snort kayıtları
snort üreticisine ait 19 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 1 · %5,3
- Pre-auth RCE
- 3
- Düzeltme kaydı olan
- %52,6
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-693 Protection Mechanism Failure3
- CWE-290 Authentication Bypass by Spoofing1
- CWE-426 Untrusted Search Path1
- CWE-1039 Inadequate Detection or Handling of Adversarial Input Perturbations in Automated Recognition Mechanism1
- CWE-755 Improper Handling of Exceptional Conditions1
- CWE-770 Allocation of Resources Without Limits or Throttling1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
19 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
64Bu hafta | CVE-2006-5276Silahlaştırılmış | Stack-based buffer overflow in the DCE/RPC preprocessor in Snort before 2.6.1.3, and 2.7 before beta 2; and Sourcefire Intrusion Sensor; allsnort · snort | Kritik10,0 | — | %79,4 | 19 Şub 2007 |
44Planlayın | CVE-2003-0033İstismar yok | Buffer overflow in the RPC preprocessor for Snort 1.8 and 1.9.x before 1.9.1 allows remote attackers to execute arbitrary code via fragmentesnort · snort | Kritik10,0 | — | %11,9 | 7 Mar 2003 |
36İzleyin | CVE-2016-1417İstismar yok | Untrusted search path vulnerability in Snort 2.9.7.0-WIN32 allows remote attackers to execute arbitrary code and conduct DLL hijacking attacsnort · snort · CWE-426 | Yüksek8,8 | — | %4,4 | 23 Oca 2017 |
32İzleyin | CVE-2007-0251İstismar yok | Integer underflow in the DecodeGRE function in src/decode.c in Snort 2.6.1.2 allows remote attackers to trigger dereferencing of certain memsnort · snort | Yüksek7,8 | — | %2,4 | 16 Oca 2007 |
31İzleyin | CVE-2001-0669Kavram kanıtı | Various Intrusion Detection Systems (IDS) including (1) Cisco Secure Intrusion Detection System, (2) Cisco Catalyst 6000 Intrusion Detectioncisco · catalyst 6000 intrusion detection system module | Yüksek7,5 | — | %4,4 | 30 Eki 2001 |
31İzleyin | CVE-2021-40114İstismar yok | Multiple Cisco Products Snort Memory Leak Denial of Service Vulnerabilitycisco · secure firewall management center · CWE-770 | Yüksek7,5 | — | %2,4 | 27 Eki 2021 |
31İzleyin | CVE-2021-1223İstismar yok | Multiple Cisco Products Snort HTTP Detection Engine File Policy Bypass Vulnerabilitycisco · secure firewall management center · CWE-693 | Yüksek7,5 | — | %2,0 | 13 Oca 2021 |
30İzleyin | CVE-2007-1398Kavram kanıtı | The frag3 preprocessor in Snort 2.6.1.1, 2.6.1.2, and 2.7.0 beta, when configured for inline use on Linux without the ip_conntrack module lolinux · linux kernel | Yüksek7,1 | — | %5,6 | 10 Mar 2007 |
29İzleyin | CVE-2009-3641Kavram kanıtı | Snort before 2.8.5.1, when the -v option is enabled, allows remote attackers to cause a denial of service (application crash) via a crafted snort · snort | Orta4,3 | — | %38,8 | 28 Eki 2009 |
28İzleyin | CVE-2008-1804İstismar yok | preprocessors/spp_frag3.c in Sourcefire Snort before 2.8.1 does not properly identify packet fragments that have dissimilar TTL values, whicsnort · snort | Orta6,8 | — | %2,3 | 22 May 2008 |
24İzleyin | CVE-2020-3299İstismar yok | Multiple Cisco Products SNORT HTTP Detection Engine File Policy Bypass Vulnerabilitycisco · secure firewall threat defense · CWE-693 | Orta5,8 | — | %2,3 | 21 Eki 2020 |
23İzleyin | CVE-2023-20071İstismar yok | Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker tcisco · secure firewall threat defense · CWE-1039 | Orta5,8 | — | %0,5 | 1 Kas 2023 |
22İzleyin | CVE-2021-1236İstismar yok | Multiple Cisco Products Snort Application Detection Engine Policy Bypass Vulnerabilitycisco · ios xe · CWE-670 | Orta5,3 | — | %2,1 | 13 Oca 2021 |
22İzleyin | CVE-2021-1224İstismar yok | Multiple Cisco Products Snort TCP Fast Open File Policy Bypass Vulnerabilitycisco · secure firewall management center · CWE-693 | Orta5,3 | — | %2,0 | 13 Oca 2021 |
22İzleyin | CVE-2021-1495İstismar yok | Multiple Cisco Products Snort HTTP Detection Engine File Policy Bypass Vulnerabilitycisco · secure firewall threat defense · CWE-755 | Orta5,3 | — | %1,7 | 29 Nis 2021 |
21İzleyin | CVE-2006-6931İstismar yok | Algorithmic complexity vulnerability in Snort before 2.6.1, during predicate evaluation in rule matching for certain rules, allows remote atsnort · snort | Orta5,0 | — | %2,4 | 16 Oca 2007 |
21İzleyin | CVE-2023-20246İstismar yok | Multiple Cisco products are affected by a vulnerability in Snort access control policies that could allow an unauthenticated, remote attackesnort · snort · CWE-290 | Orta5,3 | — | %0,6 | 1 Kas 2023 |
