13 allows remote attackers to read arbitrary files via a ..vdgsecurity · vdg sense · CWE-22 | Orta5,0 | — | %2,8 | 2 Oca 2015 |
21İzleyin | CVE-2014-9576İstismar yok | VDG Security SENSE (formerly DIVA) 2.3.13 has a hardcoded password of (1) ArpaRomaWi for the root Postgres account and !DVService for the (2vdgsecurity · vdg sense · CWE-200 | Orta5,0 | — | %2,3 | 8 Oca 2015 |
21İzleyin | CVE-2014-9578İstismar yok | VDG Security SENSE (formerly DIVA) 2.3.13 performs authentication with a password hash instead of a password, which allows remote attackers vdgsecurity · vdg sense · CWE-287 | Orta5,0 | — | %2,2 | 8 Oca 2015 |
21İzleyin | CVE-2014-9579İstismar yok | VDG Security SENSE (formerly DIVA) 2.3.13 stores administrator credentials in cleartext, which allows attackers to obtain sensitive informatvdgsecurity · vdg sense · CWE-200 | Orta5,0 | — | %1,7 | 8 Oca 2015 |
17İzleyin | CVE-2014-9577İstismar yok | VDG Security SENSE (formerly DIVA) 2.3.13 sends the user database when a user logs in, which allows remote authenticated users to obtain usevdgsecurity · vdg sense · CWE-200 | Orta4,0 | — | %1,8 | 8 Oca 2015 |
- CVE-2014-945131İzleyin
Multiple stack-based buffer overflows in the DIVA web service API (/webservice) in VDG Security SENSE (formerly DIVA) 2.3.13 allow remote at
YüksekCVSS 7,5İstismar yokEPSS %5vdgsecurity · vdg sense2 Oca 2015
- CVE-2014-957526İzleyin
VDG Security SENSE (formerly DIVA) before 2.3.15 allows remote attackers to bypass authentication, and consequently read and modify arbitrar
OrtaCVSS 6,4İstismar yokEPSS %2vdgsecurity · vdg sense8 Oca 2015
- CVE-2014-945221İzleyin
Directory traversal vulnerability in VDG Security SENSE (formerly DIVA) 2.3.13 allows remote attackers to read arbitrary files via a ..
OrtaCVSS 5,0İstismar yokEPSS %3vdgsecurity · vdg sense2 Oca 2015
- CVE-2014-957621İzleyin
VDG Security SENSE (formerly DIVA) 2.3.13 has a hardcoded password of (1) ArpaRomaWi for the root Postgres account and !DVService for the (2
OrtaCVSS 5,0İstismar yokEPSS %2vdgsecurity · vdg sense8 Oca 2015
- CVE-2014-957821İzleyin
VDG Security SENSE (formerly DIVA) 2.3.13 performs authentication with a password hash instead of a password, which allows remote attackers
OrtaCVSS 5,0İstismar yokEPSS %2vdgsecurity · vdg sense8 Oca 2015
- CVE-2014-957921İzleyin
VDG Security SENSE (formerly DIVA) 2.3.13 stores administrator credentials in cleartext, which allows attackers to obtain sensitive informat
OrtaCVSS 5,0İstismar yokEPSS %2vdgsecurity · vdg sense8 Oca 2015
- CVE-2014-957717İzleyin
VDG Security SENSE (formerly DIVA) 2.3.13 sends the user database when a user logs in, which allows remote authenticated users to obtain use
OrtaCVSS 4,0İstismar yokEPSS %2vdgsecurity · vdg sense8 Oca 2015