mldonkey records
3 published records for vendor mldonkey.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 33.3%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
22Monitor | CVE-2009-0753Proof of concept | Absolute path traversal vulnerability in MLDonkey 2.8.4 through 2.9.7 allows remote attackers to read arbitrary files via a leading "//" (domldonkey · mldonkey · CWE-22 | Medium5.0 | — | 5.8% | Mar 3, 2009 |
20Monitor | CVE-2007-4100No exploit | MLDonkey before 2.9.0 does not load certain code from $MLDONKEY/web_infos/ before the network modules become active, which allows remote attmldonkey · mldonkey | Medium5.0 | — | 1.3% | Jul 31, 2007 |
18Monitor | CVE-2003-1164Proof of concept | Cross-site scripting (XSS) vulnerability in Mldonkey 2.5-4 allows remote attackers to inject arbitrary web script or HTML via the URI, whichmldonkey · mldonkey | Medium4.3 | — | 1.8% | Dec 31, 2003 |
- CVE-2009-075322Monitor
Absolute path traversal vulnerability in MLDonkey 2.8.4 through 2.9.7 allows remote attackers to read arbitrary files via a leading "//" (do
MediumCVSS 5.0Proof of conceptEPSS 6%mldonkey · mldonkeyMar 3, 2009
- CVE-2007-410020Monitor
MLDonkey before 2.9.0 does not load certain code from $MLDONKEY/web_infos/ before the network modules become active, which allows remote att
MediumCVSS 5.0No exploitEPSS 1%mldonkey · mldonkeyJul 31, 2007
- CVE-2003-116418Monitor
Cross-site scripting (XSS) vulnerability in Mldonkey 2.5-4 allows remote attackers to inject arbitrary web script or HTML via the URI, which
MediumCVSS 4.3Proof of conceptEPSS 2%mldonkey · mldonkeyDec 31, 2003