omidrouhani records
2 published records for vendor omidrouhani.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2009-4657Proof of concept | The administrator package for Xerver 4.32 does not require authentication, which allows remote attackers to alter application settings by coomidrouhani · xerver · CWE-287 | High7.5 | — | 2.2% | Mar 3, 2010 |
17Monitor | CVE-2009-4658Proof of concept | Xerver 4.32 allows remote authenticated users to cause a denial of service (daemon crash) via a non-numeric web port assignment in the managomidrouhani · xerver · CWE-20 | Medium4.0 | — | 1.8% | Mar 3, 2010 |
- CVE-2009-465731Monitor
The administrator package for Xerver 4.32 does not require authentication, which allows remote attackers to alter application settings by co
HighCVSS 7.5Proof of conceptEPSS 2%omidrouhani · xerverMar 3, 2010
- CVE-2009-465817Monitor
Xerver 4.32 allows remote authenticated users to cause a denial of service (daemon crash) via a non-numeric web port assignment in the manag
MediumCVSS 4.0Proof of conceptEPSS 2%omidrouhani · xerverMar 3, 2010