IETF records
17 published records for vendor ietf.
Researcher profile
- Entered KEV
- 1 · 5.9%
- Weaponized
- 1 · 5.9%
- Pre-auth RCE
- 0
- With a fix record
- 23.5%
- Median publish → KEV
- 0 days
Recurring classes
- CWE-290 Authentication Bypass by Spoofing4
- CWE-327 Use of a Broken or Risky Cryptographic Algorithm2
- CWE-130 Improper Handling of Length Parameter Inconsistency2
- CWE-940 Improper Verification of Source of a Communication Channel2
- CWE-400 Uncontrolled Resource Consumption1
- CWE-521 Weak Password Requirements1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
17 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
90Now | CVE-2023-44487Weaponized | The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, assiemens · simatic s7-1500 cpu 1518f-4 pn\/dp mfp firmware · CWE-400 | High7.5 | KEV | 100.0% | Oct 10, 2023 |
42Plan | CVE-2004-2761Proof of concept | The MD5 Message-Digest Algorithm is not collision resistant, which makes it easier for context-dependent attackers to conduct spoofing attacietf · md5 · CWE-310 | Critical9.8 | — | 9.9% | Jan 5, 2009 |
35Monitor | CVE-2016-10142No exploit | An issue was discovered in the IPv6 protocol specification, related to ICMP Packet Too Big (PTB) messages.ietf · ipv6 · CWE-17 | High8.6 | — | 2.8% | Jan 14, 2017 |
33Monitor | CVE-2007-2242No exploit | The IPv6 protocol allows remote attackers to cause a denial of service via crafted IPv6 type 0 route headers (IPV6_RTHDR_TYPE_0) that createopenbsd · openbsd | High7.8 | — | 5.0% | Apr 25, 2007 |
33Monitor | CVE-2015-8960No exploit | The TLS protocol 1.2 and earlier supports the rsa_fixed_dh, dss_fixed_dh, rsa_fixed_ecdh, and ecdsa_fixed_ecdh values for ClientCertificateTietf · transport layer security · CWE-295 | High8.1 | — | 1.9% | Sep 20, 2016 |
26Monitor | CVE-2024-7595Proof of concept | GRE and GRE6 Protocols (RFC2784) do not validate or verify the source of a network packetietf · generic routing encapsulation · CWE-290 | Medium6.5 | — | 1.6% | Feb 5, 2025 |
26Monitor | CVE-2025-23018No exploit | IPv4-in-IPv6 and IPv6-in-IPv6 tunneling (RFC 2473) do not require the validation or verification of the source of a network packet, allowingietf · ipv6 · CWE-940 | Medium6.5 | — | 1.0% | Jan 14, 2025 |
26Monitor | CVE-2025-23019No exploit | IPv6-in-IPv4 tunneling (RFC 4213) allows an attacker to spoof and route traffic via an exposed network interface.ietf · ipv6 · CWE-940 | Medium6.5 | — | 1.0% | Jan 14, 2025 |
26Monitor | CVE-2024-7596No exploit | Generic UDP Encapsulation (GUE) (IETF Draft) do not validate or verify the source of a network packetietf · generic udp encapsulation · CWE-290 | Medium6.5 | — | 0.9% | Feb 5, 2025 |
24Monitor | CVE-2018-5389No exploit | The Internet Key Exchange v1 main mode is vulnerable to offline dictionary or brute force attacks.ietf · internet key exchange · CWE-521 | Medium5.9 | — | 3.0% | Sep 6, 2018 |
23Monitor | CVE-2020-20949No exploit | Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in STM32 cryptographic firmware library software expansion for STM32Cube (UM1924).st · stm32cubef0 · CWE-327 | Medium5.9 | — | 0.9% | Jan 20, 2021 |
23Monitor | CVE-2020-20950No exploit | Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in Microchip Libraries for Applications 2018-11-26 All up to 2018-11-26.microchip · microchip libraries for applications · CWE-327 | Medium5.9 | — | 0.9% | Jan 19, 2021 |
18Monitor | CVE-2021-27853No exploit | L2 network filtering can be bypassed using stacked VLAN0 and LLC/SNAP headersieee · ieee 802.2 · CWE-290 | Medium4.7 | — | 0.8% | Sep 27, 2022 |
18Monitor | CVE-2021-27854No exploit | L2 network filtering bypass using stacked VLAN0, LLC/SNAP headers, and Ethernet to Wifi frame translationieee · ieee 802.2 · CWE-290 | Medium4.7 | — | 0.7% | Sep 27, 2022 |
18Monitor | CVE-2021-27862No exploit | L2 network filtering bypass using stacked VLAN0 and LLC/SNAP headers with an invalid length during Ethernet to Wifi frame translationieee · ieee 802.2 · CWE-130 | Medium4.7 | — | 0.7% | Sep 27, 2022 |
18Monitor | CVE-2021-27861No exploit | L2 network filtering bypass using stacked VLAN0 and LLC/SNAP headers with invalid lengthsieee · ieee 802.2 · CWE-130 | Medium4.7 | — | 0.7% | Sep 27, 2022 |
17Monitor | CVE-2024-39920No exploit | The TCP protocol in RFC 9293 has a timing side channel that makes it easier for remote attackers to infer the content of one TCP connection CWE-1255 | Medium4.3 | — | 0.6% | Jul 3, 2024 |
- CVE-2023-4448790Now
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as
HighCVSS 7.5KEVWeaponizedEPSS 100%siemens · simatic s7-1500 cpu 1518f-4 pn\/dp mfp firmwareOct 10, 2023
- CVE-2004-276142Plan
The MD5 Message-Digest Algorithm is not collision resistant, which makes it easier for context-dependent attackers to conduct spoofing attac
CriticalCVSS 9.8Proof of conceptEPSS 10%ietf · md5Jan 5, 2009
- CVE-2016-1014235Monitor
An issue was discovered in the IPv6 protocol specification, related to ICMP Packet Too Big (PTB) messages.
