Skip to content
Noroxi

ES records

8 published records for vendor es.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
100%
Median publish → KEV
No record has entered KEV

All records

8 records
  • The parse_string function in cjson.c in the cJSON library mishandles UTF8/16 strings, which allows remote attackers to cause a denial of ser

    CriticalCVSS 9.8No exploitEPSS 7%

    es · iperf3Sep 26, 2016

  • In iperf before 3.19.1, net.c has a buffer overflow when --skip-rx-copy is used (for MSG_TRUNC in recv).

    CriticalCVSS 10.0No exploitEPSS 0%

    es · iperf3Aug 2, 2025

  • In iperf before 3.19.1, iperf_auth.c has an off-by-one error and resultant heap-based buffer overflow.

    CriticalCVSS 10.0No exploitEPSS 0%

    es · iperf3Aug 2, 2025

  • iperf3 before 3.14 allows peers to cause an integer overflow and heap corruption via a crafted length field.

    HighCVSS 7.5No exploitEPSS 2%

    es · iperf3Jul 17, 2023

  • iperf v3.17.1 was discovered to contain a segmentation violation via the iperf_exchange_parameters() function.

    HighCVSS 7.5No exploitEPSS 1%

    es · iperf3Dec 18, 2024

  • iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption

    MediumCVSS 5.9No exploitEPSS 1%

    es · iperf3May 14, 2024

  • CVE-2023-7250
    21Monitor

    Iperf3: possible denial of service

    MediumCVSS 5.3No exploitEPSS 1%

    es · iperf3Mar 18, 2024

  • In iperf before 3.19.1, iperf_auth.c has a Base64Decode assertion failure and application exit upon a malformed authentication attempt.

    MediumCVSS 5.3No exploitEPSS 0%

    es · iperf3Aug 2, 2025