Perforce kayıtları
perforce üreticisine ait 31 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %38,7
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-400 Uncontrolled Resource Consumption6
- CWE-20 Improper Input Validation4
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor3
- CWE-94 Improper Control of Generation of Code ('Code Injection')3
- CWE-611 Improper Restriction of XML External Entity Reference2
- CWE-399 Resource Management Errors2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
31 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2007-0100İstismar yok | The Perforce client does not restrict the set of files that it overwrites upon receiving a request from the server, which allows remote attaperforce · perforce client | Kritik10,0 | — | %1,9 | 8 Oca 2007 |
40Planlayın | CVE-2015-8965İstismar yok | Rogue Wave JViews before 8.8 patch 21 and 8.9 before patch 1 allows remote attackers to execute arbitrary Java code that exists in the classperforce · jviews · CWE-264 | Kritik9,8 | — | %2,7 | 6 Nis 2017 |
39İzleyin | CVE-2023-45849İstismar yok | Arbitrary Code Execution in Helix Coreperforce · helix core · CWE-94 | Kritik9,8 | — | %1,1 | 8 Kas 2023 |
39İzleyin | CVE-2024-3930İstismar yok | XML External Entity in Akanaperforce · akana api · CWE-611 | Kritik9,8 | — | %0,3 | 30 Tem 2024 |
34İzleyin | CVE-2024-10314İstismar yok | Unauthenticated Denial of Service via Auto Generation Functionhelix · helix core · CWE-400 | Yüksek8,7 | — | %0,5 | 11 Kas 2024 |
34İzleyin | CVE-2024-10345İstismar yok | Unauthenticated Denial of Service via Shutdown Functionhelix · helix core · CWE-400 | Yüksek8,7 | — | %0,5 | 11 Kas 2024 |
34İzleyin | CVE-2024-10344İstismar yok | Unauthenticated Denial of Service via Refuse Functionhelix · helix core · CWE-400 | Yüksek8,7 | — | %0,5 | 11 Kas 2024 |
32İzleyin | CVE-2008-1338İstismar yok | The Perforce service (p4s.exe) in Perforce Server 2007.3/143793 and earlier allows remote attackers to cause a denial of service (daemon craperforce · perforce server · CWE-189 | Yüksek7,8 | — | %2,1 | 14 Mar 2008 |
32İzleyin | CVE-2007-6349İstismar yok | P4Webs.exe in Perforce P4Web 2006.2 and earlier, when running on Windows, allows remote attackers to cause a denial of service (CPU consumptperforce · p4web · CWE-399 | Yüksek7,8 | — | %2,0 | 20 Ara 2007 |
31İzleyin | CVE-2024-0325İstismar yok | Command Injection in Helix Syncperforce · helix sync · CWE-94 | Yüksek7,8 | — | %0,8 | 1 Şub 2024 |
30İzleyin | CVE-2023-35767İstismar yok | Unauthenticated Remote Denial-of-Service via Shutdown Function in Helix Coreperforce · helix core · CWE-400 | Yüksek7,5 | — | %0,9 | 8 Kas 2023 |
30İzleyin | CVE-2023-5759İstismar yok | Unauthenticated Remote Denial-of-Service via Buffer in Helix Coreperforce · helix core · CWE-400 | Yüksek7,5 | — | %0,9 | 8 Kas 2023 |
30İzleyin | CVE-2023-45319İstismar yok | Unauthenticated Remote Denial-of-Service (Commit) in Helix Coreperforce · helix core · CWE-400 | Yüksek7,5 | — | %0,9 | 8 Kas 2023 |
30İzleyin | CVE-2024-5249İstismar yok | SAML Replay in Akanaperforce · akana api · CWE-294 | Yüksek7,5 | — | %0,2 | 30 Tem 2024 |
29İzleyin | CVE-2010-0934İstismar yok | The triggers functionality in Perforce Server 2008.1 allows remote authenticated users with super privileges to execute arbitrary operating-perforce · perforce server · CWE-78 | Yüksek7,1 | — | %2,0 | 5 Mar 2010 |
