webmobo kayıtları
webmobo üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-287 Improper Authentication1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2007-1288İstismar yok | Multiple PHP remote file inclusion vulnerabilities in Webmobo WB News 1.4.1 and earlier allow remote attackers to execute arbitrary PHP codewebmobo · wbnews | Kritik10,0 | — | %2,9 | 6 Mar 2007 |
31İzleyin | CVE-2009-4927Kavram kanıtı | WB News 2.1.2 allows remote attackers to bypass authentication and gain administrative access via a modified WBNEWS cookie, as demonstrated webmobo · wbnews · CWE-287 | Yüksek7,5 | — | %2,5 | 12 Tem 2010 |
28İzleyin | CVE-2009-0294Kavram kanıtı | Multiple PHP remote file inclusion vulnerabilities in WB News 2.0.1, when register_globals is enabled, allow remote attackers to execute arbwebmobo · wbnews · CWE-94 | Orta6,8 | — | %1,8 | 27 Oca 2009 |
20İzleyin | CVE-2006-0241İstismar yok | Cross-site scripting vulnerability in WBNews 1.1.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the Name fwebmobo · wbnews | Orta5,0 | — | %1,4 | 17 Oca 2006 |
18İzleyin | CVE-2010-1712Kavram kanıtı | Multiple cross-site scripting (XSS) vulnerabilities in base/Comments.php in Webmobo WB News 2.3.3 allow remote attackers to inject arbitrarywebmobo · wbnews · CWE-79 | Orta4,3 | — | %1,9 | 4 May 2010 |
- CVE-2007-128841Planlayın
Multiple PHP remote file inclusion vulnerabilities in Webmobo WB News 1.4.1 and earlier allow remote attackers to execute arbitrary PHP code
KritikCVSS 10,0İstismar yokEPSS %3webmobo · wbnews6 Mar 2007
- CVE-2009-492731İzleyin
WB News 2.1.2 allows remote attackers to bypass authentication and gain administrative access via a modified WBNEWS cookie, as demonstrated
YüksekCVSS 7,5Kavram kanıtıEPSS %2webmobo · wbnews12 Tem 2010
- CVE-2009-029428İzleyin
Multiple PHP remote file inclusion vulnerabilities in WB News 2.0.1, when register_globals is enabled, allow remote attackers to execute arb
OrtaCVSS 6,8Kavram kanıtıEPSS %2webmobo · wbnews27 Oca 2009
- CVE-2006-024120İzleyin
Cross-site scripting vulnerability in WBNews 1.1.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the Name f
OrtaCVSS 5,0İstismar yokEPSS %1webmobo · wbnews17 Oca 2006
- CVE-2010-171218İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in base/Comments.php in Webmobo WB News 2.3.3 allow remote attackers to inject arbitrary
OrtaCVSS 4,3Kavram kanıtıEPSS %2webmobo · wbnews4 May 2010