20İzleyin | CVE-2000-1226İstismar yok | Snort 1.6, when running in straight ASCII packet logging mode or IDS mode with straight decoded ASCII packet logging selected, allows remotesnort · snort | Orta5,0 | — | %1,3 | 31 Ara 2000 |
20İzleyin | CVE-2001-1558İstismar yok | Unknown vulnerability in IP defragmenter (frag2) in Snort before 1.8.3 allows attackers to cause a denial of service (crash).snort · snort | Orta5,0 | — | %1,1 | 31 Ara 2001 |
- CVE-2006-527664Bu hafta
Stack-based buffer overflow in the DCE/RPC preprocessor in Snort before 2.6.1.3, and 2.7 before beta 2; and Sourcefire Intrusion Sensor; all
KritikCVSS 10,0SilahlaştırılmışEPSS %79snort · snort19 Şub 2007
- CVE-2003-003344Planlayın
Buffer overflow in the RPC preprocessor for Snort 1.8 and 1.9.x before 1.9.1 allows remote attackers to execute arbitrary code via fragmente
KritikCVSS 10,0İstismar yokEPSS %12snort · snort7 Mar 2003
- CVE-2016-141736İzleyin
Untrusted search path vulnerability in Snort 2.9.7.0-WIN32 allows remote attackers to execute arbitrary code and conduct DLL hijacking attac
YüksekCVSS 8,8İstismar yokEPSS %4snort · snort23 Oca 2017
- CVE-2007-025132İzleyin
Integer underflow in the DecodeGRE function in src/decode.c in Snort 2.6.1.2 allows remote attackers to trigger dereferencing of certain mem
YüksekCVSS 7,8İstismar yokEPSS %2snort · snort16 Oca 2007
- CVE-2001-066931İzleyin
Various Intrusion Detection Systems (IDS) including (1) Cisco Secure Intrusion Detection System, (2) Cisco Catalyst 6000 Intrusion Detection
YüksekCVSS 7,5Kavram kanıtıEPSS %4cisco · catalyst 6000 intrusion detection system module30 Eki 2001
- CVE-2021-4011431İzleyin
Multiple Cisco Products Snort Memory Leak Denial of Service Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %2cisco · secure firewall management center27 Eki 2021
- CVE-2021-122331İzleyin
Multiple Cisco Products Snort HTTP Detection Engine File Policy Bypass Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %2cisco · secure firewall management center13 Oca 2021
- CVE-2007-139830İzleyin
The frag3 preprocessor in Snort 2.6.1.1, 2.6.1.2, and 2.7.0 beta, when configured for inline use on Linux without the ip_conntrack module lo
YüksekCVSS 7,1Kavram kanıtıEPSS %6linux · linux kernel10 Mar 2007
- CVE-2009-364129İzleyin
Snort before 2.8.5.1, when the -v option is enabled, allows remote attackers to cause a denial of service (application crash) via a crafted
OrtaCVSS 4,3Kavram kanıtıEPSS %39snort · snort28 Eki 2009
- CVE-2008-180428İzleyin
preprocessors/spp_frag3.c in Sourcefire Snort before 2.8.1 does not properly identify packet fragments that have dissimilar TTL values, whic
OrtaCVSS 6,8İstismar yokEPSS %2snort · snort22 May 2008
- CVE-2020-329924İzleyin
Multiple Cisco Products SNORT HTTP Detection Engine File Policy Bypass Vulnerability
OrtaCVSS 5,8İstismar yokEPSS %2cisco · secure firewall threat defense21 Eki 2020
- CVE-2023-2007123İzleyin
Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker t
OrtaCVSS 5,8İstismar yokEPSS %1cisco · secure firewall threat defense1 Kas 2023
- CVE-2021-123622İzleyin
Multiple Cisco Products Snort Application Detection Engine Policy Bypass Vulnerability
OrtaCVSS 5,3İstismar yokEPSS %2cisco · ios xe13 Oca 2021
- CVE-2021-122422İzleyin
Multiple Cisco Products Snort TCP Fast Open File Policy Bypass Vulnerability
OrtaCVSS 5,3İstismar yokEPSS %2cisco · secure firewall management center13 Oca 2021
- CVE-2021-149522İzleyin
Multiple Cisco Products Snort HTTP Detection Engine File Policy Bypass Vulnerability
OrtaCVSS 5,3İstismar yokEPSS %2cisco · secure firewall threat defense29 Nis 2021
- CVE-2006-693121İzleyin
Algorithmic complexity vulnerability in Snort before 2.6.1, during predicate evaluation in rule matching for certain rules, allows remote at
OrtaCVSS 5,0İstismar yokEPSS %2snort · snort16 Oca 2007
- CVE-2023-2024621İzleyin
Multiple Cisco products are affected by a vulnerability in Snort access control policies that could allow an unauthenticated, remote attacke
OrtaCVSS 5,3İstismar yokEPSS %1snort · snort1 Kas 2023
- CVE-2000-122620İzleyin
Snort 1.6, when running in straight ASCII packet logging mode or IDS mode with straight decoded ASCII packet logging selected, allows remote
OrtaCVSS 5,0İstismar yokEPSS %1snort · snort31 Ara 2000
- CVE-2001-155820İzleyin
Unknown vulnerability in IP defragmenter (frag2) in Snort before 1.8.3 allows attackers to cause a denial of service (crash).
OrtaCVSS 5,0İstismar yokEPSS %1snort · snort31 Ara 2001