Записи parity
14 опубликованных записей вендора parity.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 28,6 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-682 Incorrect Calculation2
- CWE-20 Improper Input Validation2
- CWE-203 Observable Discrepancy1
- CWE-253 Incorrect Check of Function Return Value1
- CWE-346 Origin Validation Error1
- CWE-347 Improper Verification of Cryptographic Signature1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
14 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2021-38195Эксплойта нет | An issue was discovered in the libsecp256k1 crate before 0.5.0 for Rust.parity · libsecp256k1 · CWE-347 | Критическая9,8 | — | 0,9 % | 8 авг. 2021 г. |
30Наблюдать | CVE-2019-25003Эксплойта нет | An issue was discovered in the libsecp256k1 crate before 0.3.1 for Rust.parity · libsecp256k1 | Высокая7,5 | — | 1,4 % | 31 дек. 2020 г. |
30Наблюдать | CVE-2017-14460Эксплойта нет | An exploitable overly permissive cross-domain (CORS) whitelist vulnerability exists in JSON-RPC of Parity Ethereum client version 1.7.8.parity · ethereum client | Высокая7,5 | — | 1,2 % | 19 янв. 2018 г. |
30Наблюдать | CVE-2023-45130Эксплойта нет | Frontier opcode SUICIDE touches too many storage values on large contractsparity · frontier · CWE-770 | Высокая7,5 | — | 0,9 % | 13 окт. 2023 г. |
30Наблюдать | CVE-2023-28431Эксплойта нет | Frontier's modexp precompile is slow for even modulusparity · frontier · CWE-682 | Высокая7,5 | — | 0,9 % | 22 мар. 2023 г. |
26Наблюдать | CVE-2022-21685Эксплойта нет | Integer underflow in Frontierparity · frontier · CWE-191 | Средняя6,5 | — | 1,3 % | 14 янв. 2022 г. |
26Наблюдать | CVE-2022-36008Эксплойта нет | Message length overflow in frontierparity · frontier · CWE-190 | Средняя6,5 | — | 1,2 % | 19 авг. 2022 г. |
23Наблюдать | CVE-2017-18016Proof of concept | Parity Browser 1.6.10 and earlier allows remote attackers to bypass the Same Origin Policy and obtain sensitive information by requesting otparity · browser · CWE-346 | Средняя5,3 | — | 5,5 % | 11 янв. 2018 г. |
23Наблюдать | CVE-2019-20399Эксплойта нет | A timing vulnerability in the Scalar::check_overflow function in Parity libsecp256k1-rs before 0.3.1 potentially allows an attacker to leak parity · libsecp256k1 · CWE-203 | Средняя5,9 | — | 0,9 % | 22 янв. 2020 г. |
21Наблюдать | CVE-2021-41138Эксплойта нет | Validity check for signed Frontier-specific extrinsic not called in block executionparity · frontier · CWE-20 | Средняя5,3 | — | 1,4 % | 13 окт. 2021 г. |
21Наблюдать | CVE-2022-31111Эксплойта нет | Discrepency in transfer value and actual value due to incorrect truncation in Frontierparity · frontier · CWE-670 | Средняя5,3 | — | 1,4 % | 6 июл. 2022 г. |
21Наблюдать | CVE-2021-39193Эксплойта нет | Transaction validity oversight in pallet-ethereumparity · frontier · CWE-20 | Средняя5,3 | — | 1,2 % | 3 сент. 2021 г. |
21Наблюдать | CVE-2023-34449Эксплойта нет | ink! vulnerable to incorrect decoding of storage value when using `DelegateCall`parity · ink\! · CWE-253 | Средняя5,3 | — | 1,0 % | 14 июн. 2023 г. |
21Наблюдать | CVE-2022-39242Эксплойта нет | Incorrect Calculation in Frontier leads to inflated Ethereum chain gas pricesparity · frontier · CWE-682 | Средняя5,3 | — | 0,7 % | 23 сент. 2022 г. |
- CVE-2021-3819539Наблюдать
An issue was discovered in the libsecp256k1 crate before 0.5.0 for Rust.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %parity · libsecp256k18 авг. 2021 г.
- CVE-2019-2500330Наблюдать
An issue was discovered in the libsecp256k1 crate before 0.3.1 for Rust.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %parity · libsecp256k131 дек. 2020 г.
- CVE-2017-1446030Наблюдать
An exploitable overly permissive cross-domain (CORS) whitelist vulnerability exists in JSON-RPC of Parity Ethereum client version 1.7.8.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %parity · ethereum client19 янв. 2018 г.
- CVE-2023-4513030Наблюдать
Frontier opcode SUICIDE touches too many storage values on large contracts
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %parity · frontier13 окт. 2023 г.
- CVE-2023-2843130Наблюдать
Frontier's modexp precompile is slow for even modulus
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %parity · frontier22 мар. 2023 г.
- CVE-2022-2168526Наблюдать
Integer underflow in Frontier
СредняяCVSS 6,5Эксплойта нетEPSS 1 %parity · frontier14 янв. 2022 г.
- CVE-2022-3600826Наблюдать
Message length overflow in frontier
СредняяCVSS 6,5Эксплойта нетEPSS 1 %parity · frontier19 авг. 2022 г.
- CVE-2017-1801623Наблюдать
Parity Browser 1.6.10 and earlier allows remote attackers to bypass the Same Origin Policy and obtain sensitive information by requesting ot
СредняяCVSS 5,3Proof of conceptEPSS 5 %parity · browser11 янв. 2018 г.
- CVE-2019-2039923Наблюдать
A timing vulnerability in the Scalar::check_overflow function in Parity libsecp256k1-rs before 0.3.1 potentially allows an attacker to leak
СредняяCVSS 5,9Эксплойта нетEPSS 1 %parity · libsecp256k122 янв. 2020 г.
- CVE-2021-4113821Наблюдать
Validity check for signed Frontier-specific extrinsic not called in block execution
СредняяCVSS 5,3Эксплойта нетEPSS 1 %parity · frontier13 окт. 2021 г.
- CVE-2022-3111121Наблюдать
Discrepency in transfer value and actual value due to incorrect truncation in Frontier
СредняяCVSS 5,3Эксплойта нетEPSS 1 %parity · frontier6 июл. 2022 г.
- CVE-2021-3919321Наблюдать
Transaction validity oversight in pallet-ethereum
СредняяCVSS 5,3Эксплойта нетEPSS 1 %parity · frontier3 сент. 2021 г.
- CVE-2023-3444921Наблюдать
ink! vulnerable to incorrect decoding of storage value when using `DelegateCall`
СредняяCVSS 5,3Эксплойта нетEPSS 1 %parity · ink\!14 июн. 2023 г.
- CVE-2022-3924221Наблюдать
Incorrect Calculation in Frontier leads to inflated Ethereum chain gas prices
СредняяCVSS 5,3Эксплойта нетEPSS 1 %parity · frontier23 сент. 2022 г.