ESTsoft kayıtları
estsoft üreticisine ait 17 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
- CWE-787 Out-of-bounds Write2
- CWE-823 Use of Out-of-range Pointer Offset2
- CWE-264 Permissions, Privileges, and Access Controls2
- CWE-680 Integer Overflow to Buffer Overflow2
- CWE-426 Untrusted Search Path1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
17 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2008-2702Kavram kanıtı | Directory traversal vulnerability in the FTP client in ALTools ESTsoft ALFTP 4.1 beta 2 and 5.0 allows remote FTP servers to create or overwestsoft · alftp · CWE-22 | Kritik9,3 | — | %10,7 | 13 Haz 2008 |
39İzleyin | CVE-2011-1336İstismar yok | Buffer overflow in ALZip 8.21 and earlier allows remote attackers to execute arbitrary code via a crafted mim file.estsoft · alzip · CWE-119 | Kritik9,3 | — | %5,5 | 7 Tem 2011 |
38İzleyin | CVE-2012-0315İstismar yok | Untrusted search path vulnerability in ALFTP before 5.31 allows local users to gain privileges via a Trojan horse executable file in a direcestsoft · alftp | Kritik9,3 | — | %2,2 | 22 Şub 2012 |
32İzleyin | CVE-2017-11323İstismar yok | Stack-based buffer overflow in ESTsoft ALZip 8.51 and earlier allows remote attackers to execute arbitrary code via a crafted MS-DOS device estsoft · alzip · CWE-119 | Yüksek7,8 | — | %3,0 | 19 Ağu 2017 |
31İzleyin | CVE-2019-12807İstismar yok | Alzip 10.83 and earlier version contains a stack-based buffer overflow vulnerability, caused by improper bounds checking during the parsing estsoft · alzip · CWE-119 | Yüksek7,8 | — | %1,6 | 13 Ağu 2019 |
31İzleyin | CVE-2018-5196İstismar yok | Alzip Stack Overflow Vulnerabilityestsoft · alzip · CWE-787 | Yüksek7,8 | — | %1,4 | 21 Ara 2018 |
31İzleyin | CVE-2019-12810İstismar yok | A memory corruption vulnerability exists in the .PSD parsing functionality of ALSee v5.3 ~ v8.39.estsoft · alsee · CWE-787 | Yüksek7,8 | — | %1,2 | 30 Ağu 2019 |
31İzleyin | CVE-2022-32543İstismar yok | An integer overflow vulnerability exists in the way ESTsoft Alyac 2.5.8.544 parses OLE files.estsoft · alyac · CWE-680 | Yüksek7,8 | — | %0,5 | 5 Ağu 2022 |
31İzleyin | CVE-2022-29886İstismar yok | An integer overflow vulnerability exists in the way ESTsoft Alyac 2.5.8.544 parses OLE files.estsoft · alyac · CWE-680 | Yüksek7,8 | — | %0,5 | 5 Ağu 2022 |
31İzleyin | CVE-2018-10027İstismar yok | ESTsoft ALZip before 10.76 allows local users to execute arbitrary code via creating a malicious .DLL file and installing it in a specific destsoft · alzip · CWE-426 | Yüksek7,8 | — | %0,4 | 17 May 2018 |
31İzleyin | CVE-2019-12808İstismar yok | ALTOOLS update service 18.1 and earlier versions contains a local privilege escalation vulnerability due to insecure permission.estsoft · altools · CWE-264 | Yüksek7,8 | — | %0,4 | 13 Ağu 2019 |
27İzleyin | CVE-2006-2899Kavram kanıtı | Unspecified vulnerability in ESTsoft InternetDISK versions before 2006/04/20 allows remote authenticated users to execute arbitrary code, poestsoft · internetdisk | Orta6,5 | — | %3,8 | 7 Haz 2006 |
27İzleyin | CVE-2010-5211İstismar yok | Untrusted search path vulnerability in ALSee 6.20.0.1 allows local users to gain privileges via a Trojan horse patchani.dll file in the currestsoft · alsee | Orta6,9 | — | %0,4 | 6 Eyl 2012 |
22İzleyin | CVE-2022-21147İstismar yok | An out of bounds read vulnerability exists in the malware scan functionality of ESTsoft Alyac 2.5.7.7.estsoft · alyac · CWE-823 | Orta5,5 | — | %0,7 | 12 May 2022 |
22İzleyin | CVE-2022-43665İstismar yok | A denial of service vulnerability exists in the malware scan functionality of ESTsoft Alyac 2.5.8.645.estsoft · alyac · CWE-823 | Orta5,5 | — | %0,3 | 2 Şub 2023 |
21İzleyin | CVE-2005-3194İstismar yok | Multiple buffer overflows in ALZip 6.12 (Korean), 6.1 (International), and 5.52 (English) allow remote attackers to execute arbitrary code vestsoft · alzip | Orta5,1 | — | %3,1 | 14 Eki 2005 |
18İzleyin | CVE-2014-8494İstismar yok | ESTsoft ALUpdate 8.5.1.0.0 uses weak permissions (Users: Full Control) for the (1) AlUpdate folder and (2) AlUpdate.exe, which allows local estsoft · alupdate · CWE-264 | Orta4,6 | — | %0,5 | 3 Kas 2014 |
- CVE-2008-270240Planlayın
Directory traversal vulnerability in the FTP client in ALTools ESTsoft ALFTP 4.1 beta 2 and 5.0 allows remote FTP servers to create or overw
KritikCVSS 9,3Kavram kanıtıEPSS %11estsoft · alftp13 Haz 2008
- CVE-2011-133639İzleyin
Buffer overflow in ALZip 8.21 and earlier allows remote attackers to execute arbitrary code via a crafted mim file.
