zingbox kayıtları
zingbox üreticisine ait 11 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-798 Use of Hard-coded Credentials2
- CWE-290 Authentication Bypass by Spoofing1
- CWE-306 Missing Authentication for Critical Function1
- CWE-312 Cleartext Storage of Sensitive Information1
- CWE-346 Origin Validation Error1
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
11 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2019-1584İstismar yok | A security vulnerability exists in Zingbox Inspector version 1.293 and earlier, that allows for remote code execution if the Inspector were zingbox · inspector · CWE-77 | Kritik9,8 | — | %2,8 | 9 Eki 2019 |
39İzleyin | CVE-2019-15019İstismar yok | A security vulnerability exists in the Zingbox Inspector versions 1.294 and earlier, that could allow an attacker to supply an invalid softwzingbox · inspector · CWE-20 | Kritik9,8 | — | %1,5 | 9 Eki 2019 |
39İzleyin | CVE-2019-15020İstismar yok | A security vulnerability exists in the Zingbox Inspector versions 1.293 and earlier, that could allow an attacker to supply an invalid softwzingbox · inspector · CWE-346 | Kritik9,8 | — | %0,9 | 9 Eki 2019 |
36İzleyin | CVE-2019-15014İstismar yok | A command injection vulnerability exists in the Zingbox Inspector versions 1.286 and earlier, that allows for an authenticated user to execuzingbox · inspector · CWE-78 | Yüksek8,8 | — | %2,3 | 9 Eki 2019 |
35İzleyin | CVE-2019-15016İstismar yok | An SQL injection vulnerability exists in the management interface of Zingbox Inspector versions 1.288 and earlier, that allows for unsanitizzingbox · inspector · CWE-89 | Yüksek8,8 | — | %1,2 | 9 Eki 2019 |
33İzleyin | CVE-2019-15017İstismar yok | The SSH service is enabled on the Zingbox Inspector versions 1.294 and earlier, exposing SSH to the local network.zingbox · inspector · CWE-798 | Yüksek8,4 | — | %0,4 | 9 Eki 2019 |
33İzleyin | CVE-2019-15015İstismar yok | In the Zingbox Inspector, versions 1.294 and earlier, hardcoded credentials for root and inspector user accounts are present in the system szingbox · inspector · CWE-798 | Yüksek8,4 | — | %0,4 | 9 Eki 2019 |
30İzleyin | CVE-2019-15018İstismar yok | A security vulnerability exists in the Zingbox Inspector versions 1.280 and earlier, where authentication is not required when binding the Izingbox · inspector · CWE-306 | Yüksek7,5 | — | %1,2 | 9 Eki 2019 |
30İzleyin | CVE-2019-15022İstismar yok | A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that allows for the Inspector to be susceptible to ARP spoozingbox · inspector · CWE-290 | Yüksek7,5 | — | %1,1 | 9 Eki 2019 |
30İzleyin | CVE-2019-15023İstismar yok | A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that results in passwords for 3rd party integrations being zingbox · inspector · CWE-312 | Yüksek7,5 | — | %0,8 | 9 Eki 2019 |
21İzleyin | CVE-2019-15021İstismar yok | A security vulnerability exists in the Zingbox Inspector versions 1.294 and earlier, that can allow an attacker to easily identify instanceszingbox · inspector · CWE-918 | Orta5,3 | — | %1,0 | 9 Eki 2019 |
- CVE-2019-158440Planlayın
A security vulnerability exists in Zingbox Inspector version 1.293 and earlier, that allows for remote code execution if the Inspector were
KritikCVSS 9,8İstismar yokEPSS %3zingbox · inspector9 Eki 2019
- CVE-2019-1501939İzleyin
A security vulnerability exists in the Zingbox Inspector versions 1.294 and earlier, that could allow an attacker to supply an invalid softw
KritikCVSS 9,8İstismar yokEPSS %1zingbox · inspector9 Eki 2019
- CVE-2019-1502039İzleyin
A security vulnerability exists in the Zingbox Inspector versions 1.293 and earlier, that could allow an attacker to supply an invalid softw
KritikCVSS 9,8İstismar yokEPSS %1zingbox · inspector9 Eki 2019
- CVE-2019-1501436İzleyin
A command injection vulnerability exists in the Zingbox Inspector versions 1.286 and earlier, that allows for an authenticated user to execu
YüksekCVSS 8,8İstismar yokEPSS %2zingbox · inspector9 Eki 2019
- CVE-2019-1501635İzleyin
An SQL injection vulnerability exists in the management interface of Zingbox Inspector versions 1.288 and earlier, that allows for unsanitiz
YüksekCVSS 8,8İstismar yokEPSS %1zingbox · inspector9 Eki 2019
- CVE-2019-1501733İzleyin
The SSH service is enabled on the Zingbox Inspector versions 1.294 and earlier, exposing SSH to the local network.
YüksekCVSS 8,4İstismar yokEPSS %0zingbox · inspector9 Eki 2019
- CVE-2019-1501533İzleyin
In the Zingbox Inspector, versions 1.294 and earlier, hardcoded credentials for root and inspector user accounts are present in the system s
YüksekCVSS 8,4İstismar yokEPSS %0zingbox · inspector9 Eki 2019
- CVE-2019-1501830İzleyin
A security vulnerability exists in the Zingbox Inspector versions 1.280 and earlier, where authentication is not required when binding the I
YüksekCVSS 7,5İstismar yokEPSS %1zingbox · inspector9 Eki 2019
- CVE-2019-1502230İzleyin
A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that allows for the Inspector to be susceptible to ARP spoo
YüksekCVSS 7,5İstismar yokEPSS %1zingbox · inspector9 Eki 2019
- CVE-2019-1502330İzleyin
A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that results in passwords for 3rd party integrations being
YüksekCVSS 7,5İstismar yokEPSS %1zingbox · inspector9 Eki 2019
- CVE-2019-1502121İzleyin
A security vulnerability exists in the Zingbox Inspector versions 1.294 and earlier, that can allow an attacker to easily identify instances
OrtaCVSS 5,3İstismar yokEPSS %1zingbox · inspector9 Eki 2019