VISAM kayıtları
visam üreticisine ait 16 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-611 Improper Restriction of XML External Entity Reference8
- CWE-23 Relative Path Traversal1
- CWE-276 Incorrect Default Permissions1
- CWE-284 Improper Access Control1
- CWE-326 Inadequate Encryption Strength1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
16 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2020-10599İstismar yok | VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow a vulnerable ActiveX component to be exploited resulting in a buffvisam · vbase editor · CWE-121 | Kritik9,8 | — | %2,6 | 3 Nis 2020 |
35İzleyin | CVE-2020-7004İstismar yok | VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow weak or insecure permissions on the VBASE directory resulting in evisam · vbase editor · CWE-276 | Yüksek8,8 | — | %0,4 | 3 Nis 2020 |
31İzleyin | CVE-2020-7008İstismar yok | VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow input passed in the URL that is not properly verified before use, visam · vbase editor · CWE-23 | Yüksek7,5 | — | %1,9 | 3 Nis 2020 |
31İzleyin | CVE-2020-10601İstismar yok | VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module allow weak hashing algorithm and insecure permissions which may allow a locavisam · vbase editor · CWE-326 | Yüksek7,8 | — | %0,3 | 3 Nis 2020 |
30İzleyin | CVE-2022-3217İstismar yok | When logging in to a VBASE runtime project via Web-Remote, the product uses XOR with a static initial key to obfuscate login messages.visam · vbase | Yüksek7,5 | — | %1,3 | 16 Eyl 2022 |
30İzleyin | CVE-2020-7000İstismar yok | VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow an unauthenticated attacker to discover the cryptographic key fromvisam · vbase editor · CWE-922 | Yüksek7,5 | — | %1,1 | 3 Nis 2020 |
30İzleyin | CVE-2021-38417İstismar yok | VISAM VBASE Editor Improper Access Controlvisam · vbase web-remote · CWE-284 | Yüksek7,5 | — | %0,8 | 27 Tem 2022 |
30İzleyin | CVE-2021-42537İstismar yok | VISAM VBASE Editor Improper Restriction of XMLvisam · vbase web-remote · CWE-611 | Yüksek7,5 | — | %0,5 | 27 Tem 2022 |
24İzleyin | CVE-2021-42535İstismar yok | VISAM VBASE Editor Cross Site Scriptingvisam · vbase web-remote · CWE-79 | Orta6,1 | — | %0,5 | 27 Tem 2022 |
23İzleyin | CVE-2022-46300İstismar yok | Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.visam · vbase automation base · CWE-611 | Orta5,5 | — | %4,1 | 21 Mar 2023 |
23İzleyin | CVE-2022-45876İstismar yok | Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.visam · vbase · CWE-611 | Orta5,5 | — | %3,3 | 26 Nis 2023 |
23İzleyin | CVE-2022-45468İstismar yok | Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.visam · vbase automation base · CWE-611 | Orta5,5 | — | %1,8 | 21 Mar 2023 |
23İzleyin | CVE-2022-46286İstismar yok | Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.visam · vbase automation base · CWE-611 | Orta5,5 | — | %1,8 | 21 Mar 2023 |
22İzleyin | CVE-2022-43512İstismar yok | Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.visam · vbase automation base · CWE-611 | Orta5,5 | — | %0,3 | 21 Mar 2023 |
22İzleyin | CVE-2022-45121İstismar yok | Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.visam · vbase automation base · CWE-611 | Orta5,5 | — | %0,3 | 21 Mar 2023 |
22İzleyin | CVE-2022-41696İstismar yok | Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.visam · vbase automation base · CWE-611 | Orta5,5 | — | %0,3 | 21 Mar 2023 |
- CVE-2020-1059940Planlayın
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow a vulnerable ActiveX component to be exploited resulting in a buff
KritikCVSS 9,8İstismar yokEPSS %3visam · vbase editor3 Nis 2020
- CVE-2020-700435İzleyin
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow weak or insecure permissions on the VBASE directory resulting in e
YüksekCVSS 8,8İstismar yokEPSS %0visam · vbase editor3 Nis 2020
- CVE-2020-700831İzleyin
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow input passed in the URL that is not properly verified before use,
YüksekCVSS 7,5İstismar yokEPSS %2visam · vbase editor3 Nis 2020
- CVE-2020-1060131İzleyin
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module allow weak hashing algorithm and insecure permissions which may allow a loca
YüksekCVSS 7,8İstismar yokEPSS %0visam · vbase editor3 Nis 2020
- CVE-2022-321730İzleyin
When logging in to a VBASE runtime project via Web-Remote, the product uses XOR with a static initial key to obfuscate login messages.
YüksekCVSS 7,5İstismar yokEPSS %1visam · vbase16 Eyl 2022
- CVE-2020-700030İzleyin
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow an unauthenticated attacker to discover the cryptographic key from
YüksekCVSS 7,5İstismar yokEPSS %1visam · vbase editor3 Nis 2020
- CVE-2021-3841730İzleyin
VISAM VBASE Editor Improper Access Control
YüksekCVSS 7,5İstismar yokEPSS %1visam · vbase web-remote27 Tem 2022
- CVE-2021-4253730İzleyin
VISAM VBASE Editor Improper Restriction of XML
YüksekCVSS 7,5İstismar yokEPSS %1visam · vbase web-remote27 Tem 2022
- CVE-2021-4253524İzleyin
VISAM VBASE Editor Cross Site Scripting
OrtaCVSS 6,1İstismar yokEPSS %0visam · vbase web-remote27 Tem 2022
- CVE-2022-4630023İzleyin
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
OrtaCVSS 5,5İstismar yokEPSS %4visam · vbase automation base21 Mar 2023
- CVE-2022-4587623İzleyin
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
OrtaCVSS 5,5İstismar yokEPSS %3visam · vbase26 Nis 2023
- CVE-2022-4546823İzleyin
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
OrtaCVSS 5,5İstismar yokEPSS %2visam · vbase automation base21 Mar 2023
- CVE-2022-4628623İzleyin
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
OrtaCVSS 5,5İstismar yokEPSS %2visam · vbase automation base21 Mar 2023
- CVE-2022-4351222İzleyin
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
OrtaCVSS 5,5İstismar yokEPSS %0visam · vbase automation base21 Mar 2023
- CVE-2022-4512122İzleyin
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
OrtaCVSS 5,5İstismar yokEPSS %0visam · vbase automation base21 Mar 2023
- CVE-2022-4169622İzleyin
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
OrtaCVSS 5,5İstismar yokEPSS %0visam · vbase automation base21 Mar 2023