KritikCVSS 9,3İstismar yokEPSS %6estsoft · alzip7 Tem 2011
- CVE-2012-031538İzleyin
Untrusted search path vulnerability in ALFTP before 5.31 allows local users to gain privileges via a Trojan horse executable file in a direc
KritikCVSS 9,3İstismar yokEPSS %2estsoft · alftp22 Şub 2012
- CVE-2017-1132332İzleyin
Stack-based buffer overflow in ESTsoft ALZip 8.51 and earlier allows remote attackers to execute arbitrary code via a crafted MS-DOS device
YüksekCVSS 7,8İstismar yokEPSS %3estsoft · alzip19 Ağu 2017
- CVE-2019-1280731İzleyin
Alzip 10.83 and earlier version contains a stack-based buffer overflow vulnerability, caused by improper bounds checking during the parsing
YüksekCVSS 7,8İstismar yokEPSS %2estsoft · alzip13 Ağu 2019
- CVE-2018-519631İzleyin
Alzip Stack Overflow Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %1estsoft · alzip21 Ara 2018
- CVE-2019-1281031İzleyin
A memory corruption vulnerability exists in the .PSD parsing functionality of ALSee v5.3 ~ v8.39.
YüksekCVSS 7,8İstismar yokEPSS %1estsoft · alsee30 Ağu 2019
- CVE-2022-3254331İzleyin
An integer overflow vulnerability exists in the way ESTsoft Alyac 2.5.8.544 parses OLE files.
YüksekCVSS 7,8İstismar yokEPSS %0estsoft · alyac5 Ağu 2022
- CVE-2022-2988631İzleyin
An integer overflow vulnerability exists in the way ESTsoft Alyac 2.5.8.544 parses OLE files.
YüksekCVSS 7,8İstismar yokEPSS %0estsoft · alyac5 Ağu 2022
- CVE-2018-1002731İzleyin
ESTsoft ALZip before 10.76 allows local users to execute arbitrary code via creating a malicious .DLL file and installing it in a specific d
YüksekCVSS 7,8İstismar yokEPSS %0estsoft · alzip17 May 2018
- CVE-2019-1280831İzleyin
ALTOOLS update service 18.1 and earlier versions contains a local privilege escalation vulnerability due to insecure permission.
YüksekCVSS 7,8İstismar yokEPSS %0estsoft · altools13 Ağu 2019
- CVE-2006-289927İzleyin
Unspecified vulnerability in ESTsoft InternetDISK versions before 2006/04/20 allows remote authenticated users to execute arbitrary code, po
OrtaCVSS 6,5Kavram kanıtıEPSS %4estsoft · internetdisk7 Haz 2006
- CVE-2010-521127İzleyin
Untrusted search path vulnerability in ALSee 6.20.0.1 allows local users to gain privileges via a Trojan horse patchani.dll file in the curr
OrtaCVSS 6,9İstismar yokEPSS %0estsoft · alsee6 Eyl 2012
- CVE-2022-2114722İzleyin
An out of bounds read vulnerability exists in the malware scan functionality of ESTsoft Alyac 2.5.7.7.
OrtaCVSS 5,5İstismar yokEPSS %1estsoft · alyac12 May 2022
- CVE-2022-4366522İzleyin
A denial of service vulnerability exists in the malware scan functionality of ESTsoft Alyac 2.5.8.645.
OrtaCVSS 5,5İstismar yokEPSS %0estsoft · alyac2 Şub 2023
- CVE-2005-319421İzleyin
Multiple buffer overflows in ALZip 6.12 (Korean), 6.1 (International), and 5.52 (English) allow remote attackers to execute arbitrary code v
OrtaCVSS 5,1İstismar yokEPSS %3estsoft · alzip14 Eki 2005
- CVE-2014-849418İzleyin
ESTsoft ALUpdate 8.5.1.0.0 uses weak permissions (Users: Full Control) for the (1) AlUpdate folder and (2) AlUpdate.exe, which allows local
OrtaCVSS 4,6İstismar yokEPSS %0estsoft · alupdate3 Kas 2014