HighCVSS 8.6No exploitEPSS 3%ietf · ipv6Jan 14, 2017
- CVE-2007-224233Monitor
The IPv6 protocol allows remote attackers to cause a denial of service via crafted IPv6 type 0 route headers (IPV6_RTHDR_TYPE_0) that create
HighCVSS 7.8No exploitEPSS 5%openbsd · openbsdApr 25, 2007
- CVE-2015-896033Monitor
The TLS protocol 1.2 and earlier supports the rsa_fixed_dh, dss_fixed_dh, rsa_fixed_ecdh, and ecdsa_fixed_ecdh values for ClientCertificateT
HighCVSS 8.1No exploitEPSS 2%ietf · transport layer securitySep 20, 2016
- CVE-2024-759526Monitor
GRE and GRE6 Protocols (RFC2784) do not validate or verify the source of a network packet
MediumCVSS 6.5Proof of conceptEPSS 2%ietf · generic routing encapsulationFeb 5, 2025
- CVE-2025-2301826Monitor
IPv4-in-IPv6 and IPv6-in-IPv6 tunneling (RFC 2473) do not require the validation or verification of the source of a network packet, allowing
MediumCVSS 6.5No exploitEPSS 1%ietf · ipv6Jan 14, 2025
- CVE-2025-2301926Monitor
IPv6-in-IPv4 tunneling (RFC 4213) allows an attacker to spoof and route traffic via an exposed network interface.
MediumCVSS 6.5No exploitEPSS 1%ietf · ipv6Jan 14, 2025
- CVE-2024-759626Monitor
Generic UDP Encapsulation (GUE) (IETF Draft) do not validate or verify the source of a network packet
MediumCVSS 6.5No exploitEPSS 1%ietf · generic udp encapsulationFeb 5, 2025
- CVE-2018-538924Monitor
The Internet Key Exchange v1 main mode is vulnerable to offline dictionary or brute force attacks.
MediumCVSS 5.9No exploitEPSS 3%ietf · internet key exchangeSep 6, 2018
- CVE-2020-2094923Monitor
Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in STM32 cryptographic firmware library software expansion for STM32Cube (UM1924).
MediumCVSS 5.9No exploitEPSS 1%st · stm32cubef0Jan 20, 2021
- CVE-2020-2095023Monitor
Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in Microchip Libraries for Applications 2018-11-26 All up to 2018-11-26.
MediumCVSS 5.9No exploitEPSS 1%microchip · microchip libraries for applicationsJan 19, 2021
- CVE-2021-2785318Monitor
L2 network filtering can be bypassed using stacked VLAN0 and LLC/SNAP headers
MediumCVSS 4.7No exploitEPSS 1%ieee · ieee 802.2Sep 27, 2022
- CVE-2021-2785418Monitor
L2 network filtering bypass using stacked VLAN0, LLC/SNAP headers, and Ethernet to Wifi frame translation
MediumCVSS 4.7No exploitEPSS 1%ieee · ieee 802.2Sep 27, 2022
- CVE-2021-2786218Monitor
L2 network filtering bypass using stacked VLAN0 and LLC/SNAP headers with an invalid length during Ethernet to Wifi frame translation
MediumCVSS 4.7No exploitEPSS 1%ieee · ieee 802.2Sep 27, 2022
- CVE-2021-2786118Monitor
L2 network filtering bypass using stacked VLAN0 and LLC/SNAP headers with invalid lengths
MediumCVSS 4.7No exploitEPSS 1%ieee · ieee 802.2Sep 27, 2022
- CVE-2024-3992017Monitor
The TCP protocol in RFC 9293 has a timing side channel that makes it easier for remote attackers to infer the content of one TCP connection
MediumCVSS 4.3No exploitEPSS 1%Jul 3, 2024