vim development group kayıtları
vim development group üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 3
- Düzeltme kaydı olan
- %75
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Saldırı profili
Tüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
38İzleyin | CVE-2005-2368İstismar yok | vim 6.3 before 6.3.082, with modelines enabled, allows external user-assisted attackers to execute arbitrary commands via shell metacharactevim development group · vim · CWE-78 | Kritik9,3 | — | %2,7 | 26 Tem 2005 |
31İzleyin | CVE-2007-2438İstismar yok | The sandbox for vim allows dangerous functions such as (1) writefile, (2) feedkeys, and (3) system, which might allow user-assisted attackerforesight linux · foresight linux | Yüksek7,6 | — | %3,2 | 2 May 2007 |
28İzleyin | CVE-2007-2953İstismar yok | Format string vulnerability in the helptags_one function in src/ex_cmds.c in Vim 6.4 and earlier, and 7.x up to 7.1, allows user-assisted revim development group · vim | Orta6,8 | — | %4,2 | 31 Tem 2007 |
28İzleyin | CVE-2004-1138İstismar yok | VIM before 6.3 and gVim before 6.3 allow local users to execute arbitrary commands via a file containing a crafted modeline that is executedvim development group · vim | Yüksek7,2 | — | %0,4 | 10 Oca 2005 |
21İzleyin | CVE-2001-0408İstismar yok | vim (aka gvim) processes VIM control codes that are embedded in a file, which could allow attackers to execute arbitrary commands when anothvim development group · vim | Orta5,1 | — | %1,7 | 18 Haz 2001 |
18İzleyin | CVE-2002-1377İstismar yok | vim 6.0 and 6.1, and possibly other versions, allows attackers to execute arbitrary commands using the libcall feature in modelines, which avim development group · vim | Orta4,6 | — | %0,5 | 23 Ara 2002 |
18İzleyin | CVE-2005-0069İstismar yok | The (1) tcltags or (2) vimspell.sh scripts in vim 6.3 allow local users to overwrite or create arbitrary files via a symlink attack on tempovim development group · vim | Orta4,6 | — | %0,4 | 13 Oca 2005 |
8İzleyin | CVE-2001-0409Kavram kanıtı | vim (aka gvim) allows local users to modify files being edited by other users via a symlink attack on the backup and swap files, when the vivim development group · vim | Düşük2,1 | — | %0,7 | 18 Haz 2001 |
- CVE-2005-236838İzleyin
vim 6.3 before 6.3.082, with modelines enabled, allows external user-assisted attackers to execute arbitrary commands via shell metacharacte
KritikCVSS 9,3İstismar yokEPSS %3vim development group · vim26 Tem 2005
- CVE-2007-243831İzleyin
The sandbox for vim allows dangerous functions such as (1) writefile, (2) feedkeys, and (3) system, which might allow user-assisted attacker
YüksekCVSS 7,6İstismar yokEPSS %3foresight linux · foresight linux2 May 2007
- CVE-2007-295328İzleyin
Format string vulnerability in the helptags_one function in src/ex_cmds.c in Vim 6.4 and earlier, and 7.x up to 7.1, allows user-assisted re
OrtaCVSS 6,8İstismar yokEPSS %4vim development group · vim31 Tem 2007
- CVE-2004-113828İzleyin
VIM before 6.3 and gVim before 6.3 allow local users to execute arbitrary commands via a file containing a crafted modeline that is executed
YüksekCVSS 7,2İstismar yokEPSS %0vim development group · vim10 Oca 2005
- CVE-2001-040821İzleyin
vim (aka gvim) processes VIM control codes that are embedded in a file, which could allow attackers to execute arbitrary commands when anoth
OrtaCVSS 5,1İstismar yokEPSS %2vim development group · vim18 Haz 2001
- CVE-2002-137718İzleyin
vim 6.0 and 6.1, and possibly other versions, allows attackers to execute arbitrary commands using the libcall feature in modelines, which a
OrtaCVSS 4,6İstismar yokEPSS %0vim development group · vim23 Ara 2002
- CVE-2005-006918İzleyin
The (1) tcltags or (2) vimspell.sh scripts in vim 6.3 allow local users to overwrite or create arbitrary files via a symlink attack on tempo
OrtaCVSS 4,6İstismar yokEPSS %0vim development group · vim13 Oca 2005
- CVE-2001-04098İzleyin
vim (aka gvim) allows local users to modify files being edited by other users via a symlink attack on the backup and swap files, when the vi
DüşükCVSS 2,1Kavram kanıtıEPSS %1vim development group · vim18 Haz 2001