webtrends kayıtları
webtrends üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
33İzleyin | CVE-2002-0595Kavram kanıtı | Buffer overflow in WTRS_UI.EXE (WTX_REMOTE.DLL) for WebTrends Reporting Center 4.0d allows remote attackers to execute arbitrary code via a webtrends · reporting center | Yüksek7,5 | — | %10,7 | 18 Haz 2002 |
21İzleyin | CVE-2001-0693Kavram kanıtı | WebTrends HTTP Server 3.1c and 3.5 allows a remote attacker to view script source code via a filename followed by an encoded space (%20).webtrends · webtrends enterprise reporting server | Orta5,0 | — | %3,1 | 20 Eyl 2001 |
20İzleyin | CVE-2002-0596İstismar yok | WebTrends Reporting Center 4.0d allows remote attackers to determine the real path of the web server via a GET request to get_od_toc.pl withwebtrends · reporting center · CWE-200 | Orta5,0 | — | %1,5 | 18 Haz 2002 |
18İzleyin | CVE-2004-2748Kavram kanıtı | viewreport.pl in NetIQ WebTrends Reporting Center Enterprise Edition 6.1a allows remote attackers to determine the installation path via an webtrends · reporting center · CWE-200 | Orta4,3 | — | %4,8 | 31 Ara 2004 |
17İzleyin | CVE-2003-1583İstismar yok | Cross-site scripting (XSS) vulnerability in WebTrends allows remote attackers to inject arbitrary web script or HTML via a crafted client dowebtrends · webtrends log analyzer · CWE-79 | Orta4,3 | — | %0,9 | 5 Şub 2010 |
8İzleyin | CVE-1999-0916İstismar yok | WebTrends software stores account names and passwords in a file which does not have restricted access permissions.webtrends · webtrends enterprise suite | Düşük2,1 | — | %0,4 | 29 Haz 1999 |
- CVE-2002-059533İzleyin
Buffer overflow in WTRS_UI.EXE (WTX_REMOTE.DLL) for WebTrends Reporting Center 4.0d allows remote attackers to execute arbitrary code via a
YüksekCVSS 7,5Kavram kanıtıEPSS %11webtrends · reporting center18 Haz 2002
- CVE-2001-069321İzleyin
WebTrends HTTP Server 3.1c and 3.5 allows a remote attacker to view script source code via a filename followed by an encoded space (%20).
OrtaCVSS 5,0Kavram kanıtıEPSS %3webtrends · webtrends enterprise reporting server20 Eyl 2001
- CVE-2002-059620İzleyin
WebTrends Reporting Center 4.0d allows remote attackers to determine the real path of the web server via a GET request to get_od_toc.pl with
OrtaCVSS 5,0İstismar yokEPSS %2webtrends · reporting center18 Haz 2002
- CVE-2004-274818İzleyin
viewreport.pl in NetIQ WebTrends Reporting Center Enterprise Edition 6.1a allows remote attackers to determine the installation path via an
OrtaCVSS 4,3Kavram kanıtıEPSS %5webtrends · reporting center31 Ara 2004
- CVE-2003-158317İzleyin
Cross-site scripting (XSS) vulnerability in WebTrends allows remote attackers to inject arbitrary web script or HTML via a crafted client do
OrtaCVSS 4,3İstismar yokEPSS %1webtrends · webtrends log analyzer5 Şub 2010
- CVE-1999-09168İzleyin
WebTrends software stores account names and passwords in a file which does not have restricted access permissions.
DüşükCVSS 2,1İstismar yokEPSS %0webtrends · webtrends enterprise suite29 Haz 1999