atheme kayıtları
atheme üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %66,7
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-284 Improper Access Control1
- CWE-287 Improper Authentication1
- CWE-401 Missing Release of Memory after Effective Lifetime1
- CWE-772 Missing Release of Resource after Effective Lifetime1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
37İzleyin | CVE-2022-24976İstismar yok | Atheme IRC Services before 7.2.12, when used in conjunction with InspIRCd, allows authentication bypass by ending an IRC handshake at a certatheme · atheme · CWE-287 | Kritik9,1 | — | %1,8 | 14 Şub 2022 |
31İzleyin | CVE-2016-4478İstismar yok | Buffer overflow in the xmlrpc_char_encode function in modules/transport/xmlrpc/xmlrpclib.c in Atheme before 7.2.7 allows remote attackers toatheme · atheme · CWE-119 | Yüksek7,5 | — | %2,3 | 13 Haz 2016 |
31İzleyin | CVE-2014-9773İstismar yok | modules/chanserv/flags.c in Atheme before 7.2.7 allows remote attackers to modify the Anope FLAGS behavior by registering and dropping the (atheme · atheme · CWE-284 | Yüksek7,5 | — | %2,0 | 13 Haz 2016 |
31İzleyin | CVE-2017-6384İstismar yok | Memory leak in the login_user function in saslserv/main.c in saslserv/main.so in Atheme 7.2.7 allows a remote unauthenticated attacker to coatheme · atheme · CWE-772 | Yüksek7,5 | — | %2,0 | 2 Mar 2017 |
30İzleyin | CVE-2024-27508İstismar yok | Atheme 7.2.12 contains a memory leak vulnerability in /atheme/src/crypto-benchmark/main.c.atheme · atheme · CWE-401 | Yüksek7,5 | — | %0,7 | 27 Şub 2024 |
25İzleyin | CVE-2012-1576İstismar yok | The myuser_delete function in libathemecore/account.c in Atheme 5.x before 5.2.7, 6.x before 6.0.10, and 7.x before 7.0.0-beta2 does not proatheme · atheme · CWE-264 | Orta6,0 | — | %2,0 | 1 Eki 2012 |
- CVE-2022-2497637İzleyin
Atheme IRC Services before 7.2.12, when used in conjunction with InspIRCd, allows authentication bypass by ending an IRC handshake at a cert
KritikCVSS 9,1İstismar yokEPSS %2atheme · atheme14 Şub 2022
- CVE-2016-447831İzleyin
Buffer overflow in the xmlrpc_char_encode function in modules/transport/xmlrpc/xmlrpclib.c in Atheme before 7.2.7 allows remote attackers to
YüksekCVSS 7,5İstismar yokEPSS %2atheme · atheme13 Haz 2016
- CVE-2014-977331İzleyin
modules/chanserv/flags.c in Atheme before 7.2.7 allows remote attackers to modify the Anope FLAGS behavior by registering and dropping the (
YüksekCVSS 7,5İstismar yokEPSS %2atheme · atheme13 Haz 2016
- CVE-2017-638431İzleyin
Memory leak in the login_user function in saslserv/main.c in saslserv/main.so in Atheme 7.2.7 allows a remote unauthenticated attacker to co
YüksekCVSS 7,5İstismar yokEPSS %2atheme · atheme2 Mar 2017
- CVE-2024-2750830İzleyin
Atheme 7.2.12 contains a memory leak vulnerability in /atheme/src/crypto-benchmark/main.c.
YüksekCVSS 7,5İstismar yokEPSS %1atheme · atheme27 Şub 2024
- CVE-2012-157625İzleyin
The myuser_delete function in libathemecore/account.c in Atheme 5.x before 5.2.7, 6.x before 6.0.10, and 7.x before 7.0.0-beta2 does not pro
OrtaCVSS 6,0İstismar yokEPSS %2atheme · atheme1 Eki 2012