İçeriğe atla
Noroxi

Weberp kayıtları

weberp üreticisine ait 11 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
1
Düzeltme kaydı olan
%9,1
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

11 kayıt
  • CVE-2019-13292
    42Planlayın

    A SQL Injection issue was discovered in webERP 4.15.

    KritikCVSS 9,8Kavram kanıtıEPSS %9

    weberp · weberp4 Tem 2019

  • CVE-2015-10018
    39İzleyin

    DBRisinajumi d2files D2filesController.php actionDownloadFile sql injection

    KritikCVSS 9,8İstismar yokEPSS %1

    weberp · d2files6 Oca 2023

  • CVE-2025-46052
    39İzleyin

    An error-based SQL Injection (SQLi) vulnerability in WebERP v4.15.2 allows attackers to execute arbitrary SQL command and extract sensitive

    KritikCVSS 9,8İstismar yokEPSS %0

    weberp · weberp15 May 2025

  • CVE-2019-7755
    36İzleyin

    In webERP 4.15, the Import Bank Transactions function fails to sanitize the content of imported MT940 bank statement files, resulting in the

    YüksekCVSS 8,8İstismar yokEPSS %2

    weberp · weberp30 Mar 2020

  • CVE-2020-37082
    34İzleyin

    webERP 4.15.1 - Unauthenticated Backup File Access

    YüksekCVSS 8,6İstismar yokEPSS %1

    weberp · weberp3 Şub 2026

  • CVE-2018-19435
    28İzleyin

    An issue was discovered in the Sales component in webERP 4.15.

    YüksekCVSS 7,2İstismar yokEPSS %1

    weberp · weberp22 Kas 2018

  • CVE-2018-19436
    28İzleyin

    An issue was discovered in the Manufacturing component in webERP 4.15.

    YüksekCVSS 7,2İstismar yokEPSS %1

    weberp · weberp22 Kas 2018

  • CVE-2018-19434
    28İzleyin

    An issue was discovered on the "Bank Account Matching - Receipts" screen of the General Ledger component in webERP 4.15.

    YüksekCVSS 7,2İstismar yokEPSS %1

    weberp · weberp22 Kas 2018

  • CVE-2020-22474
    26İzleyin

    In webERP 4.15, the ManualContents.php file allows users to specify the "Language" parameter, which can lead to local file inclusion.

    OrtaCVSS 6,5İstismar yokEPSS %1

    weberp · weberp22 Şub 2021

  • CVE-2025-46053
    20İzleyin

    A SQL Injection vulnerability in WebERP v4.15.2 allows attackers to execute arbitrary SQL commands and extract sensitive data by injecting a

    OrtaCVSS 5,1İstismar yokEPSS %0

    weberp · weberp15 May 2025

  • CVE-2018-20420
    19İzleyin

    In webERP 4.15, Z_CreateCompanyTemplateFile.php has Incorrect Access Control, leading to the overwrite of an existing .sql file on the targe

    OrtaCVSS 4,9İstismar yokEPSS %1

    weberp · weberp23 Ara 2018