Записи 9bis
5 опубликованных записей вендора 9bis.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 40 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-787 Out-of-bounds Write2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-354 Improper Validation of Integrity Check Value1
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
51В плане | CVE-2023-48795Proof of concept | The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypasssh · ssh · CWE-354 | Средняя5,9 | — | 93,5 % | 18 дек. 2023 г. |
49В плане | CVE-2016-2563Proof of concept | Stack-based buffer overflow in the SCP command-line utility in PuTTY before 0.67 and KiTTY 0.66.6.3 and earlier allows remote servers to cau9bis · kitty · CWE-119 | Критическая9,8 | — | 34,2 % | 7 апр. 2016 г. |
32Наблюдать | CVE-2024-23749Proof of concept | KiTTY versions 0.76.1.13 and before is vulnerable to command injection via the filename variable, occurs due to insufficient input sanitizat9bis · kitty · CWE-77 | Высокая7,8 | — | 4,7 % | 9 февр. 2024 г. |
32Наблюдать | CVE-2024-25003Proof of concept | KiTTY versions 0.76.1.13 and before is vulnerable to a stack-based buffer overflow via the hostname, occurs due to insufficient bounds check9bis · kitty · CWE-787 | Высокая7,8 | — | 1,8 % | 9 февр. 2024 г. |
32Наблюдать | CVE-2024-25004Proof of concept | KiTTY versions 0.76.1.13 and before is vulnerable to a stack-based buffer overflow via the username, occurs due to insufficient bounds check9bis · kitty · CWE-787 | Высокая7,8 | — | 1,8 % | 9 февр. 2024 г. |
- CVE-2023-4879551В плане
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypas
СредняяCVSS 5,9Proof of conceptEPSS 94 %ssh · ssh18 дек. 2023 г.
- CVE-2016-256349В плане
Stack-based buffer overflow in the SCP command-line utility in PuTTY before 0.67 and KiTTY 0.66.6.3 and earlier allows remote servers to cau
КритическаяCVSS 9,8Proof of conceptEPSS 34 %9bis · kitty7 апр. 2016 г.
- CVE-2024-2374932Наблюдать
KiTTY versions 0.76.1.13 and before is vulnerable to command injection via the filename variable, occurs due to insufficient input sanitizat
ВысокаяCVSS 7,8Proof of conceptEPSS 5 %9bis · kitty9 февр. 2024 г.
- CVE-2024-2500332Наблюдать
KiTTY versions 0.76.1.13 and before is vulnerable to a stack-based buffer overflow via the hostname, occurs due to insufficient bounds check
ВысокаяCVSS 7,8Proof of conceptEPSS 2 %9bis · kitty9 февр. 2024 г.
- CVE-2024-2500432Наблюдать
KiTTY versions 0.76.1.13 and before is vulnerable to a stack-based buffer overflow via the username, occurs due to insufficient bounds check
ВысокаяCVSS 7,8Proof of conceptEPSS 2 %9bis · kitty9 февр. 2024 г.