İçeriğe atla
Noroxi

att kayıtları

att üreticisine ait 29 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
3 · %10,3
Pre-auth RCE
8
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Bug bounty kapsamı

Ürünün üreticisi herkese açık bir programda görünüyor. Eşleşme ad üzerinden yapıldı; kapsam metnini programda doğrulayın.

Tüm kayıtlar

29 kayıt
  • CVE-2001-0168
    61Bu hafta

    Buffer overflow in AT&T WinVNC (Virtual Network Computing) server 3.3.3r7 and earlier allows remote attackers to execute arbitrary commands

    KritikCVSS 10,0SilahlaştırılmışEPSS %71

    att · winvnc3 May 2001

  • CVE-2001-0167
    45Planlayın

    Buffer overflow in AT&T WinVNC (Virtual Network Computing) client 3.3.3r7 and earlier allows remote attackers to execute arbitrary commands

    YüksekCVSS 7,6SilahlaştırılmışEPSS %51

    att · winvnc3 May 2001

  • CVE-1999-1059
    41Planlayın

    Vulnerability in rexec daemon (rexecd) in AT&T TCP/IP 4.0 for various SVR4 systems allows remote attackers to execute arbitrary commands.

    KritikCVSS 10,0İstismar yokEPSS %4

    att · svr425 Şub 1992

  • CVE-2021-21829
    40Planlayın

    A heap-based buffer overflow vulnerability exists in the XML Decompression EnumerationUncompressor::UncompressItem functionality of AT&T Lab

    KritikCVSS 9,8İstismar yokEPSS %3

    att · xmill13 Ağu 2021

  • CVE-2022-26507
    40Planlayın

    A heap-based buffer overflow exists in XML Decompression DecodeTreeBlock in AT&T Labs Xmill 0.7.

    KritikCVSS 9,8İstismar yokEPSS %2

    att · xmill14 Nis 2022

  • CVE-2021-21825
    40Planlayın

    A heap-based buffer overflow vulnerability exists in the XML Decompression PlainTextUncompressor::UncompressItem functionality of AT&T Labs’

    KritikCVSS 9,8İstismar yokEPSS %2

    att · xmill18 Ağu 2021

  • CVE-2021-21830
    40Planlayın

    A heap-based buffer overflow vulnerability exists in the XML Decompression LabelDict::Load functionality of AT&T Labs’ Xmill 0.7.

    KritikCVSS 9,8İstismar yokEPSS %2

    att · xmill13 Ağu 2021

  • CVE-2021-21828
    39İzleyin

    A heap-based buffer overflow vulnerability exists in the XML Decompression DecodeTreeBlock functionality of AT&T Labs Xmill 0.7.

    KritikCVSS 9,8İstismar yokEPSS %1

    att · xmill20 Ağu 2021

  • CVE-2021-21810
    39İzleyin

    A memory corruption vulnerability exists in the XML-parsing ParseAttribs functionality of AT&T Labs’ Xmill 0.7.

    KritikCVSS 9,8İstismar yokEPSS %1

    att · xmill17 Ağu 2021

  • CVE-2021-21811
    39İzleyin

    A memory corruption vulnerability exists in the XML-parsing CreateLabelOrAttrib functionality of AT&T Labs’ Xmill 0.7.

    KritikCVSS 9,8İstismar yokEPSS %1

    att · xmill31 Ağu 2021

  • CVE-2021-21826
    39İzleyin

    A heap-based buffer overflow vulnerability exists in the XML Decompression DecodeTreeBlock functionality of AT&T Labs Xmill 0.7.

    KritikCVSS 9,8İstismar yokEPSS %1

    att · xmill20 Ağu 2021

  • CVE-2021-21827
    39İzleyin

    A heap-based buffer overflow vulnerability exists in the XML Decompression DecodeTreeBlock functionality of AT&T Labs Xmill 0.7.

    KritikCVSS 9,8İstismar yokEPSS %1

    att · xmill20 Ağu 2021

  • CVE-2000-1164
    36İzleyin

    WinVNC installs the WinVNC3 registry key with permissions that give Special Access (read and modify) to the Everybody group, which allows us

    KritikCVSS 9,0İstismar yokEPSS %2

    att · winvnc9 Oca 2001

  • CVE-2017-14115
    33İzleyin

    The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG589 and NVG599 devices, when IP Passthrough mode is not used, configures ssh-permanent

    YüksekCVSS 8,1İstismar yokEPSS %4

    att · u-verse firmware3 Eyl 2017

  • CVE-2017-14116
    33İzleyin

    The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG599 device, when IP Passthrough mode is not used, configures WAN access to a caserver

    YüksekCVSS 8,1İstismar yokEPSS %3

    att · u-verse firmware3 Eyl 2017

  • CVE-2017-10793
    33İzleyin

    The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG589, NVG599, and unspecified other devices, when IP Passthrough mode is not used, conf

    YüksekCVSS 8,1İstismar yokEPSS %3

    att · u-verse firmware3 Eyl 2017

  • CVE-2001-1422
    31İzleyin

    WinVNC 3.3.3 and earlier generates the same challenge string for multiple connections, which allows remote attackers to bypass VNC authentic

    YüksekCVSS 7,5İstismar yokEPSS %2

    att · winvnc23 Oca 2001

  • CVE-2021-21814
    31İzleyin

    Within the function HandleFileArg the argument filepattern is under control of the user who passes it in from the command line.

    YüksekCVSS 7,8İstismar yokEPSS %0

    att · xmill13 Ağu 2021

  • CVE-2021-21813
    31İzleyin

    Within the function HandleFileArg the argument filepattern is under control of the user who passes it in from the command line.

    YüksekCVSS 7,8İstismar yokEPSS %0

    att · xmill13 Ağu 2021

  • CVE-2021-21815
    31İzleyin

    A stack-based buffer overflow vulnerability exists in the command-line-parsing HandleFileArg functionality of AT&T Labs' Xmill 0.7.

    YüksekCVSS 7,8İstismar yokEPSS %0

    att · xmill13 Ağu 2021

  • CVE-2021-21812
    31İzleyin

    A stack-based buffer overflow vulnerability exists in the command-line-parsing HandleFileArg functionality of AT&T Labs’ Xmill 0.7.

    YüksekCVSS 7,8İstismar yokEPSS %0

    att · xmill13 Ağu 2021

  • CVE-2013-7286
    30İzleyin

    MobileIron VSP < 5.9.1 and Sentry < 5.0 has a weak password obfuscation algorithm

    YüksekCVSS 7,5İstismar yokEPSS %2

    att · mobileiron sentry12 Şub 2020

  • CVE-2020-22650
    30İzleyin

    A memory leak vulnerability in sim-organizer.c of AlienVault Ossim v5 causes a denial of service (DOS) via a system crash triggered by the o

    YüksekCVSS 7,5İstismar yokEPSS %1

    att · alienvault ossim19 Tem 2021

  • CVE-2012-2980
    29İzleyin

    The Samsung and HTC onTouchEvent method implementation for Android on the T-Mobile myTouch 3G Slide, HTC Merge, Sprint EVO Shift 4G, HTC Cha

    YüksekCVSS 7,1İstismar yokEPSS %2

    htc · chacha21 Ağu 2012

  • CVE-2013-6029
    28İzleyin

    Stack-based buffer overflow in the AT&T Connect Participant Application before 9.5.51 on Windows allows remote attackers to execute arbitrar

    OrtaCVSS 6,8İstismar yokEPSS %3

    att · connect participant application4 Ara 2013