cipherdyne records
4 published records for vendor cipherdyne.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-20 Improper Input Validation1
- CWE-276 Incorrect Default Permissions1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
36Monitor | CVE-2012-4434No exploit | fwknop before 2.0.3 allow remote authenticated users to cause a denial of service (server crash) or possibly execute arbitrary code.cipherdyne · fwknop · CWE-276 | High8.8 | — | 3.3% | Jan 9, 2020 |
17Monitor | CVE-2012-4435No exploit | fwknop before 2.0.3 does not properly validate IP addresses, which allows remote authenticated users to cause a denial of service (server crcipherdyne · fwknop · CWE-20 | Medium4.0 | — | 2.3% | Oct 22, 2012 |
17Monitor | CVE-2012-4436No exploit | Buffer overflow in the run_last_args function in client/fwknop.c in fwknop before 2.0.3, when processing --last, might allow local users to cipherdyne · fwknop · CWE-119 | Medium4.4 | — | 0.7% | Oct 22, 2012 |
17Monitor | CVE-2014-0039No exploit | Untrusted search path vulnerability in fwsnort before 1.6.4, when not running as root, allows local users to execute arbitrary code via a Trcipherdyne · fwsnort | Medium4.4 | — | 0.6% | Feb 7, 2014 |
- CVE-2012-443436Monitor
fwknop before 2.0.3 allow remote authenticated users to cause a denial of service (server crash) or possibly execute arbitrary code.
HighCVSS 8.8No exploitEPSS 3%cipherdyne · fwknopJan 9, 2020
- CVE-2012-443517Monitor
fwknop before 2.0.3 does not properly validate IP addresses, which allows remote authenticated users to cause a denial of service (server cr
MediumCVSS 4.0No exploitEPSS 2%cipherdyne · fwknopOct 22, 2012
- CVE-2012-443617Monitor
Buffer overflow in the run_last_args function in client/fwknop.c in fwknop before 2.0.3, when processing --last, might allow local users to
MediumCVSS 4.4No exploitEPSS 1%cipherdyne · fwknopOct 22, 2012
- CVE-2014-003917Monitor
Untrusted search path vulnerability in fwsnort before 1.6.4, when not running as root, allows local users to execute arbitrary code via a Tr
MediumCVSS 4.4No exploitEPSS 1%cipherdyne · fwsnortFeb 7, 2014