wolfcms kayıtları
wolfcms üreticisine ait 16 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')10
- CWE-20 Improper Input Validation2
- CWE-352 Cross-Site Request Forgery (CSRF)2
- CWE-601 URL Redirection to Untrusted Site ('Open Redirect')1
- CWE-80 Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
16 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
38İzleyin | CVE-2015-6567Kavram kanıtı | Wolf CMS before 0.8.3.1 allows unrestricted file upload and PHP Code Execution because admin/plugin/file_manager/browse/ (aka the filemanagewolfcms · wolf cms · CWE-20 | Yüksek8,8 | — | %10,8 | 14 Nis 2017 |
38İzleyin | CVE-2015-6568Kavram kanıtı | Wolf CMS before 0.8.3.1 allows unrestricted file rename and PHP Code Execution because admin/plugin/file_manager/browse/ (aka the filemanagewolfcms · wolf cms · CWE-20 | Yüksek8,8 | — | %10,6 | 14 Nis 2017 |
27İzleyin | CVE-2018-8814Kavram kanıtı | Cross-site request forgery (CSRF) vulnerability in WolfCMS 0.8.3.1 allows remote attackers to hijack the authentication of users for requestwolfcms · wolf cms · CWE-352 | Orta6,5 | — | %3,0 | 4 Nis 2018 |
27İzleyin | CVE-2012-1897Kavram kanıtı | Multiple cross-site request forgery (CSRF) vulnerabilities in Wolf CMS 0.75 and earlier allow remote attackers to hijack the authentication wolfcms · wolf cms · CWE-352 | Orta6,8 | — | %1,2 | 1 Eki 2012 |
24İzleyin | CVE-2019-10646İstismar yok | Wolf CMS v0.8.3.1 is affected by cross site scripting (XSS) in the module Add Snippet (/?/admin/snippet/add).wolfcms · wolf cms · CWE-79 | Orta6,1 | — | %0,9 | 29 Mar 2019 |
24İzleyin | CVE-2019-25070İstismar yok | WolfCMS User Add cross site scriptingwolfcms · wolf cms · CWE-80 | Orta6,1 | — | %0,8 | 9 Haz 2022 |
21İzleyin | CVE-2017-11611Kavram kanıtı | Wolf CMS 0.8.3.1 allows Cross-Site Scripting (XSS) attacks.wolfcms · wolf cms · CWE-79 | Orta5,4 | — | %0,9 | 8 Eyl 2017 |
21İzleyin | CVE-2018-1000084İstismar yok | WOlfCMS WolfCMS version version 0.8.3.1 contains a Stored Cross-Site Scripting vulnerability in Layout Name (from Layout tab) that can resulwolfcms · wolf cms · CWE-79 | Orta5,4 | — | %0,6 | 13 Mar 2018 |
20İzleyin | CVE-2018-8813Kavram kanıtı | Open redirect vulnerability in the login[redirect] parameter login functionality in WolfCMS 0.8.3.1 allows remote attackers to redirect userwolfcms · wolf cms · CWE-601 | Orta4,8 | — | %3,2 | 4 Nis 2018 |
19İzleyin | CVE-2018-18824İstismar yok | WolfCMS v0.8.3.1 allows XSS via an SVG file to /?/admin/plugin/file_manager/browse/.wolfcms · wolf cms · CWE-79 | Orta4,8 | — | %1,0 | 25 Nis 2019 |
19İzleyin | CVE-2018-18823İstismar yok | WolfCMS 0.8.3.1 allows XSS via an SVG file to /?/admin/plugin/file_manager/browse/.wolfcms · wolf cms · CWE-79 | Orta4,8 | — | %1,0 | 25 Nis 2019 |
19İzleyin | CVE-2018-6890Kavram kanıtı | Cross-site scripting (XSS) vulnerability in Wolf CMS 0.8.3.1 via the page editing feature, as demonstrated by /?/admin/page/edit/3.wolfcms · wolf cms · CWE-79 | Orta4,8 | — | %0,7 | 22 Şub 2018 |
19İzleyin | CVE-2012-1932İstismar yok | A cross-site scripting (XSS) vulnerability in Wolf CMS 0.75 and earlier allows remote attackers to inject arbitrary web script or HTML via twolfcms · wolf cms · CWE-79 | Orta4,8 | — | %0,7 | 19 Şub 2020 |
19İzleyin | CVE-2018-14837İstismar yok | Wolf CMS 0.8.3.1 has XSS in the Snippets tab, as demonstrated by a ?/admin/snippet/edit/1 URI.wolfcms · wolf cms · CWE-79 | Orta4,8 | — | %0,7 | 10 Ağu 2018 |
19İzleyin | CVE-2018-15842İstismar yok | WolfCMS 0.8.3.1 has XSS via the /?/admin/page/add slug parameter.wolfcms · wolf cms · CWE-79 | Orta4,8 | — | %0,7 | 25 Ağu 2018 |