28İzleyin | CVE-2010-0933İstismar yok | Directory traversal vulnerability in Perforce Server 2008.1 allows remote authenticated users to create arbitrary files via a ..perforce · perforce server · CWE-22 | Orta6,8 | — | %1,8 | 5 Mar 2010 |
26İzleyin | CVE-2018-1000147İstismar yok | An exposure of sensitive information vulnerability exists in Jenkins Perforce Plugin version 1.3.36 and older in PerforcePasswordEncryptor.jperforce · perforce · CWE-200 | Orta6,5 | — | %0,8 | 5 Nis 2018 |
24İzleyin | CVE-2013-1410Kavram kanıtı | Perforce P4web 2011.1 and 2012.1 has multiple XSS vulnerabilitiesperforce · p4web · CWE-79 | Orta6,1 | — | %1,5 | 12 Şub 2020 |
23İzleyin | CVE-2024-8067İstismar yok | Unicode "best fit" argument injectionhelix · helix core · CWE-176 | Orta5,8 | — | %0,2 | 24 Eyl 2024 |
22İzleyin | CVE-2008-1303Kavram kanıtı | The Perforce service (p4s.exe) in Perforce Server 2007.3/143793 and earlier allows remote attackers to cause a denial of service (daemon craperforce · perforce server · CWE-20 | Orta5,0 | — | %7,6 | 12 Mar 2008 |
21İzleyin | CVE-2008-1302İstismar yok | The Perforce service (p4s.exe) in Perforce Server 2007.3/143793 and earlier allows remote attackers to cause a denial of service (daemon craperforce · perforce server · CWE-189 | Orta5,0 | — | %1,7 | 12 Mar 2008 |
21İzleyin | CVE-2024-5250İstismar yok | Overly Verbose Errors in SAML Integrationperforce · akana api · CWE-209 | Orta5,3 | — | %0,3 | 30 Tem 2024 |
21İzleyin | CVE-2025-14591İstismar yok | PII Leak Due to Change in EOR Handlingperforce · delphix continuous compliance · CWE-200 | Orta5,3 | — | %0,3 | 20 Ara 2025 |
20İzleyin | CVE-2010-0932İstismar yok | The FTP server in Perforce Server 2008.1 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) viperforce · perforce server · CWE-20 | Orta5,0 | — | %1,7 | 5 Mar 2010 |
20İzleyin | CVE-2010-0929İstismar yok | The Perforce service (p4s.exe) in Perforce Server 2008.1 allows remote attackers to cause a denial of service (daemon crash) via crafted datperforce · perforce server · CWE-20 | Orta5,0 | — | %1,1 | 5 Mar 2010 |
- CVE-2007-010041Planlayın
The Perforce client does not restrict the set of files that it overwrites upon receiving a request from the server, which allows remote atta
KritikCVSS 10,0İstismar yokEPSS %2perforce · perforce client8 Oca 2007
- CVE-2015-896540Planlayın
Rogue Wave JViews before 8.8 patch 21 and 8.9 before patch 1 allows remote attackers to execute arbitrary Java code that exists in the class
KritikCVSS 9,8İstismar yokEPSS %3perforce · jviews6 Nis 2017
- CVE-2023-4584939İzleyin
Arbitrary Code Execution in Helix Core
KritikCVSS 9,8İstismar yokEPSS %1perforce · helix core8 Kas 2023
- CVE-2024-393039İzleyin
XML External Entity in Akana
KritikCVSS 9,8İstismar yokEPSS %0perforce · akana api30 Tem 2024
- CVE-2024-1031434İzleyin
Unauthenticated Denial of Service via Auto Generation Function
YüksekCVSS 8,7İstismar yokEPSS %0helix · helix core11 Kas 2024
- CVE-2024-1034534İzleyin
Unauthenticated Denial of Service via Shutdown Function
YüksekCVSS 8,7İstismar yokEPSS %0helix · helix core11 Kas 2024
- CVE-2024-1034434İzleyin
Unauthenticated Denial of Service via Refuse Function
YüksekCVSS 8,7İstismar yokEPSS %0helix · helix core11 Kas 2024
