Skip to content
Noroxi

att records

29 published records for vendor att.

Researcher profile

Entered KEV
0 · 0%
Weaponized
3 · 10.3%
Pre-auth RCE
8
With a fix record
0%
Median publish → KEV
No record has entered KEV

Bug bounty scope

The product’s vendor appears in a public program. Matched by name; verify the scope text in the program.

All records

29 records
  • CVE-2001-0168
    61This week

    Buffer overflow in AT&T WinVNC (Virtual Network Computing) server 3.3.3r7 and earlier allows remote attackers to execute arbitrary commands

    CriticalCVSS 10.0WeaponizedEPSS 71%

    att · winvncMay 3, 2001

  • Buffer overflow in AT&T WinVNC (Virtual Network Computing) client 3.3.3r7 and earlier allows remote attackers to execute arbitrary commands

    HighCVSS 7.6WeaponizedEPSS 51%

    att · winvncMay 3, 2001

  • Vulnerability in rexec daemon (rexecd) in AT&T TCP/IP 4.0 for various SVR4 systems allows remote attackers to execute arbitrary commands.

    CriticalCVSS 10.0No exploitEPSS 4%

    att · svr4Feb 25, 1992

  • A heap-based buffer overflow vulnerability exists in the XML Decompression EnumerationUncompressor::UncompressItem functionality of AT&T Lab

    CriticalCVSS 9.8No exploitEPSS 3%

    att · xmillAug 13, 2021

  • A heap-based buffer overflow exists in XML Decompression DecodeTreeBlock in AT&T Labs Xmill 0.7.

    CriticalCVSS 9.8No exploitEPSS 2%

    att · xmillApr 14, 2022

  • A heap-based buffer overflow vulnerability exists in the XML Decompression PlainTextUncompressor::UncompressItem functionality of AT&T Labs’

    CriticalCVSS 9.8No exploitEPSS 2%

    att · xmillAug 18, 2021

  • A heap-based buffer overflow vulnerability exists in the XML Decompression LabelDict::Load functionality of AT&T Labs’ Xmill 0.7.

    CriticalCVSS 9.8No exploitEPSS 2%

    att · xmillAug 13, 2021

  • A heap-based buffer overflow vulnerability exists in the XML Decompression DecodeTreeBlock functionality of AT&T Labs Xmill 0.7.

    CriticalCVSS 9.8No exploitEPSS 1%

    att · xmillAug 20, 2021

  • A memory corruption vulnerability exists in the XML-parsing ParseAttribs functionality of AT&T Labs’ Xmill 0.7.

    CriticalCVSS 9.8No exploitEPSS 1%

    att · xmillAug 17, 2021

  • A memory corruption vulnerability exists in the XML-parsing CreateLabelOrAttrib functionality of AT&T Labs’ Xmill 0.7.

    CriticalCVSS 9.8No exploitEPSS 1%

    att · xmillAug 31, 2021

  • A heap-based buffer overflow vulnerability exists in the XML Decompression DecodeTreeBlock functionality of AT&T Labs Xmill 0.7.

    CriticalCVSS 9.8No exploitEPSS 1%

    att · xmillAug 20, 2021

  • A heap-based buffer overflow vulnerability exists in the XML Decompression DecodeTreeBlock functionality of AT&T Labs Xmill 0.7.

    CriticalCVSS 9.8No exploitEPSS 1%

    att · xmillAug 20, 2021

  • CVE-2000-1164
    36Monitor

    WinVNC installs the WinVNC3 registry key with permissions that give Special Access (read and modify) to the Everybody group, which allows us

    CriticalCVSS 9.0No exploitEPSS 2%

    att · winvncJan 9, 2001

  • The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG589 and NVG599 devices, when IP Passthrough mode is not used, configures ssh-permanent

    HighCVSS 8.1No exploitEPSS 4%

    att · u-verse firmwareSep 3, 2017

  • The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG599 device, when IP Passthrough mode is not used, configures WAN access to a caserver

    HighCVSS 8.1No exploitEPSS 3%

    att · u-verse firmwareSep 3, 2017

  • The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG589, NVG599, and unspecified other devices, when IP Passthrough mode is not used, conf

    HighCVSS 8.1No exploitEPSS 3%

    att · u-verse firmwareSep 3, 2017

  • CVE-2001-1422
    31Monitor

    WinVNC 3.3.3 and earlier generates the same challenge string for multiple connections, which allows remote attackers to bypass VNC authentic

    HighCVSS 7.5No exploitEPSS 2%

    att · winvncJan 23, 2001

  • Within the function HandleFileArg the argument filepattern is under control of the user who passes it in from the command line.

    HighCVSS 7.8No exploitEPSS 0%

    att · xmillAug 13, 2021

  • Within the function HandleFileArg the argument filepattern is under control of the user who passes it in from the command line.

    HighCVSS 7.8No exploitEPSS 0%

    att · xmillAug 13, 2021

  • A stack-based buffer overflow vulnerability exists in the command-line-parsing HandleFileArg functionality of AT&T Labs' Xmill 0.7.

    HighCVSS 7.8No exploitEPSS 0%

    att · xmillAug 13, 2021

  • A stack-based buffer overflow vulnerability exists in the command-line-parsing HandleFileArg functionality of AT&T Labs’ Xmill 0.7.

    HighCVSS 7.8No exploitEPSS 0%

    att · xmillAug 13, 2021

  • CVE-2013-7286
    30Monitor

    MobileIron VSP < 5.9.1 and Sentry < 5.0 has a weak password obfuscation algorithm

    HighCVSS 7.5No exploitEPSS 2%

    att · mobileiron sentryFeb 12, 2020

  • A memory leak vulnerability in sim-organizer.c of AlienVault Ossim v5 causes a denial of service (DOS) via a system crash triggered by the o

    HighCVSS 7.5No exploitEPSS 1%

    att · alienvault ossimJul 19, 2021

  • CVE-2012-2980
    29Monitor

    The Samsung and HTC onTouchEvent method implementation for Android on the T-Mobile myTouch 3G Slide, HTC Merge, Sprint EVO Shift 4G, HTC Cha

    HighCVSS 7.1No exploitEPSS 2%

    htc · chachaAug 21, 2012

  • CVE-2013-6029
    28Monitor

    Stack-based buffer overflow in the AT&T Connect Participant Application before 9.5.51 on Windows allows remote attackers to execute arbitrar

    MediumCVSS 6.8No exploitEPSS 3%

    att · connect participant applicationDec 4, 2013