Записи freesshd
11 опубликованных записей вендора freesshd.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 2 · 18,2 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer4
- CWE-428 Unquoted Search Path or Element2
- CWE-269 Improper Privilege Management1
- CWE-287 Improper Authentication1
- CWE-404 Improper Resource Shutdown or Release1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
11 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
51В плане | CVE-2006-2407Готовый эксплойт | Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other products including (2) Freweonlydo · wodsshserver · CWE-119 | Высокая7,5 | — | 71,4 % | 16 мая 2006 г. |
49В плане | CVE-2012-6066Готовый эксплойт | freeSSHd.exe in freeSSHd through 1.2.6 allows remote attackers to bypass authentication via a crafted session, as demonstrated by an OpenSSHfreesshd · freesshd · CWE-287 | Критическая9,3 | — | 39,5 % | 4 дек. 2012 г. |
40В плане | CVE-2008-4762Proof of concept | Stack-based buffer overflow in freeSSHd 1.2.1 allows remote authenticated users to cause a denial of service (service crash) and potentiallyfreesshd · freesshd · CWE-119 | Критическая9,0 | — | 14,5 % | 27 окт. 2008 г. |
39Наблюдать | CVE-2018-9853Эксплойта нет | Insecure access control in freeSSHd version 1.3.1 allows attackers to obtain the privileges of the freesshd.exe process by leveraging the abfreesshd · freesshd · CWE-269 | Критическая9,8 | — | 1,3 % | 10 июл. 2018 г. |
38Наблюдать | CVE-2008-6899Proof of concept | Multiple buffer overflows in freeSSHd 1.2.1 allow remote authenticated users to cause a denial of service (crash) and execute arbitrary codefreesshd · freesshd · CWE-119 | Критическая9,0 | — | 5,3 % | 5 авг. 2009 г. |
36Наблюдать | CVE-2008-2573Proof of concept | Stack-based buffer overflow in SFTP in freeSSHd 1.2.1 allows remote authenticated users to execute arbitrary code via a long directory name freesshd · freesshd · CWE-119 | Высокая8,5 | — | 5,6 % | 6 июн. 2008 г. |
31Наблюдать | CVE-2024-0723Proof of concept | freeSSHd denial of servicefreesshd · freesshd · CWE-404 | Высокая7,5 | — | 3,6 % | 19 янв. 2024 г. |
31Наблюдать | CVE-2017-1000475Proof of concept | FreeSSHd 1.3.1 version is vulnerable to an Unquoted Path Service allowing local users to launch processes with elevated privileges.freesshd · freesshd · CWE-428 | Высокая7,8 | — | 0,6 % | 24 янв. 2018 г. |
31Наблюдать | CVE-2022-27052Эксплойта нет | FreeFtpd version 1.0.13 and below contains an unquoted service path vulnerability which allows local users to launch processes with elevatedfreesshd · freeftpd · CWE-428 | Высокая7,8 | — | 0,3 % | 31 мар. 2022 г. |
22Наблюдать | CVE-2008-0852Proof of concept | freeSSHd 1.2 and earlier allows remote attackers to cause a denial of service (crash) via a SSH2_MSG_NEWKEYS packet to TCP port 22, which trfreesshd · freesshd | Средняя5,0 | — | 6,2 % | 20 февр. 2008 г. |
20Наблюдать | CVE-2009-3340Эксплойта нет | Unspecified vulnerability in FreeSSHD 1.2.4 allows remote attackers to cause a denial of service via unknown vectors, as demonstrated by a cfreesshd · freesshd | Средняя5,0 | — | 1,4 % | 24 сент. 2009 г. |
- CVE-2006-240751В плане
Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other products including (2) Fre
ВысокаяCVSS 7,5Готовый эксплойтEPSS 71 %weonlydo · wodsshserver16 мая 2006 г.
- CVE-2012-606649В плане
freeSSHd.exe in freeSSHd through 1.2.6 allows remote attackers to bypass authentication via a crafted session, as demonstrated by an OpenSSH
КритическаяCVSS 9,3Готовый эксплойтEPSS 40 %freesshd · freesshd4 дек. 2012 г.
- CVE-2008-476240В плане
Stack-based buffer overflow in freeSSHd 1.2.1 allows remote authenticated users to cause a denial of service (service crash) and potentially
КритическаяCVSS 9,0Proof of conceptEPSS 14 %freesshd · freesshd27 окт. 2008 г.
- CVE-2018-985339Наблюдать
Insecure access control in freeSSHd version 1.3.1 allows attackers to obtain the privileges of the freesshd.exe process by leveraging the ab
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %freesshd · freesshd10 июл. 2018 г.
- CVE-2008-689938Наблюдать
Multiple buffer overflows in freeSSHd 1.2.1 allow remote authenticated users to cause a denial of service (crash) and execute arbitrary code
КритическаяCVSS 9,0Proof of conceptEPSS 5 %freesshd · freesshd5 авг. 2009 г.
- CVE-2008-257336Наблюдать
Stack-based buffer overflow in SFTP in freeSSHd 1.2.1 allows remote authenticated users to execute arbitrary code via a long directory name
ВысокаяCVSS 8,5Proof of conceptEPSS 6 %freesshd · freesshd6 июн. 2008 г.
- CVE-2024-072331Наблюдать
freeSSHd denial of service
ВысокаяCVSS 7,5Proof of conceptEPSS 4 %freesshd · freesshd19 янв. 2024 г.
- CVE-2017-100047531Наблюдать
FreeSSHd 1.3.1 version is vulnerable to an Unquoted Path Service allowing local users to launch processes with elevated privileges.
ВысокаяCVSS 7,8Proof of conceptEPSS 1 %freesshd · freesshd24 янв. 2018 г.
- CVE-2022-2705231Наблюдать
FreeFtpd version 1.0.13 and below contains an unquoted service path vulnerability which allows local users to launch processes with elevated
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %freesshd · freeftpd31 мар. 2022 г.
- CVE-2008-085222Наблюдать
freeSSHd 1.2 and earlier allows remote attackers to cause a denial of service (crash) via a SSH2_MSG_NEWKEYS packet to TCP port 22, which tr
СредняяCVSS 5,0Proof of conceptEPSS 6 %freesshd · freesshd20 февр. 2008 г.
- CVE-2009-334020Наблюдать
Unspecified vulnerability in FreeSSHD 1.2.4 allows remote attackers to cause a denial of service via unknown vectors, as demonstrated by a c
СредняяCVSS 5,0Эксплойта нетEPSS 1 %freesshd · freesshd24 сент. 2009 г.