xigla kayıtları
xigla üreticisine ait 37 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 5
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-287 Improper Authentication12
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')10
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')8
- CWE-20 Improper Input Validation1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
37 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2007-6269Kavram kanıtı | Multiple SQL injection vulnerabilities in xlaabsolutenm.aspx in Absolute News Manager.NET 5.1 allow remote attackers to execute arbitrary SQxigla · absolute news manager.net · CWE-89 | Yüksek7,5 | — | %2,9 | 7 Ara 2007 |
31İzleyin | CVE-2008-6857Kavram kanıtı | Absolute Podcast .NET 1.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain vxigla · absolute podcast.net · CWE-287 | Yüksek7,5 | — | %2,6 | 14 Tem 2009 |
31İzleyin | CVE-2008-6854Kavram kanıtı | Xigla Software Absolute FAQ Manager.NET 6.0 allows remote attackers to bypass authentication and gain administrative access by setting a cooxigla · absolute faq manager .net · CWE-287 | Yüksek7,5 | — | %2,5 | 14 Tem 2009 |
31İzleyin | CVE-2008-6856Kavram kanıtı | Xigla Software Absolute News Manager.NET 5.1 allows remote attackers to bypass authentication and gain administrative access by setting a coxigla · absolute news manager.net · CWE-287 | Yüksek7,5 | — | %2,5 | 14 Tem 2009 |
31İzleyin | CVE-2008-6860Kavram kanıtı | Xigla Software Absolute Poll Manager XE 4.1 allows remote attackers to bypass authentication and gain administrative access by setting a cooxigla · absolute poll manager xe · CWE-287 | Yüksek7,5 | — | %2,5 | 14 Tem 2009 |
31İzleyin | CVE-2008-6859Kavram kanıtı | Xigla Software Absolute Control Panel XE 1.5 allows remote attackers to bypass authentication and gain administrative access by setting a coxigla · absolute control panel xe · CWE-287 | Yüksek7,5 | — | %2,5 | 14 Tem 2009 |
31İzleyin | CVE-2008-6864Kavram kanıtı | Xigla Software Absolute Live Support .NET 5.1 allows remote attackers to bypass authentication and gain administrative access by setting a cxigla · absolute live support .net · CWE-287 | Yüksek7,5 | — | %2,5 | 14 Tem 2009 |
31İzleyin | CVE-2008-6863Kavram kanıtı | Xigla Software Absolute Form Processor .NET 4.0 allows remote attackers to bypass authentication and gain administrative access by setting axigla · absolute form processor.net · CWE-287 | Yüksek7,5 | — | %2,5 | 14 Tem 2009 |
31İzleyin | CVE-2008-6862Kavram kanıtı | Absolute Content Rotator 6.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certaixigla · absolute content rotator · CWE-287 | Yüksek7,5 | — | %2,5 | 14 Tem 2009 |
31İzleyin | CVE-2008-6861Kavram kanıtı | Xigla Software Absolute Newsletter 6.0 and 6.1 allows remote attackers to bypass authentication and gain administrative access by setting a xigla · absolute newsletter · CWE-287 | Yüksek7,5 | — | %2,5 | 14 Tem 2009 |
31İzleyin | CVE-2008-6858Kavram kanıtı | Absolute Banner Manager .NET 4.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a cexigla · absolute banner manager.net · CWE-287 | Yüksek7,5 | — | %2,5 | 14 Tem 2009 |
31İzleyin | CVE-2008-6855Kavram kanıtı | Xigla Software Absolute News Feed 1.0 and possibly 1.5 allows remote attackers to bypass authentication and gain administrative access by sexigla · absolute news feed · CWE-287 | Yüksek7,5 | — | %2,5 | 14 Tem 2009 |
31İzleyin | CVE-2009-1504Kavram kanıtı | Absolute Form Processor XE 1.5 allows remote attackers to bypass authentication and gain administrative access by setting the xlaAFPadmin coxigla · absolute control panel xe · CWE-287 | Yüksek7,5 | — | %2,4 | 1 May 2009 |
30İzleyin | CVE-2008-2765İstismar yok | SQL injection vulnerability in gallery.asp in Xigla Absolute Image Gallery XE allows remote attackers to execute arbitrary SQL commands via xigla · absolute image gallery xe · CWE-89 | Yüksek7,5 | — | %1,2 | 18 Haz 2008 |
30İzleyin | CVE-2007-1469Kavram kanıtı | SQL injection vulnerability in gallery.asp in Absolute Image Gallery 2.0 allows remote attackers to execute arbitrary SQL commands via the cxigla · absolute image gallery xe · CWE-89 | Yüksek7,5 | — | %1,2 | 16 Mar 2007 |
