Перейти к содержимому
Noroxi

Записи mono

21 опубликованных записей вендора mono.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
3
С записью об исправлении
52,4 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

21 записей
  • CVE-2020-12471
    40В плане

    MonoX through 5.1.40.5152 allows remote code execution via HTML5Upload.ashx or Pages/SocialNetworking/lng/en-US/PhotoGallery.aspx because of

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    mono · monox29 апр. 2020 г.

  • CVE-2010-4254
    34Наблюдать

    Mono, when Moonlight before 2.3.0.1 or 2.99.x before 2.99.0.10 is used, does not properly validate arguments to generic methods, which allow

    ВысокаяCVSS 7,5Proof of conceptEPSS 14 %

    mono · mono6 дек. 2010 г.

  • CVE-2007-5197
    31Наблюдать

    Buffer overflow in the Mono.Math.BigInteger class in Mono 1.2.5.1 and earlier allows context-dependent attackers to execute arbitrary code v

    ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %

    mono · mono2 нояб. 2007 г.

  • CVE-2020-12470
    29Наблюдать

    MonoX through 5.1.40.5152 allows administrators to execute arbitrary code by modifying an ASPX template.

    ВысокаяCVSS 7,2Эксплойта нетEPSS 2 %

    mono · monox29 апр. 2020 г.

  • CVE-2011-0991
    28Наблюдать

    Use-after-free vulnerability in Mono, when Moonlight 2.x before 2.4.1 or 3.x before 3.99.3 is used, allows remote attackers to cause a denia

    СредняяCVSS 6,8Эксплойта нетEPSS 3 %

    mono · mono13 апр. 2011 г.

  • CVE-2020-12473
    28Наблюдать

    MonoX through 5.1.40.5152 allows admins to execute arbitrary programs by reconfiguring the Converter Executable setting from ffmpeg.exe to a

    ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %

    mono · monox29 апр. 2020 г.

  • CVE-2010-4159
    27Наблюдать

    Untrusted search path vulnerability in metadata/loader.c in Mono 2.8 and earlier allows local users to gain privileges via a Trojan horse sh

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    mono · mono17 нояб. 2010 г.

  • CVE-2011-0992
    24Наблюдать

    Use-after-free vulnerability in Mono, when Moonlight 2.x before 2.4.1 or 3.x before 3.99.3 is used, allows remote attackers to cause a denia

    СредняяCVSS 5,8Эксплойта нетEPSS 3 %

    mono · mono13 апр. 2011 г.

  • CVE-2011-0989
    24Наблюдать

    The RuntimeHelpers.InitializeArray method in metadata/icall.c in Mono, when Moonlight 2.x before 2.4.1 or 3.x before 3.99.3 is used, does no

    СредняяCVSS 5,8Эксплойта нетEPSS 3 %

    mono · mono13 апр. 2011 г.

  • CVE-2011-0990
    24Наблюдать

    Race condition in the FastCopy optimization in the Array.Copy method in metadata/icall.c in Mono, when Moonlight 2.x before 2.4.1 or 3.x bef

    СредняяCVSS 5,8Эксплойта нетEPSS 2 %

    mono · mono13 апр. 2011 г.

  • CVE-2006-5072
    24Наблюдать

    The System.CodeDom.Compiler classes in Novell Mono create temporary files with insecure permissions, which allows local users to overwrite a

    СредняяCVSS 6,2Эксплойта нетEPSS 0 %

    mono · mono10 окт. 2006 г.

  • CVE-2005-0509
    22Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in the Mono 1.0.5 implementation of ASP.NET (.Net) allow remote attackers to inject arbi

    СредняяCVSS 4,3Эксплойта нетEPSS 16 %

    mono · mono14 мар. 2005 г.

  • CVE-2006-6104
    22Наблюдать

    The System.Web class in the XSP for ASP.NET server 1.1 through 2.0 in Mono does not properly verify local pathnames, which allows remote att

    СредняяCVSS 5,0Proof of conceptEPSS 5 %

    mono · xsp21 дек. 2006 г.

  • CVE-2006-2658
    21Наблюдать

    Directory traversal vulnerability in the xsp component in mod_mono in Mono/C# web server, as used in SUSE Open-Enterprise-Server 1 and SUSE

    СредняяCVSS 5,0Эксплойта нетEPSS 4 %

    mono · xsp12 сент. 2006 г.

  • CVE-2020-12472
    21Наблюдать

    MonoX through 5.1.40.5152 allows stored XSS via User Status, Blog Comments, or Blog Description.

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    mono · monox29 апр. 2020 г.

  • CVE-2010-4225
    20Наблюдать

    Unspecified vulnerability in the mod_mono module for XSP in Mono 2.8.x before 2.8.2 allows remote attackers to obtain the source code for .a

    СредняяCVSS 5,0Эксплойта нетEPSS 1 %

    mono · mono10 янв. 2011 г.

  • CVE-2007-5473
    20Наблюдать

    StaticFileHandler.cs in System.Web in Mono before 1.2.5.2, when running on Windows, allows remote attackers to obtain source code of sensiti

    СредняяCVSS 5,0Эксплойта нетEPSS 1 %

    mono · mono18 окт. 2007 г.

  • CVE-2008-3906
    19Наблюдать

    CRLF injection vulnerability in Sys.Web in Mono 2.0 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP re

    СредняяCVSS 4,3Proof of conceptEPSS 7 %

    mono · mono4 сент. 2008 г.

  • CVE-2010-1459
    18Наблюдать

    The default configuration of ASP.NET in Mono before 2.6.4 has a value of FALSE for the EnableViewStateMac property, which allows remote atta

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    mono · mono27 мая 2010 г.

  • CVE-2012-3382
    18Наблюдать

    Cross-site scripting (XSS) vulnerability in the ProcessRequest function in mcs/class/System.Web/System.Web/HttpForbiddenHandler.cs in Mono 2

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    mono · mono12 июл. 2012 г.

  • CVE-2008-3422
    17Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in the ASP.net class libraries in Mono 2.0 and earlier allow remote attackers to inject

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    mono · mono31 июл. 2008 г.