workforceroi kayıtları
workforceroi üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Saldırı profili
Tüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
30İzleyin | CVE-2002-0580İstismar yok | WorkforceROI Xpede 4.1 allows remote attackers to obtain the database username via a request to datasource.asp, which leaks the username in workforceroi · xpede | Yüksek7,5 | — | %1,6 | 18 Haz 2002 |
30İzleyin | CVE-2002-0581İstismar yok | WorkforceROI Xpede 4.1 allows remote attackers to execute arbitrary SQL commands and read, modify, or steal credentials from the database viworkforceroi · xpede | Yüksek7,5 | — | %1,6 | 18 Haz 2002 |
30İzleyin | CVE-2002-0579İstismar yok | WorkforceROI Xpede 4.1 allows remote attackers to gain privileges as an Xpede administrator via a direct HTTP request to the /admin/adminproworkforceroi · xpede | Yüksek7,5 | — | %1,6 | 18 Haz 2002 |
28İzleyin | CVE-2002-0486Kavram kanıtı | Intellisol Xpede 4.1 uses weak encryption to store authentication information in cookies, which could allow local users with access to the cworkforceroi · xpede | Yüksek7,2 | — | %0,8 | 12 Ağu 2002 |
21İzleyin | CVE-2002-0584İstismar yok | WorkforceROI Xpede 4.1 allows remote attackers to read user timesheets by modifying the TSN ID parameter to the ts_app_process.asp script, wworkforceroi · xpede | Orta5,0 | — | %1,8 | 18 Haz 2002 |
20İzleyin | CVE-2002-0582İstismar yok | WorkforceROI Xpede 4.1 stores temporary expense claim reports in a world-readable and indexable /reports/temp directory, which allows remoteworkforceroi · xpede | Orta5,0 | — | %1,6 | 18 Haz 2002 |
20İzleyin | CVE-2002-0583İstismar yok | WorkforceROI Xpede 4.1 uses a small random namespace (5 alphanumeric characters) for temporary expense claim reports in the /reports/temp diworkforceroi · xpede | Orta5,0 | — | %1,6 | 18 Haz 2002 |
18İzleyin | CVE-2002-0487İstismar yok | Intellisol Xpede 4.1 stores passwords in plaintext in a Javascript "session timeout" re-authentication capability, which could allow local uworkforceroi · xpede | Orta4,6 | — | %0,4 | 12 Ağu 2002 |
- CVE-2002-058030İzleyin
WorkforceROI Xpede 4.1 allows remote attackers to obtain the database username via a request to datasource.asp, which leaks the username in
YüksekCVSS 7,5İstismar yokEPSS %2workforceroi · xpede18 Haz 2002
- CVE-2002-058130İzleyin
WorkforceROI Xpede 4.1 allows remote attackers to execute arbitrary SQL commands and read, modify, or steal credentials from the database vi
YüksekCVSS 7,5İstismar yokEPSS %2workforceroi · xpede18 Haz 2002
- CVE-2002-057930İzleyin
WorkforceROI Xpede 4.1 allows remote attackers to gain privileges as an Xpede administrator via a direct HTTP request to the /admin/adminpro
YüksekCVSS 7,5İstismar yokEPSS %2workforceroi · xpede18 Haz 2002
- CVE-2002-048628İzleyin
Intellisol Xpede 4.1 uses weak encryption to store authentication information in cookies, which could allow local users with access to the c
YüksekCVSS 7,2Kavram kanıtıEPSS %1workforceroi · xpede12 Ağu 2002
- CVE-2002-058421İzleyin
WorkforceROI Xpede 4.1 allows remote attackers to read user timesheets by modifying the TSN ID parameter to the ts_app_process.asp script, w
OrtaCVSS 5,0İstismar yokEPSS %2workforceroi · xpede18 Haz 2002
- CVE-2002-058220İzleyin
WorkforceROI Xpede 4.1 stores temporary expense claim reports in a world-readable and indexable /reports/temp directory, which allows remote
OrtaCVSS 5,0İstismar yokEPSS %2workforceroi · xpede18 Haz 2002
- CVE-2002-058320İzleyin
WorkforceROI Xpede 4.1 uses a small random namespace (5 alphanumeric characters) for temporary expense claim reports in the /reports/temp di
OrtaCVSS 5,0İstismar yokEPSS %2workforceroi · xpede18 Haz 2002
- CVE-2002-048718İzleyin
Intellisol Xpede 4.1 stores passwords in plaintext in a Javascript "session timeout" re-authentication capability, which could allow local u
OrtaCVSS 4,6İstismar yokEPSS %0workforceroi · xpede12 Ağu 2002