İçeriğe atla
Noroxi

vim development group kayıtları

vim development group üreticisine ait 8 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
3
Düzeltme kaydı olan
%75
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Yıllara göre kayıt

    Çubuk: toplam · koyu kısım: CISA KEV.

    Tekrar eden sınıflar

    Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.

    CWE

    Tüm kayıtlar

    8 kayıt
    • CVE-2005-2368
      38İzleyin

      vim 6.3 before 6.3.082, with modelines enabled, allows external user-assisted attackers to execute arbitrary commands via shell metacharacte

      KritikCVSS 9,3İstismar yokEPSS %3

      vim development group · vim26 Tem 2005

    • CVE-2007-2438
      31İzleyin

      The sandbox for vim allows dangerous functions such as (1) writefile, (2) feedkeys, and (3) system, which might allow user-assisted attacker

      YüksekCVSS 7,6İstismar yokEPSS %3

      foresight linux · foresight linux2 May 2007

    • CVE-2007-2953
      28İzleyin

      Format string vulnerability in the helptags_one function in src/ex_cmds.c in Vim 6.4 and earlier, and 7.x up to 7.1, allows user-assisted re

      OrtaCVSS 6,8İstismar yokEPSS %4

      vim development group · vim31 Tem 2007

    • CVE-2004-1138
      28İzleyin

      VIM before 6.3 and gVim before 6.3 allow local users to execute arbitrary commands via a file containing a crafted modeline that is executed

      YüksekCVSS 7,2İstismar yokEPSS %0

      vim development group · vim10 Oca 2005

    • CVE-2001-0408
      21İzleyin

      vim (aka gvim) processes VIM control codes that are embedded in a file, which could allow attackers to execute arbitrary commands when anoth

      OrtaCVSS 5,1İstismar yokEPSS %2

      vim development group · vim18 Haz 2001

    • CVE-2002-1377
      18İzleyin

      vim 6.0 and 6.1, and possibly other versions, allows attackers to execute arbitrary commands using the libcall feature in modelines, which a

      OrtaCVSS 4,6İstismar yokEPSS %0

      vim development group · vim23 Ara 2002

    • CVE-2005-0069
      18İzleyin

      The (1) tcltags or (2) vimspell.sh scripts in vim 6.3 allow local users to overwrite or create arbitrary files via a symlink attack on tempo

      OrtaCVSS 4,6İstismar yokEPSS %0

      vim development group · vim13 Oca 2005

    • CVE-2001-0409
      8İzleyin

      vim (aka gvim) allows local users to modify files being edited by other users via a symlink attack on the backup and swap files, when the vi

      DüşükCVSS 2,1Kavram kanıtıEPSS %1

      vim development group · vim18 Haz 2001