30İzleyin | CVE-2007-6291İstismar yok | SQL injection vulnerability in abm.aspx in Xigla Absolute Banner Manager .NET 4.0 allows remote attackers to execute arbitrary SQL commands xigla · absolute banner manager.net · CWE-89 | Yüksek7,5 | — | %1,1 | 10 Ara 2007 |
30İzleyin | CVE-2008-4569Kavram kanıtı | SQL injection vulnerability in xlacomments.asp in XIGLA Software Absolute Poll Manager XE 4.1 allows remote attackers to execute arbitrary Sxigla · absolute poll manager xe · CWE-89 | Yüksek7,5 | — | %1,0 | 15 Eki 2008 |
26İzleyin | CVE-2008-2760İstismar yok | SQL injection vulnerability in searchbanners.asp in Xigla Absolute Banner Manager XE 2.0 allows remote authenticated administrators to execuxigla · absolute banner manager · CWE-89 | Orta6,5 | — | %1,2 | 18 Haz 2008 |
26İzleyin | CVE-2008-2757İstismar yok | SQL injection vulnerability in search.asp in Xigla Absolute News Manager XE 3.2 allows remote authenticated administrators to execute arbitrxigla · absolute news manager xe · CWE-89 | Orta6,5 | — | %1,2 | 18 Haz 2008 |
26İzleyin | CVE-2008-2763İstismar yok | SQL injection vulnerability in search.asp in Xigla Absolute Live Support XE 5.1 allows remote authenticated administrators to execute arbitrxigla · absolute live support xe · CWE-89 | Orta6,5 | — | %1,0 | 18 Haz 2008 |
26İzleyin | CVE-2008-2762İstismar yok | SQL injection vulnerability in search.asp in Xigla Absolute Form Processor XE 4.0 allows remote authenticated administrators to execute arbixigla · absolute form processor xe · CWE-89 | Orta6,5 | — | %1,0 | 18 Haz 2008 |
26İzleyin | CVE-2008-2767İstismar yok | SQL injection vulnerability in search.asp in Xigla Poll Manager XE allows remote authenticated users with administrator role privileges to exigla · absolute poll manager xe · CWE-89 | Orta6,5 | — | %1,0 | 18 Haz 2008 |
23İzleyin | CVE-2007-6268Kavram kanıtı | Directory traversal vulnerability in pages/default.aspx in Absolute News Manager.NET 5.1 allows remote attackers to read arbitrary files viaxigla · absolute news manager.net · CWE-22 | Orta5,0 | — | %8,4 | 7 Ara 2007 |
21İzleyin | CVE-2007-6271Kavram kanıtı | Absolute News Manager.NET 5.1 allows remote attackers to obtain sensitive information via a direct request to getpath.aspx, which reveals thxigla · absolute news manager.net · CWE-20 | Orta5,0 | — | %2,7 | 7 Ara 2007 |
18İzleyin | CVE-2007-6270Kavram kanıtı | Multiple cross-site scripting (XSS) vulnerabilities in Absolute News Manager.NET 5.1 allow remote attackers to inject arbitrary web script oxigla · absolute news manager.net · CWE-79 | Orta4,3 | — | %2,3 | 7 Ara 2007 |
- CVE-2007-626931İzleyin
Multiple SQL injection vulnerabilities in xlaabsolutenm.aspx in Absolute News Manager.NET 5.1 allow remote attackers to execute arbitrary SQ
YüksekCVSS 7,5Kavram kanıtıEPSS %3xigla · absolute news manager.net7 Ara 2007
- CVE-2008-685731İzleyin
Absolute Podcast .NET 1.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain v
YüksekCVSS 7,5Kavram kanıtıEPSS %3xigla · absolute podcast.net14 Tem 2009
- CVE-2008-685431İzleyin
Xigla Software Absolute FAQ Manager.NET 6.0 allows remote attackers to bypass authentication and gain administrative access by setting a coo
YüksekCVSS 7,5Kavram kanıtıEPSS %3xigla · absolute faq manager .net14 Tem 2009
- CVE-2008-685631İzleyin
Xigla Software Absolute News Manager.NET 5.1 allows remote attackers to bypass authentication and gain administrative access by setting a co
YüksekCVSS 7,5Kavram kanıtıEPSS %3xigla · absolute news manager.net14 Tem 2009
- CVE-2008-686031İzleyin
Xigla Software Absolute Poll Manager XE 4.1 allows remote attackers to bypass authentication and gain administrative access by setting a coo
YüksekCVSS 7,5Kavram kanıtıEPSS %3xigla · absolute poll manager xe14 Tem 2009
- CVE-2008-685931İzleyin
Xigla Software Absolute Control Panel XE 1.5 allows remote attackers to bypass authentication and gain administrative access by setting a co
YüksekCVSS 7,5Kavram kanıtıEPSS %3xigla · absolute control panel xe14 Tem 2009
- CVE-2008-686431İzleyin
Xigla Software Absolute Live Support .NET 5.1 allows remote attackers to bypass authentication and gain administrative access by setting a c
YüksekCVSS 7,5Kavram kanıtıEPSS %3xigla · absolute live support .net14 Tem 2009
- CVE-2008-686331İzleyin
