webport kayıtları
webport üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')5
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2020-18667İstismar yok | SQL Injection vulnerability in WebPort <=1.19.1 via the new connection, parameter name in type-conn.webport · webport · CWE-89 | Kritik9,8 | — | %1,4 | 24 Haz 2021 |
27İzleyin | CVE-2019-12461Kavram kanıtı | Web Port 1.19.1 allows XSS via the /log type parameter.webport · web port · CWE-79 | Orta6,1 | — | %9,9 | 30 May 2019 |
25İzleyin | CVE-2019-12460Kavram kanıtı | Web Port 1.19.1 allows XSS via the /access/setup type parameter.webport · web port · CWE-79 | Orta6,1 | — | %3,8 | 30 May 2019 |
21İzleyin | CVE-2020-18665İstismar yok | Directory Traversal vulnerability in WebPort <=1.19.1 in tags of system settings.webport · web port · CWE-22 | Orta5,3 | — | %1,7 | 24 Haz 2021 |
21İzleyin | CVE-2020-18668İstismar yok | Cross Site Scripting (XSS) vulnerabililty in WebPort <=1.19.1 via the description parameter to script/listcalls.webport · web port · CWE-79 | Orta5,4 | — | %0,8 | 24 Haz 2021 |
21İzleyin | CVE-2020-18664İstismar yok | Cross Site Scripting (XSS) vulnerability in WebPort <=1.19.1via the connection name parameter in type-conn.webport · web port · CWE-79 | Orta5,4 | — | %0,7 | 24 Haz 2021 |
21İzleyin | CVE-2020-23659İstismar yok | WebPort-v1.19.17121 is affected by Cross Site Scripting (XSS) on the "connections" feature.webport · web port · CWE-79 | Orta5,4 | — | %0,6 | 26 Ağu 2020 |
- CVE-2020-1866739İzleyin
SQL Injection vulnerability in WebPort <=1.19.1 via the new connection, parameter name in type-conn.
KritikCVSS 9,8İstismar yokEPSS %1webport · webport24 Haz 2021
- CVE-2019-1246127İzleyin
Web Port 1.19.1 allows XSS via the /log type parameter.
OrtaCVSS 6,1Kavram kanıtıEPSS %10webport · web port30 May 2019
- CVE-2019-1246025İzleyin
Web Port 1.19.1 allows XSS via the /access/setup type parameter.
OrtaCVSS 6,1Kavram kanıtıEPSS %4webport · web port30 May 2019
- CVE-2020-1866521İzleyin
Directory Traversal vulnerability in WebPort <=1.19.1 in tags of system settings.
OrtaCVSS 5,3İstismar yokEPSS %2webport · web port24 Haz 2021
- CVE-2020-1866821İzleyin
Cross Site Scripting (XSS) vulnerabililty in WebPort <=1.19.1 via the description parameter to script/listcalls.
OrtaCVSS 5,4İstismar yokEPSS %1webport · web port24 Haz 2021
- CVE-2020-1866421İzleyin
Cross Site Scripting (XSS) vulnerability in WebPort <=1.19.1via the connection name parameter in type-conn.
OrtaCVSS 5,4İstismar yokEPSS %1webport · web port24 Haz 2021
- CVE-2020-2365921İzleyin
WebPort-v1.19.17121 is affected by Cross Site Scripting (XSS) on the "connections" feature.
OrtaCVSS 5,4İstismar yokEPSS %1webport · web port26 Ağu 2020