xiuno kayıtları
xiuno üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 4
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')5
- CWE-611 Improper Restriction of XML External Entity Reference1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
30İzleyin | CVE-2019-19998İstismar yok | Xiuno BBS 4.0 allows XXE via plugin/xn_wechat_public/route/token.php.xiuno · xiunobbs · CWE-611 | Yüksek7,5 | — | %1,1 | 26 Ara 2019 |
24İzleyin | CVE-2020-19914İstismar yok | Cross Site Scripting (XSS) in xiunobbs 4.0.4 allows remote attackers to execute arbitrary web script or HTML via the attachment upload functxiuno · xiunobbs · CWE-79 | Orta6,1 | — | %0,7 | 7 Eyl 2022 |
24İzleyin | CVE-2020-21496İstismar yok | A cross-site scripting (XSS) vulnerability in the component /admin/?setting-base.htm of Xiuno BBS 4.0.4 allows attackers to execute arbitrarxiuno · xiunobbs · CWE-79 | Orta6,1 | — | %0,7 | 4 Eki 2021 |
24İzleyin | CVE-2020-21494İstismar yok | A cross-site scripting (XSS) vulnerability in the component install\install.sql of Xiuno BBS 4.0.4 allows attackers to execute arbitrary webxiuno · xiunobbs · CWE-79 | Orta6,1 | — | %0,7 | 4 Eki 2021 |
24İzleyin | CVE-2020-21495İstismar yok | A cross-site scripting (XSS) vulnerability in the component /admin/?setting-base.htm of Xiuno BBS 4.0.4 allows attackers to execute arbitrarxiuno · xiunobbs · CWE-79 | Orta6,1 | — | %0,7 | 4 Eki 2021 |
24İzleyin | CVE-2018-15559İstismar yok | The editor in Xiuno BBS 4.0.4 allows stored XSS.xiuno · xiunobbs · CWE-79 | Orta6,1 | — | %0,7 | 19 Ağu 2018 |
21İzleyin | CVE-2020-21493İstismar yok | An issue in the component route\user.php of Xiuno BBS v4.0.4 allows attackers to enumerate usernames.xiuno · xiunobbs | Orta5,3 | — | %1,0 | 4 Eki 2021 |
- CVE-2019-1999830İzleyin
Xiuno BBS 4.0 allows XXE via plugin/xn_wechat_public/route/token.php.
YüksekCVSS 7,5İstismar yokEPSS %1xiuno · xiunobbs26 Ara 2019
- CVE-2020-1991424İzleyin
Cross Site Scripting (XSS) in xiunobbs 4.0.4 allows remote attackers to execute arbitrary web script or HTML via the attachment upload funct
OrtaCVSS 6,1İstismar yokEPSS %1xiuno · xiunobbs7 Eyl 2022
- CVE-2020-2149624İzleyin
A cross-site scripting (XSS) vulnerability in the component /admin/?setting-base.htm of Xiuno BBS 4.0.4 allows attackers to execute arbitrar
OrtaCVSS 6,1İstismar yokEPSS %1xiuno · xiunobbs4 Eki 2021
- CVE-2020-2149424İzleyin
A cross-site scripting (XSS) vulnerability in the component install\install.sql of Xiuno BBS 4.0.4 allows attackers to execute arbitrary web
OrtaCVSS 6,1İstismar yokEPSS %1xiuno · xiunobbs4 Eki 2021
- CVE-2020-2149524İzleyin
A cross-site scripting (XSS) vulnerability in the component /admin/?setting-base.htm of Xiuno BBS 4.0.4 allows attackers to execute arbitrar
OrtaCVSS 6,1İstismar yokEPSS %1xiuno · xiunobbs4 Eki 2021
- CVE-2018-1555924İzleyin
The editor in Xiuno BBS 4.0.4 allows stored XSS.
OrtaCVSS 6,1İstismar yokEPSS %1xiuno · xiunobbs19 Ağu 2018
- CVE-2020-2149321İzleyin
An issue in the component route\user.php of Xiuno BBS v4.0.4 allows attackers to enumerate usernames.
OrtaCVSS 5,3İstismar yokEPSS %1xiuno · xiunobbs4 Eki 2021