flashtux records
4 published records for vendor flashtux.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Recurring classes
- CWE-20 Improper Input Validation3
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
32Monitor | CVE-2012-5854No exploit | Heap-based buffer overflow in WeeChat 0.3.6 through 0.3.9 allows remote attackers to cause a denial of service (crash or hang) and possibly flashtux · weechat · CWE-119 | High7.5 | — | 5.5% | Nov 19, 2012 |
31Monitor | CVE-2012-5534No exploit | The hook_process function in the plugin API for WeeChat 0.3.0 through 0.3.9.1 allows remote attackers to execute arbitrary commands via shelflashtux · weechat · CWE-20 | High7.5 | — | 4.4% | Dec 3, 2012 |
23Monitor | CVE-2011-1428No exploit | Wee Enhanced Environment for Chat (aka WeeChat) 0.3.4 and earlier does not properly verify that the server hostname matches the domain name flashtux · weechat · CWE-20 | Medium5.8 | — | 1.1% | Mar 16, 2011 |
21Monitor | CVE-2009-0661No exploit | Wee Enhanced Environment for Chat (WeeChat) 0.2.6 allows remote attackers to cause a denial of service (crash) via an IRC PRIVMSG command coflashtux · weechat · CWE-20 | Medium5.0 | — | 3.1% | Mar 19, 2009 |
- CVE-2012-585432Monitor
Heap-based buffer overflow in WeeChat 0.3.6 through 0.3.9 allows remote attackers to cause a denial of service (crash or hang) and possibly
HighCVSS 7.5No exploitEPSS 6%flashtux · weechatNov 19, 2012
- CVE-2012-553431Monitor
The hook_process function in the plugin API for WeeChat 0.3.0 through 0.3.9.1 allows remote attackers to execute arbitrary commands via shel
HighCVSS 7.5No exploitEPSS 4%flashtux · weechatDec 3, 2012
- CVE-2011-142823Monitor
Wee Enhanced Environment for Chat (aka WeeChat) 0.3.4 and earlier does not properly verify that the server hostname matches the domain name
MediumCVSS 5.8No exploitEPSS 1%flashtux · weechatMar 16, 2011
- CVE-2009-066121Monitor
Wee Enhanced Environment for Chat (WeeChat) 0.2.6 allows remote attackers to cause a denial of service (crash) via an IRC PRIVMSG command co
MediumCVSS 5.0No exploitEPSS 3%flashtux · weechatMar 19, 2009