Basic Analysis And Security Engine
Vendor:
First CVE: Oct 27, 2005 · Active for 20 years
9
Total CVEs
More Total CVEs than 86% of tracked products
1.8
Avg CVEs / Year
Higher CVE frequency than 60% of tracked products
6.1
Avg CVSS
Higher Avg CVSS than 21% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Basic Analysis And Security Engine over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 27, 2005
20 years ago
Most Recent CVE
Feb 18, 2012
5,270 days ago
CVE Severity & Scoring
Basic Analysis And Security Engine9 CVEs
44%
56%
All CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown9 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown9 (100.0%)
User Interaction
None0 (0.0%)
Unknown9 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown9 (100.0%)
Top CVEs
Signals from CVEs in this product scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2012-1198HIGH base_ag_main.php in Basic Analysis and Security Engine (BASE) 1.4.5 allows remote attackers to execute arbitrary code by uploading contents of the file with an executable extension | Feb 18, 2012 | 7.5 | 34 | NO | YES |
CVE-2012-1199HIGH Multiple PHP remote file inclusion vulnerabilities in Basic Analysis and Security Engine (BASE) 1.4.5 allow remote attackers to execute arbitrary PHP code via a URL in the (1) BASE | Feb 18, 2012 | 7.5 | 33 | NO | YES |
CVE-2005-3325HIGH Multiple SQL injection vulnerabilities in (1) acid_qry_main.php in Analysis Console for Intrusion Databases (ACID) 0.9.6b20 and (2) base_qry_main.php in Basic Analysis and Security | Oct 27, 2005 | 7.5 | 29 | NO | YES |
CVE-2007-5578HIGH Basic Analysis and Security Engine (BASE) before 1.3.8 sends a redirect to the web browser but does not exit, which allows remote attackers to bypass authentication via (1) base_ma | Oct 18, 2007 | 7.5 | 20 | NO | NO |
CVE-2009-4838HIGH SQL injection vulnerability in base_ag_common.php in Basic Analysis and Security Engine (BASE) before 1.4.3.1 allows remote attackers to execute arbitrary SQL commands via unspecif | May 6, 2010 | 7.5 | 19 | NO | NO |
CVE-2009-4839MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in Basic Analysis and Security Engine (BASE), possibly 1.4.4 and earlier, allow remote attackers to inject arbitrary web script | May 6, 2010 | 4.3 | 15 | NO | NO |
CVE-2009-4837MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in Basic Analysis and Security Engine (BASE) before 1.4.3.1 allow remote attackers to inject arbitrary web script or HTML via th | May 6, 2010 | 4.3 | 15 | NO | NO |
CVE-2005-4878MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in (1) acid_qry_main.php in Analysis Console for Intrusion Databases (ACID) 0.9.6b20 and (2) base_qry_main.php in Basic Analysis | Feb 18, 2009 | 4.3 | 14 | NO | NO |
CVE-2007-6156MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in base_qry_main.php in Base Analysis and Security Engine (BASE) before 1.3.9 allow remote attackers to inject arbitrary web scr | Nov 29, 2007 | 4.3 | 14 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (9 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
3 CVEs
33.3% of CVEs· 90th percentile
Social Chatter
Signals from CVEs in this product scope (9 CVEs).
Media Mentions
Signals from CVEs in this product scope (9 CVEs).
Top CNAs Publishing CVEs For Basic Analysis And Security Engine
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 1.4.5 | 2 | 7.5 | 4.3% | 0 | 2 |
| 1.4.3 | 1 | 4.3 | 1.1% | 0 | 0 |
| 1.3.9 | 3 | 5.4 | 1.1% | 0 | 0 |
| 1.3.8 | 3 | 5.4 | 1.1% | 0 | 0 |
| 1.3.6 | 5 | 5.6 | 1.3% | 0 | 0 |
| 1.3.5 | 4 | 5.1 | 1.1% | 0 | 0 |
| 1.2.7 | 4 | 5.1 | 1.1% | 0 | 0 |
| 1.2.6 | 4 | 5.1 | 1.1% | 0 | 0 |
| 1.2.5 | 4 | 5.1 | 1.1% | 0 | 0 |
| 1.2.4 | 4 | 5.1 | 1.1% | 0 | 0 |
| 1.2.2 | 4 | 5.1 | 1.1% | 0 | 0 |
| 1.2.1 | 4 | 5.1 | 1.1% | 0 | 0 |
| 1.2.0 | 4 | 5.1 | 1.1% | 0 | 0 |
| 1.2 | 6 | 5.4 | 1.4% | 0 | 1 |
| 1.1.4 | 4 | 5.1 | 1.1% | 0 | 0 |
| 1.1.3 | 4 | 5.1 | 1.1% | 0 | 0 |
| 1.1.2 | 4 | 5.1 | 1.1% | 0 | 0 |
| 1.1 | 4 | 5.1 | 1.1% | 0 | 0 |