Xigla Software Absolute Form Processor .NET 4.0 allows remote attackers to bypass authentication and gain administrative access by setting a
YüksekCVSS 7,5Kavram kanıtıEPSS %3xigla · absolute form processor.net14 Tem 2009
- CVE-2008-686231İzleyin
Absolute Content Rotator 6.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certai
YüksekCVSS 7,5Kavram kanıtıEPSS %3xigla · absolute content rotator14 Tem 2009
- CVE-2008-686131İzleyin
Xigla Software Absolute Newsletter 6.0 and 6.1 allows remote attackers to bypass authentication and gain administrative access by setting a
YüksekCVSS 7,5Kavram kanıtıEPSS %3xigla · absolute newsletter14 Tem 2009
- CVE-2008-685831İzleyin
Absolute Banner Manager .NET 4.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a ce
YüksekCVSS 7,5Kavram kanıtıEPSS %3xigla · absolute banner manager.net14 Tem 2009
- CVE-2008-685531İzleyin
Xigla Software Absolute News Feed 1.0 and possibly 1.5 allows remote attackers to bypass authentication and gain administrative access by se
YüksekCVSS 7,5Kavram kanıtıEPSS %3xigla · absolute news feed14 Tem 2009
- CVE-2009-150431İzleyin
Absolute Form Processor XE 1.5 allows remote attackers to bypass authentication and gain administrative access by setting the xlaAFPadmin co
YüksekCVSS 7,5Kavram kanıtıEPSS %2xigla · absolute control panel xe1 May 2009
- CVE-2008-276530İzleyin
SQL injection vulnerability in gallery.asp in Xigla Absolute Image Gallery XE allows remote attackers to execute arbitrary SQL commands via
YüksekCVSS 7,5İstismar yokEPSS %1xigla · absolute image gallery xe18 Haz 2008
- CVE-2007-146930İzleyin
SQL injection vulnerability in gallery.asp in Absolute Image Gallery 2.0 allows remote attackers to execute arbitrary SQL commands via the c
YüksekCVSS 7,5Kavram kanıtıEPSS %1xigla · absolute image gallery xe16 Mar 2007
- CVE-2007-629130İzleyin
SQL injection vulnerability in abm.aspx in Xigla Absolute Banner Manager .NET 4.0 allows remote attackers to execute arbitrary SQL commands
YüksekCVSS 7,5İstismar yokEPSS %1xigla · absolute banner manager.net10 Ara 2007
- CVE-2008-456930İzleyin
SQL injection vulnerability in xlacomments.asp in XIGLA Software Absolute Poll Manager XE 4.1 allows remote attackers to execute arbitrary S
YüksekCVSS 7,5Kavram kanıtıEPSS %1xigla · absolute poll manager xe15 Eki 2008
- CVE-2008-276026İzleyin
SQL injection vulnerability in searchbanners.asp in Xigla Absolute Banner Manager XE 2.0 allows remote authenticated administrators to execu
OrtaCVSS 6,5İstismar yokEPSS %1xigla · absolute banner manager18 Haz 2008
- CVE-2008-275726İzleyin
SQL injection vulnerability in search.asp in Xigla Absolute News Manager XE 3.2 allows remote authenticated administrators to execute arbitr
OrtaCVSS 6,5İstismar yokEPSS %1xigla · absolute news manager xe18 Haz 2008
- CVE-2008-276326İzleyin
SQL injection vulnerability in search.asp in Xigla Absolute Live Support XE 5.1 allows remote authenticated administrators to execute arbitr
OrtaCVSS 6,5İstismar yokEPSS %1xigla · absolute live support xe18 Haz 2008
- CVE-2008-276226İzleyin
SQL injection vulnerability in search.asp in Xigla Absolute Form Processor XE 4.0 allows remote authenticated administrators to execute arbi
OrtaCVSS 6,5İstismar yokEPSS %1xigla · absolute form processor xe18 Haz 2008
- CVE-2008-276726İzleyin
SQL injection vulnerability in search.asp in Xigla Poll Manager XE allows remote authenticated users with administrator role privileges to e
OrtaCVSS 6,5İstismar yokEPSS %1xigla · absolute poll manager xe18 Haz 2008
- CVE-2007-626823İzleyin
Directory traversal vulnerability in pages/default.aspx in Absolute News Manager.NET 5.1 allows remote attackers to read arbitrary files via
OrtaCVSS 5,0Kavram kanıtıEPSS %8xigla · absolute news manager.net7 Ara 2007
- CVE-2007-627121İzleyin
Absolute News Manager.NET 5.1 allows remote attackers to obtain sensitive information via a direct request to getpath.aspx, which reveals th
OrtaCVSS 5,0Kavram kanıtıEPSS %3xigla · absolute news manager.net7 Ara 2007
- CVE-2007-627018İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in Absolute News Manager.NET 5.1 allow remote attackers to inject arbitrary web script o
OrtaCVSS 4,3Kavram kanıtıEPSS %2xigla · absolute news manager.net7 Ara 2007