vignette kayıtları
vignette üreticisine ait 12 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tüm kayıtlar
12 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2018-18941İstismar yok | In Vignette Content Management version 6, it is possible to gain remote access to administrator privileges by discovering the admin passwordvignette · content management · CWE-200 | Kritik9,8 | — | %2,3 | 31 Oca 2019 |
31İzleyin | CVE-2003-0398İstismar yok | Vignette StoryServer 4 and 5, and Vignette V/5 and V/6, with the SSI EXEC feature enabled, allows remote attackers to execute arbitrary codevignette · content suite | Yüksek7,5 | — | %2,9 | 2 Tem 2003 |
31İzleyin | CVE-2003-0403İstismar yok | Vignette StoryServer 5 and Vignette V/5 allows remote attackers to read and modify license information, and cause a denial of service (servivignette · content suite | Yüksek7,5 | — | %2,5 | 30 Haz 2003 |
30İzleyin | CVE-2008-6412İstismar yok | Unspecified vulnerability in Vignette Content Management 7.3.0.5, 7.3.1, 7.3.1.1, 7.4, and 7.5 allows "low privileged" users to gain adminisvignette · vignette content management | Yüksek7,5 | — | %1,4 | 6 Mar 2009 |
25İzleyin | CVE-2003-0399İstismar yok | Vignette StoryServer 4 and 5, Vignette V/5, and possibly other versions allows remote attackers to perform unauthorized SELECT queries by sevignette · content suite | Orta6,4 | — | %1,6 | 2 Tem 2003 |
21İzleyin | CVE-2003-0400Kavram kanıtı | Vignette StoryServer and Vignette V/5 does not properly calculate the size of text variables, which causes Vignette to return unauthorized pvignette · content suite | Orta5,0 | — | %3,5 | 30 Haz 2003 |
21İzleyin | CVE-2003-0401İstismar yok | Vignette StoryServer and Vignette V/5 allows remote attackers to obtain sensitive information via a request for the /vgn/style template.vignette · content suite | Orta5,0 | — | %2,3 | 30 Haz 2003 |
20İzleyin | CVE-2004-0917İstismar yok | The default installation of Vignette Application Portal installs the diagnostic utility without authentication requirements, which allows revignette · application portal | Orta5,0 | — | %1,6 | 27 Oca 2005 |
20İzleyin | CVE-2003-0405İstismar yok | Vignette StoryServer 5 and Vignette V/6 allows remote attackers to execute arbitrary TCL code via (1) an HTTP query or cookie which is procevignette · content suite | Orta5,0 | — | %1,6 | 30 Haz 2003 |
20İzleyin | CVE-2002-0385İstismar yok | Vignette Story Server 4.1 and 6.0 allows remote attackers to obtain sensitive information via a request that contains a large number of '"' vignette · storyserver | Orta5,0 | — | %1,5 | 1 Haz 2004 |
20İzleyin | CVE-2003-0402İstismar yok | The default login template (/vgn/login) in Vignette StoryServer 5 and Vignette V/5 generates different responses whether a user exists or novignette · content suite | Orta5,0 | — | %1,5 | 30 Haz 2003 |
18İzleyin | CVE-2003-0404Kavram kanıtı | Multiple Cross Site Scripting (XSS) vulnerabilities in Vignette StoryServer 4 and 5, and Vignette V/5 and V/6, allow remote attackers to insvignette · content suite | Orta4,3 | — | %2,0 | 30 Haz 2003 |
- CVE-2018-1894140Planlayın
In Vignette Content Management version 6, it is possible to gain remote access to administrator privileges by discovering the admin password
KritikCVSS 9,8İstismar yokEPSS %2vignette · content management31 Oca 2019
- CVE-2003-039831İzleyin
Vignette StoryServer 4 and 5, and Vignette V/5 and V/6, with the SSI EXEC feature enabled, allows remote attackers to execute arbitrary code
YüksekCVSS 7,5İstismar yokEPSS %3vignette · content suite2 Tem 2003
- CVE-2003-040331İzleyin
Vignette StoryServer 5 and Vignette V/5 allows remote attackers to read and modify license information, and cause a denial of service (servi
YüksekCVSS 7,5İstismar yokEPSS %2vignette · content suite30 Haz 2003
- CVE-2008-641230İzleyin
Unspecified vulnerability in Vignette Content Management 7.3.0.5, 7.3.1, 7.3.1.1, 7.4, and 7.5 allows "low privileged" users to gain adminis
YüksekCVSS 7,5İstismar yokEPSS %1vignette · vignette content management6 Mar 2009
- CVE-2003-039925İzleyin
Vignette StoryServer 4 and 5, Vignette V/5, and possibly other versions allows remote attackers to perform unauthorized SELECT queries by se
OrtaCVSS 6,4İstismar yokEPSS %2vignette · content suite2 Tem 2003
- CVE-2003-040021İzleyin
Vignette StoryServer and Vignette V/5 does not properly calculate the size of text variables, which causes Vignette to return unauthorized p
OrtaCVSS 5,0Kavram kanıtıEPSS %3vignette · content suite30 Haz 2003
- CVE-2003-040121İzleyin
Vignette StoryServer and Vignette V/5 allows remote attackers to obtain sensitive information via a request for the /vgn/style template.
OrtaCVSS 5,0İstismar yokEPSS %2vignette · content suite30 Haz 2003
- CVE-2004-091720İzleyin
The default installation of Vignette Application Portal installs the diagnostic utility without authentication requirements, which allows re
OrtaCVSS 5,0İstismar yokEPSS %2vignette · application portal27 Oca 2005
- CVE-2003-040520İzleyin
Vignette StoryServer 5 and Vignette V/6 allows remote attackers to execute arbitrary TCL code via (1) an HTTP query or cookie which is proce
OrtaCVSS 5,0İstismar yokEPSS %2vignette · content suite30 Haz 2003
- CVE-2002-038520İzleyin
Vignette Story Server 4.1 and 6.0 allows remote attackers to obtain sensitive information via a request that contains a large number of '"'
OrtaCVSS 5,0İstismar yokEPSS %2vignette · storyserver1 Haz 2004
- CVE-2003-040220İzleyin
The default login template (/vgn/login) in Vignette StoryServer 5 and Vignette V/5 generates different responses whether a user exists or no
OrtaCVSS 5,0İstismar yokEPSS %2vignette · content suite30 Haz 2003
- CVE-2003-040418İzleyin
Multiple Cross Site Scripting (XSS) vulnerabilities in Vignette StoryServer 4 and 5, and Vignette V/5 and V/6, allow remote attackers to ins
OrtaCVSS 4,3Kavram kanıtıEPSS %2vignette · content suite30 Haz 2003