Записи proxygen project
5 опубликованных записей вендора proxygen project.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-284 Improper Access Control2
- CWE-400 Uncontrolled Resource Consumption2
- CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2015-7264Эксплойта нет | The SPDY/2 codec in Facebook Proxygen before 2015-11-09 truncates a certain field to two bytes, which allows hijacking and injection attacksproxygen project · proxygen · CWE-74 | Критическая9,8 | — | 1,2 % | 9 апр. 2017 г. |
30Наблюдать | CVE-2018-6346Эксплойта нет | A potential denial-of-service issue in the Proxygen handling of invalid HTTP2 priority settings (specifically a circular dependency).proxygen project · proxygen · CWE-400 | Высокая7,5 | — | 1,4 % | 31 дек. 2018 г. |
30Наблюдать | CVE-2018-6347Эксплойта нет | An issue in the Proxygen handling of HTTP2 parsing of headers/trailers can lead to a denial-of-service attack.proxygen project · proxygen · CWE-400 | Высокая7,5 | — | 1,4 % | 31 дек. 2018 г. |
30Наблюдать | CVE-2015-7263Эксплойта нет | The SPDY/2 codec in Facebook Proxygen before 2015-11-09 allows remote attackers to conduct hijacking attacks and bypass ACL checks via a craproxygen project · proxygen · CWE-284 | Высокая7,5 | — | 1,2 % | 9 апр. 2017 г. |
30Наблюдать | CVE-2015-7265Эксплойта нет | Facebook Proxygen before 2015-11-09 mismanages HTTPMessage.request state, which allows remote attackers to conduct hijacking attacks and bypproxygen project · proxygen · CWE-284 | Высокая7,5 | — | 1,2 % | 9 апр. 2017 г. |
- CVE-2015-726439Наблюдать
The SPDY/2 codec in Facebook Proxygen before 2015-11-09 truncates a certain field to two bytes, which allows hijacking and injection attacks
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %proxygen project · proxygen9 апр. 2017 г.
- CVE-2018-634630Наблюдать
A potential denial-of-service issue in the Proxygen handling of invalid HTTP2 priority settings (specifically a circular dependency).
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %proxygen project · proxygen31 дек. 2018 г.
- CVE-2018-634730Наблюдать
An issue in the Proxygen handling of HTTP2 parsing of headers/trailers can lead to a denial-of-service attack.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %proxygen project · proxygen31 дек. 2018 г.
- CVE-2015-726330Наблюдать
The SPDY/2 codec in Facebook Proxygen before 2015-11-09 allows remote attackers to conduct hijacking attacks and bypass ACL checks via a cra
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %proxygen project · proxygen9 апр. 2017 г.
- CVE-2015-726530Наблюдать
Facebook Proxygen before 2015-11-09 mismanages HTTPMessage.request state, which allows remote attackers to conduct hijacking attacks and byp
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %proxygen project · proxygen9 апр. 2017 г.