Skip to content
Noroxi

bitmessage records

2 published records for vendor bitmessage.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 18
  2. 21

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

Attack profile

All records

2 records
  • Bitmessage PyBitmessage version v0.6.2 (and introduced in or after commit 8ce72d8d2d25973b7064b1cf76a6b0b3d62f0ba0) contains a Eval injectio

    HighCVSS 8.8No exploitEPSS 2%

    bitmessage · pybitmessageMar 13, 2018

  • PyBitmessage through 0.6.3.2 allows attackers to write screen captures to Potentially Unwanted Directories via a crafted apinotifypath value

    MediumCVSS 5.5No exploitEPSS 1%

    bitmessage · pybitmessageFeb 8, 2021