webchess project kayıtları
webchess project üreticisine ait 3 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Saldırı profili
Tüm kayıtlar
3 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2023-22959İstismar yok | WebChess through 0.9.0 and 1.0.0.rc2 allows SQL injection: mainmenu.php, chess.php, and opponentspassword.php (txtFirstName, txtLastName).webchess project · webchess · CWE-89 | Yüksek8,8 | — | %13,7 | 11 Oca 2023 |
39İzleyin | CVE-2019-20896İstismar yok | WebChess 1.0 allows SQL injection via the messageFrom, gameID, opponent, messageID, or to parameter.webchess project · webchess · CWE-89 | Kritik9,8 | — | %1,0 | 7 Tem 2020 |
39İzleyin | CVE-2023-39851İstismar yok | webchess v1.0 was discovered to contain a SQL injection vulnerability via the $playerID parameter at mainmenu.php.webchess project · webchess · CWE-89 | Kritik9,8 | — | %0,8 | 15 Ağu 2023 |
- CVE-2023-2295939İzleyin
WebChess through 0.9.0 and 1.0.0.rc2 allows SQL injection: mainmenu.php, chess.php, and opponentspassword.php (txtFirstName, txtLastName).
YüksekCVSS 8,8İstismar yokEPSS %14webchess project · webchess11 Oca 2023
- CVE-2019-2089639İzleyin
WebChess 1.0 allows SQL injection via the messageFrom, gameID, opponent, messageID, or to parameter.
KritikCVSS 9,8İstismar yokEPSS %1webchess project · webchess7 Tem 2020
- CVE-2023-3985139İzleyin
webchess v1.0 was discovered to contain a SQL injection vulnerability via the $playerID parameter at mainmenu.php.
KritikCVSS 9,8İstismar yokEPSS %1webchess project · webchess15 Ağu 2023