Skip to content
Noroxi

xfce records

8 published records for vendor xfce.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
3
With a fix record
50%
Median publish → KEV
No record has entered KEV

All records

8 records
  • Double free vulnerability in the Widget Library (libxfcegui4) in Xfce before 4.4.2 might allow remote attackers to execute arbitrary code vi

    CriticalCVSS 10.0No exploitEPSS 4%

    xfce · xfceJan 9, 2008

  • An issue was discovered in Thunar before 4.16.7 and 4.17.x before 4.17.2.

    CriticalCVSS 9.8No exploitEPSS 3%

    xfce · thunarMay 11, 2021

  • In Xfce xfce4-settings before 4.16.4 and 4.17.x before 4.17.1, there is an argument injection vulnerability in xfce4-mime-helper.

    CriticalCVSS 9.8No exploitEPSS 1%

    xfce · xfce4-settingsNov 9, 2022

  • XFCE 4.16 allows attackers to execute arbitrary code because xdg-open can execute a .desktop file on an attacker-controlled FTP server.

    HighCVSS 8.8No exploitEPSS 2%

    xfce · exoJun 13, 2022

  • CVE-2011-1588
    31Monitor

    Thunar before 1.3.1 could crash when copy and pasting a file name with % format characters due to a format string error.

    HighCVSS 7.8No exploitEPSS 1%

    xfce · thunarNov 13, 2019

  • CVE-2009-4996
    28Monitor

    Xfce4-session 4.5.91 in Xfce does not lock the screen when the suspend or hibernate button is pressed, which might make it easier for physic

    HighCVSS 7.2No exploitEPSS 0%

    xfce · xfceSep 7, 2010

  • CVE-2007-6531
    21Monitor

    Stack-based buffer overflow in the Panel (xfce4-panel) component in Xfce before 4.4.2 might allow remote attackers to execute arbitrary code

    MediumCVSS 5.0No exploitEPSS 3%

    xfce · xfceJan 9, 2008

  • Xfce Thunar 1.6.15, when Xfce 4.12 is used, mishandles the IBus-Unikey input method for file searches within File Manager, leading to an out

    MediumCVSS 4.7No exploitEPSS 0%

    xfce · thunarOct 19, 2018