yuba kayıtları
yuba üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-601 URL Redirection to Untrusted Site ('Open Redirect')1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
35İzleyin | CVE-2022-34937İstismar yok | Yuba u5cms v8.3.5 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component savepage.php.yuba · u5cms · CWE-352 | Yüksek8,8 | — | %0,8 | 2 Ağu 2022 |
31İzleyin | CVE-2015-1576Kavram kanıtı | Multiple SQL injection vulnerabilities in u5CMS before 3.9.4 allow remote attackers to execute arbitrary SQL commands via the name parameteryuba · u5cms · CWE-89 | Yüksek7,5 | — | %2,1 | 11 Şub 2015 |
27İzleyin | CVE-2015-1577Kavram kanıtı | Directory traversal vulnerability in u5admin/deletefile.php in u5CMS before 3.9.4 allows remote attackers to write to arbitrary files via a yuba · u5cms · CWE-22 | Orta6,4 | — | %7,3 | 11 Şub 2015 |
25İzleyin | CVE-2015-1578Kavram kanıtı | Multiple open redirect vulnerabilities in u5CMS before 3.9.4 allow remote attackers to redirect users to arbitrary web sites and conduct phiyuba · u5cms | Orta5,8 | — | %7,2 | 11 Şub 2015 |
25İzleyin | CVE-2022-32444Kavram kanıtı | An issue was discovered in u5cms verion 8.3.5 There is a URL redirection vulnerability that can cause a user's browser to be redirected to ayuba · u5cms · CWE-601 | Orta6,1 | — | %2,4 | 17 Haz 2022 |
24İzleyin | CVE-2022-32442İstismar yok | u5cms version 8.3.5 is vulnerable to Cross Site Scripting (XSS).yuba · u5cms · CWE-79 | Orta6,1 | — | %0,8 | 17 Haz 2022 |
18İzleyin | CVE-2015-1575Kavram kanıtı | Multiple cross-site scripting (XSS) vulnerabilities in u5CMS before 3.9.4 allow remote attackers to inject arbitrary web script or HTML via yuba · u5cms · CWE-79 | Orta4,3 | — | %3,3 | 11 Şub 2015 |
- CVE-2022-3493735İzleyin
Yuba u5cms v8.3.5 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component savepage.php.
YüksekCVSS 8,8İstismar yokEPSS %1yuba · u5cms2 Ağu 2022
- CVE-2015-157631İzleyin
Multiple SQL injection vulnerabilities in u5CMS before 3.9.4 allow remote attackers to execute arbitrary SQL commands via the name parameter
YüksekCVSS 7,5Kavram kanıtıEPSS %2yuba · u5cms11 Şub 2015
- CVE-2015-157727İzleyin
Directory traversal vulnerability in u5admin/deletefile.php in u5CMS before 3.9.4 allows remote attackers to write to arbitrary files via a
OrtaCVSS 6,4Kavram kanıtıEPSS %7yuba · u5cms11 Şub 2015
- CVE-2015-157825İzleyin
Multiple open redirect vulnerabilities in u5CMS before 3.9.4 allow remote attackers to redirect users to arbitrary web sites and conduct phi
OrtaCVSS 5,8Kavram kanıtıEPSS %7yuba · u5cms11 Şub 2015
- CVE-2022-3244425İzleyin
An issue was discovered in u5cms verion 8.3.5 There is a URL redirection vulnerability that can cause a user's browser to be redirected to a
OrtaCVSS 6,1Kavram kanıtıEPSS %2yuba · u5cms17 Haz 2022
- CVE-2022-3244224İzleyin
u5cms version 8.3.5 is vulnerable to Cross Site Scripting (XSS).
OrtaCVSS 6,1İstismar yokEPSS %1yuba · u5cms17 Haz 2022
- CVE-2015-157518İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in u5CMS before 3.9.4 allow remote attackers to inject arbitrary web script or HTML via
OrtaCVSS 4,3Kavram kanıtıEPSS %3yuba · u5cms11 Şub 2015