İçeriğe atla
Noroxi

cvs kayıtları

cvs üreticisine ait 18 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
7
Düzeltme kaydı olan
%83,3
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Yıllara göre kayıt

    Çubuk: toplam · koyu kısım: CISA KEV.

    Tekrar eden sınıflar

    Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.

    CWE

    Tüm kayıtlar

    18 kayıt
    • CVE-2004-0396
      50Planlayın

      Heap-based buffer overflow in CVS 1.11.x up to 1.11.15, and 1.12.x up to 1.12.7, when using the pserver mechanism allows remote attackers to

      YüksekCVSS 7,5Kavram kanıtıEPSS %68

      cvs · cvs14 Haz 2004

    • CVE-2004-0416
      44Planlayın

      Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attacker

      KritikCVSS 10,0Kavram kanıtıEPSS %13

      cvs · cvs6 Ağu 2004

    • CVE-2012-0804
      43Planlayın

      Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a de

      KritikCVSS 10,0İstismar yokEPSS %8

      cvs · cvs29 May 2012

    • CVE-2004-0418
      42Planlayın

      serve_notify in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle empty data lines, which may allow remote att

      KritikCVSS 10,0İstismar yokEPSS %6

      cvs · cvs6 Ağu 2004

    • CVE-2004-0414
      41Planlayın

      CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle malformed "Entry" lines, which prevents a NULL terminator fr

      KritikCVSS 10,0İstismar yokEPSS %4

      cvs · cvs6 Ağu 2004

    • CVE-2003-0015
      37İzleyin

      Double-free vulnerability in CVS 1.11.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code

      YüksekCVSS 7,5Kavram kanıtıEPSS %24

      cvs · cvs7 Şub 2003

    • CVE-2005-0753
      31İzleyin

      Buffer overflow in CVS before 1.11.20 allows remote attackers to execute arbitrary code.

      YüksekCVSS 7,5İstismar yokEPSS %5

      cvs · cvs18 Nis 2005

    • CVE-2003-0977
      31İzleyin

      CVS server before 1.11.10 may allow attackers to cause the CVS server to create directories and files in the file system root directory via

      YüksekCVSS 7,5İstismar yokEPSS %2

      cvs · cvs5 Oca 2004

    • CVE-2004-1342
      31İzleyin

      CVS 1.12 and earlier on Debian GNU/Linux, when using the repouid patch, allows remote attackers to bypass authentication via the pserver acc

      YüksekCVSS 7,5İstismar yokEPSS %2

      cvs · cvs27 Nis 2005

    • CVE-2004-1471
      30İzleyin

      Format string vulnerability in wrapper.c in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16 allows remote attackers with CVSROOT commi

      YüksekCVSS 7,1Kavram kanıtıEPSS %8

      cvs · cvs31 Ara 2004

    • CVE-2000-0680
      28İzleyin

      The CVS 1.10.8 server does not properly restrict users from creating arbitrary Checkin.prog or Update.prog programs, which allows remote CVS

      YüksekCVSS 7,2Kavram kanıtıEPSS %1

      cvs · cvs20 Eki 2000

    • CVE-2004-0417
      21İzleyin

      Integer overflow in the "Max-dotdot" CVS protocol command (serve_max_dotdot) for CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may

      OrtaCVSS 5,0İstismar yokEPSS %3

      cvs · cvs6 Ağu 2004

    • CVE-2004-0405
      21İzleyin

      CVS before 1.11 allows CVS clients to read arbitrary files via ..

      OrtaCVSS 5,0İstismar yokEPSS %2

      cvs · cvs1 Haz 2004

    • CVE-2004-1343
      21İzleyin

      CVS 1.12 and earlier on Debian GNU/Linux does not properly handle when a mapping for the current repository does not exist in the cvs-repoui

      OrtaCVSS 5,0İstismar yokEPSS %2

      cvs · cvs31 Ara 2004

    • CVE-2002-0092
      21İzleyin

      CVS before 1.10.8 does not properly initialize a global variable, which allows remote attackers to cause a denial of service (server crash)

      OrtaCVSS 5,0İstismar yokEPSS %2

      cvs · cvs15 Mar 2002

    • CVE-2005-2693
      18İzleyin

      cvsbug in CVS 1.12.12 and earlier creates temporary files insecurely, which allows local users to overwrite arbitrary files and execute arbi

      OrtaCVSS 4,6İstismar yokEPSS %0

      cvs · cvs26 Ağu 2005

    • CVE-2004-0180
      11İzleyin

      The client for CVS before 1.11 allows a remote malicious CVS server to create arbitrary files using certain RCS diff files that use absolute

      DüşükCVSS 2,6İstismar yokEPSS %2

      cvs · cvs1 Haz 2004

    • CVE-2000-0679
      8İzleyin

      The CVS 1.10.8 client trusts pathnames that are provided by the CVS server, which allows the server to force the client to create arbitrary

      DüşükCVSS 2,1Kavram kanıtıEPSS %1

      cvs · cvs20 Eki 2000