Записи amarok
5 опубликованных записей вендора amarok.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 80 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-189 Numeric Errors1
- CWE-20 Improper Input Validation1
- CWE-59 Improper Link Resolution Before File Access ('Link Following')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2009-0135Эксплойта нет | Multiple integer overflows in the Audible::Tag::readTag function in metadata/audible/audibletag.cpp in Amarok 1.4.10 through 2.0.1 allow remamarok · amarok · CWE-119 | Критическая9,3 | — | 6,9 % | 16 янв. 2009 г. |
39Наблюдать | CVE-2009-0136Эксплойта нет | Multiple array index errors in the Audible::Tag::readTag function in metadata/audible/audibletag.cpp in Amarok 1.4.10 through 2.0.1 allow reamarok · amarok · CWE-189 | Критическая9,3 | — | 6,7 % | 16 янв. 2009 г. |
31Наблюдать | CVE-2006-6979Эксплойта нет | The ruby handlers in the Magnatune component in Amarok do not properly quote text in certain contexts, probably including construction of anamarok · amarok · CWE-20 | Высокая7,5 | — | 2,4 % | 8 февр. 2007 г. |
30Наблюдать | CVE-2005-2029Эксплойта нет | amaroK Web Frontend 1.3 stores the globals.inc file under the web root without a .php extension and insufficient access control, which allowamarok · web frontend | Высокая7,5 | — | 1,3 % | 17 июн. 2005 г. |
13Наблюдать | CVE-2008-3699Эксплойта нет | The MagnatuneBrowser::listDownloadComplete function in magnatunebrowser/magnatunebrowser.cpp in Amarok before 1.4.10 allows local users to oamarok · amarok · CWE-59 | Низкая3,3 | — | 0,4 % | 14 авг. 2008 г. |
- CVE-2009-013539Наблюдать
Multiple integer overflows in the Audible::Tag::readTag function in metadata/audible/audibletag.cpp in Amarok 1.4.10 through 2.0.1 allow rem
КритическаяCVSS 9,3Эксплойта нетEPSS 7 %amarok · amarok16 янв. 2009 г.
- CVE-2009-013639Наблюдать
Multiple array index errors in the Audible::Tag::readTag function in metadata/audible/audibletag.cpp in Amarok 1.4.10 through 2.0.1 allow re
КритическаяCVSS 9,3Эксплойта нетEPSS 7 %amarok · amarok16 янв. 2009 г.
- CVE-2006-697931Наблюдать
The ruby handlers in the Magnatune component in Amarok do not properly quote text in certain contexts, probably including construction of an
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %amarok · amarok8 февр. 2007 г.
- CVE-2005-202930Наблюдать
amaroK Web Frontend 1.3 stores the globals.inc file under the web root without a .php extension and insufficient access control, which allow
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %amarok · web frontend17 июн. 2005 г.
- CVE-2008-369913Наблюдать
The MagnatuneBrowser::listDownloadComplete function in magnatunebrowser/magnatunebrowser.cpp in Amarok before 1.4.10 allows local users to o
НизкаяCVSS 3,3Эксплойта нетEPSS 0 %amarok · amarok14 авг. 2008 г.