- CVE-2008-133832İzleyin
The Perforce service (p4s.exe) in Perforce Server 2007.3/143793 and earlier allows remote attackers to cause a denial of service (daemon cra
YüksekCVSS 7,8İstismar yokEPSS %2perforce · perforce server14 Mar 2008
- CVE-2007-634932İzleyin
P4Webs.exe in Perforce P4Web 2006.2 and earlier, when running on Windows, allows remote attackers to cause a denial of service (CPU consumpt
YüksekCVSS 7,8İstismar yokEPSS %2perforce · p4web20 Ara 2007
- CVE-2024-032531İzleyin
Command Injection in Helix Sync
YüksekCVSS 7,8İstismar yokEPSS %1perforce · helix sync1 Şub 2024
- CVE-2023-3576730İzleyin
Unauthenticated Remote Denial-of-Service via Shutdown Function in Helix Core
YüksekCVSS 7,5İstismar yokEPSS %1perforce · helix core8 Kas 2023
- CVE-2023-575930İzleyin
Unauthenticated Remote Denial-of-Service via Buffer in Helix Core
YüksekCVSS 7,5İstismar yokEPSS %1perforce · helix core8 Kas 2023
- CVE-2023-4531930İzleyin
Unauthenticated Remote Denial-of-Service (Commit) in Helix Core
YüksekCVSS 7,5İstismar yokEPSS %1perforce · helix core8 Kas 2023
- CVE-2024-524930İzleyin
SAML Replay in Akana
YüksekCVSS 7,5İstismar yokEPSS %0perforce · akana api30 Tem 2024
- CVE-2010-093429İzleyin
The triggers functionality in Perforce Server 2008.1 allows remote authenticated users with super privileges to execute arbitrary operating-
YüksekCVSS 7,1İstismar yokEPSS %2perforce · perforce server5 Mar 2010
- CVE-2010-093328İzleyin
Directory traversal vulnerability in Perforce Server 2008.1 allows remote authenticated users to create arbitrary files via a ..
OrtaCVSS 6,8İstismar yokEPSS %2perforce · perforce server5 Mar 2010
- CVE-2018-100014726İzleyin
An exposure of sensitive information vulnerability exists in Jenkins Perforce Plugin version 1.3.36 and older in PerforcePasswordEncryptor.j
OrtaCVSS 6,5İstismar yokEPSS %1perforce · perforce5 Nis 2018
- CVE-2013-141024İzleyin
Perforce P4web 2011.1 and 2012.1 has multiple XSS vulnerabilities
OrtaCVSS 6,1Kavram kanıtıEPSS %2perforce · p4web12 Şub 2020
- CVE-2024-806723İzleyin
Unicode "best fit" argument injection
OrtaCVSS 5,8İstismar yokEPSS %0helix · helix core24 Eyl 2024
- CVE-2008-130322İzleyin
The Perforce service (p4s.exe) in Perforce Server 2007.3/143793 and earlier allows remote attackers to cause a denial of service (daemon cra
OrtaCVSS 5,0Kavram kanıtıEPSS %8perforce · perforce server12 Mar 2008
- CVE-2008-130221İzleyin
The Perforce service (p4s.exe) in Perforce Server 2007.3/143793 and earlier allows remote attackers to cause a denial of service (daemon cra
OrtaCVSS 5,0İstismar yokEPSS %2perforce · perforce server12 Mar 2008
- CVE-2024-525021İzleyin
Overly Verbose Errors in SAML Integration
OrtaCVSS 5,3İstismar yokEPSS %0perforce · akana api30 Tem 2024
- CVE-2025-1459121İzleyin
PII Leak Due to Change in EOR Handling
OrtaCVSS 5,3İstismar yokEPSS %0perforce · delphix continuous compliance20 Ara 2025
- CVE-2010-093220İzleyin
The FTP server in Perforce Server 2008.1 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) vi
OrtaCVSS 5,0İstismar yokEPSS %2perforce · perforce server5 Mar 2010
- CVE-2010-092920İzleyin
The Perforce service (p4s.exe) in Perforce Server 2008.1 allows remote attackers to cause a denial of service (daemon crash) via crafted dat
OrtaCVSS 5,0İstismar yokEPSS %1perforce · perforce server5 Mar 2010