Skip to content
Noroxi

entrouvert records

7 published records for vendor entrouvert.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
100%
Median publish → KEV
No record has entered KEV

All records

7 records
  • A type confusion vulnerability exists in the lasso_node_impl_init_from_xml functionality of Entr'ouvert Lasso 2.5.1 and 2.8.2.

    CriticalCVSS 9.8No exploitEPSS 1%

    entrouvert · lassoNov 5, 2025

  • CVE-2015-1783
    31Monitor

    The prefix variable in the get_or_define_ns function in Lasso before commit 6d854cef4211cdcdbc7446c978f23ab859847cdd allows remote attackers

    HighCVSS 7.5No exploitEPSS 3%

    fedoraproject · fedoraAug 11, 2017

  • Lasso all versions prior to 2.7.0 has improper verification of a cryptographic signature.

    HighCVSS 7.5No exploitEPSS 1%

    entrouvert · lassoJun 4, 2021

  • A denial of service vulnerability exists in the lasso_provider_verify_saml_signature functionality of Entr'ouvert Lasso 2.5.1.

    HighCVSS 7.5No exploitEPSS 1%

    entrouvert · lassoNov 5, 2025

  • A denial of service vulnerability exists in the lasso_node_init_from_message_with_format functionality of Entr'ouvert Lasso 2.5.1.

    HighCVSS 7.5No exploitEPSS 1%

    entrouvert · lassoNov 5, 2025

  • A denial of service vulnerability exists in the g_assert_not_reached functionality of Entr'ouvert Lasso 2.5.1 and 2.8.2.

    HighCVSS 7.5No exploitEPSS 1%

    entrouvert · lassoNov 5, 2025

  • CVE-2009-0050
    17Monitor

    Lasso 2.2.1 and earlier does not properly check the return value from the OpenSSL DSA_verify function, which allows remote attackers to bypa

    MediumCVSS 4.3No exploitEPSS 1%

    entrouvert · lassoJan 7, 2009