websvn kayıtları
websvn üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %42,9
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
65Bu hafta | CVE-2021-32305Kavram kanıtı | WebSVN before 2.6.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the search parameter.websvn · websvn · CWE-78 | Kritik9,8 | — | %87,3 | 18 May 2021 |
40Planlayın | CVE-2011-2195İstismar yok | A flaw was found in WebSVN 2.3.2.websvn · websvn · CWE-78 | Kritik9,8 | — | %2,7 | 26 Eki 2021 |
25İzleyin | CVE-2016-2511İstismar yok | Cross-site scripting (XSS) vulnerability in WebSVN 2.3.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the websvn · websvn · CWE-79 | Orta6,1 | — | %1,7 | 7 Nis 2016 |
24İzleyin | CVE-2016-1236İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in (1) revision.php, (2) log.php, (3) listing.php, and (4) comp.php in WebSVN allow contwebsvn · websvn · CWE-79 | Orta6,1 | — | %0,9 | 11 May 2016 |
18İzleyin | CVE-2011-5221İstismar yok | Cross-site scripting (XSS) vulnerability in the getLog function in svnlook.php in WebSVN before 2.3.1 allows remote attackers to inject arbiwebsvn · websvn · CWE-79 | Orta4,3 | — | %2,5 | 25 Eki 2012 |
17İzleyin | CVE-2007-3056İstismar yok | Cross-site scripting (XSS) vulnerability in filedetails.php in WebSVN 2.0rc4, and possibly earlier, allows remote attackers to inject arbitrwebsvn · websvn · CWE-79 | Orta4,3 | — | %1,6 | 5 Haz 2007 |
14İzleyin | CVE-2013-6892İstismar yok | WebSVN 2.3.3 allows remote authenticated users to read arbitrary files via a symlink attack in a commit.websvn · websvn · CWE-200 | Düşük3,5 | — | %1,0 | 21 Oca 2015 |
- CVE-2021-3230565Bu hafta
WebSVN before 2.6.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the search parameter.
KritikCVSS 9,8Kavram kanıtıEPSS %87websvn · websvn18 May 2021
- CVE-2011-219540Planlayın
A flaw was found in WebSVN 2.3.2.
KritikCVSS 9,8İstismar yokEPSS %3websvn · websvn26 Eki 2021
- CVE-2016-251125İzleyin
Cross-site scripting (XSS) vulnerability in WebSVN 2.3.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the
OrtaCVSS 6,1İstismar yokEPSS %2websvn · websvn7 Nis 2016
- CVE-2016-123624İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in (1) revision.php, (2) log.php, (3) listing.php, and (4) comp.php in WebSVN allow cont
OrtaCVSS 6,1İstismar yokEPSS %1websvn · websvn11 May 2016
- CVE-2011-522118İzleyin
Cross-site scripting (XSS) vulnerability in the getLog function in svnlook.php in WebSVN before 2.3.1 allows remote attackers to inject arbi
OrtaCVSS 4,3İstismar yokEPSS %2websvn · websvn25 Eki 2012
- CVE-2007-305617İzleyin
Cross-site scripting (XSS) vulnerability in filedetails.php in WebSVN 2.0rc4, and possibly earlier, allows remote attackers to inject arbitr
OrtaCVSS 4,3İstismar yokEPSS %2websvn · websvn5 Haz 2007
- CVE-2013-689214İzleyin
WebSVN 2.3.3 allows remote authenticated users to read arbitrary files via a symlink attack in a commit.
DüşükCVSS 3,5İstismar yokEPSS %1websvn · websvn21 Oca 2015