19İzleyin | CVE-2018-1000087İstismar yok | WolfCMS version version 0.8.3.1 contains a Reflected Cross Site Scripting vulnerability in "Create New File" and "Create New Directory" inpuwolfcms · wolf cms · CWE-79 | Orta4,8 | — | %0,6 | 13 Mar 2018 |
- CVE-2015-656738İzleyin
Wolf CMS before 0.8.3.1 allows unrestricted file upload and PHP Code Execution because admin/plugin/file_manager/browse/ (aka the filemanage
YüksekCVSS 8,8Kavram kanıtıEPSS %11wolfcms · wolf cms14 Nis 2017
- CVE-2015-656838İzleyin
Wolf CMS before 0.8.3.1 allows unrestricted file rename and PHP Code Execution because admin/plugin/file_manager/browse/ (aka the filemanage
YüksekCVSS 8,8Kavram kanıtıEPSS %11wolfcms · wolf cms14 Nis 2017
- CVE-2018-881427İzleyin
Cross-site request forgery (CSRF) vulnerability in WolfCMS 0.8.3.1 allows remote attackers to hijack the authentication of users for request
OrtaCVSS 6,5Kavram kanıtıEPSS %3wolfcms · wolf cms4 Nis 2018
- CVE-2012-189727İzleyin
Multiple cross-site request forgery (CSRF) vulnerabilities in Wolf CMS 0.75 and earlier allow remote attackers to hijack the authentication
OrtaCVSS 6,8Kavram kanıtıEPSS %1wolfcms · wolf cms1 Eki 2012
- CVE-2019-1064624İzleyin
Wolf CMS v0.8.3.1 is affected by cross site scripting (XSS) in the module Add Snippet (/?/admin/snippet/add).
OrtaCVSS 6,1İstismar yokEPSS %1wolfcms · wolf cms29 Mar 2019
- CVE-2019-2507024İzleyin
WolfCMS User Add cross site scripting
OrtaCVSS 6,1İstismar yokEPSS %1wolfcms · wolf cms9 Haz 2022
- CVE-2017-1161121İzleyin
Wolf CMS 0.8.3.1 allows Cross-Site Scripting (XSS) attacks.
OrtaCVSS 5,4Kavram kanıtıEPSS %1wolfcms · wolf cms8 Eyl 2017
- CVE-2018-100008421İzleyin
WOlfCMS WolfCMS version version 0.8.3.1 contains a Stored Cross-Site Scripting vulnerability in Layout Name (from Layout tab) that can resul
OrtaCVSS 5,4İstismar yokEPSS %1wolfcms · wolf cms13 Mar 2018
- CVE-2018-881320İzleyin
Open redirect vulnerability in the login[redirect] parameter login functionality in WolfCMS 0.8.3.1 allows remote attackers to redirect user
OrtaCVSS 4,8Kavram kanıtıEPSS %3wolfcms · wolf cms4 Nis 2018
- CVE-2018-1882419İzleyin
WolfCMS v0.8.3.1 allows XSS via an SVG file to /?/admin/plugin/file_manager/browse/.
OrtaCVSS 4,8İstismar yokEPSS %1wolfcms · wolf cms25 Nis 2019
- CVE-2018-1882319İzleyin
WolfCMS 0.8.3.1 allows XSS via an SVG file to /?/admin/plugin/file_manager/browse/.
OrtaCVSS 4,8İstismar yokEPSS %1wolfcms · wolf cms25 Nis 2019
- CVE-2018-689019İzleyin
Cross-site scripting (XSS) vulnerability in Wolf CMS 0.8.3.1 via the page editing feature, as demonstrated by /?/admin/page/edit/3.
OrtaCVSS 4,8Kavram kanıtıEPSS %1wolfcms · wolf cms22 Şub 2018
- CVE-2012-193219İzleyin
A cross-site scripting (XSS) vulnerability in Wolf CMS 0.75 and earlier allows remote attackers to inject arbitrary web script or HTML via t
OrtaCVSS 4,8İstismar yokEPSS %1wolfcms · wolf cms19 Şub 2020
- CVE-2018-1483719İzleyin
Wolf CMS 0.8.3.1 has XSS in the Snippets tab, as demonstrated by a ?/admin/snippet/edit/1 URI.
OrtaCVSS 4,8İstismar yokEPSS %1wolfcms · wolf cms10 Ağu 2018
- CVE-2018-1584219İzleyin
WolfCMS 0.8.3.1 has XSS via the /?/admin/page/add slug parameter.
OrtaCVSS 4,8İstismar yokEPSS %1wolfcms · wolf cms25 Ağu 2018
- CVE-2018-100008719İzleyin
WolfCMS version version 0.8.3.1 contains a Reflected Cross Site Scripting vulnerability in "Create New File" and "Create New Directory" inpu
OrtaCVSS 4,8İstismar yokEPSS %1wolfcms · wolf cms13 Mar 2018