Skip to content
Noroxi

NIC records

18 published records for vendor nic.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
77.8%
Median publish → KEV
No record has entered KEV

All records

18 records
  • CVE-2023-50387
    60This week

    Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of ser

    HighCVSS 7.5Proof of conceptEPSS 100%

    redhat · enterprise linuxFeb 14, 2024

  • CVE-2021-3346
    39Monitor

    Foris before 101.1.1, as used in Turris OS, lacks certain HTML escaping in the login template.

    CriticalCVSS 9.8No exploitEPSS 2%

    nic · forisJan 29, 2021

  • CVE-2014-0486
    31Monitor

    Knot DNS before 1.5.2 allows remote attackers to cause a denial of service (application crash) via a crafted DNS message.

    HighCVSS 7.5No exploitEPSS 3%

    nic · knot cmsMar 27, 2018

  • BIRD Internet Routing Daemon 1.6.x through 1.6.7 and 2.x through 2.0.5 has a stack-based buffer overflow.

    HighCVSS 7.5No exploitEPSS 3%

    nic · birdSep 9, 2019

  • Knot Resolver before 5.1.1 allows traffic amplification via a crafted DNS answer from an attacker-controlled server, aka an "NXNSAttack" iss

    HighCVSS 7.5No exploitEPSS 3%

    nic · knot resolverMay 19, 2020

  • knot-resolver before version 4.3.0 is vulnerable to denial of service through high CPU utilization.

    HighCVSS 7.5No exploitEPSS 2%

    nic · knot resolverDec 16, 2019

  • A vulnerability was discovered in DNS resolver component of knot resolver through version 3.2.0 before 4.1.0 which allows remote attackers t

    HighCVSS 7.5No exploitEPSS 2%

    nic · knot resolverJul 16, 2019

  • A vulnerability was discovered in DNS resolver of knot resolver before version 4.1.0 which allows remote attackers to downgrade DNSSEC-secur

    HighCVSS 7.5No exploitEPSS 2%

    nic · knot resolverJul 16, 2019

  • Knot Resolver before 5.5.3 allows remote attackers to cause a denial of service (CPU consumption) because of algorithmic complexity.

    HighCVSS 7.5No exploitEPSS 2%

    nic · knot resolverSep 23, 2022

  • Knot Resolver before 5.3.2 is prone to an assertion failure, triggerable by a remote attacker in an edge case (NSEC3 with too many iteration

    HighCVSS 7.5No exploitEPSS 1%

    nic · knot resolverAug 24, 2021

  • CVE-2018-1110
    30Monitor

    A flaw was found in knot-resolver before version 2.3.0.

    HighCVSS 7.5No exploitEPSS 1%

    nic · knot resolverMar 29, 2021

  • Knot Resolver before 5.6.0 enables attackers to consume its resources, launching amplification attacks and potentially causing a denial of s

    HighCVSS 7.5No exploitEPSS 1%

    nic · knot resolverFeb 20, 2023

  • Knot Resolver before 5.7.0 performs many TCP reconnections upon receiving certain nonsensical responses from servers.

    HighCVSS 7.5No exploitEPSS 1%

    nic · knot resolverOct 22, 2023

  • Improper input validation bug in DNS resolver component of Knot Resolver before 2.4.1 allows remote attacker to poison cache.

    MediumCVSS 6.8Proof of conceptEPSS 3%

    nic · knot resolverAug 2, 2018

  • BIRD through 2.0.7 does not provide functionality for password authentication of BGP peers.

    MediumCVSS 6.8No exploitEPSS 1%

    nic · birdJun 4, 2021

  • CVE-2013-5661
    24Monitor

    Cache Poisoning issue exists in DNS Response Rate Limiting.

    MediumCVSS 5.9No exploitEPSS 3%

    isc · bindNov 5, 2019

  • Knot Resolver through 5.5.1 may allow DNS cache poisoning when there is an attempt to limit forwarding actions by filters.

    MediumCVSS 5.3No exploitEPSS 1%

    nic · knot resolverJun 20, 2022

  • Improper input validation bugs in DNSSEC validators components in Knot Resolver (prior version 1.5.2) allow attacker in man-in-the-middle po

    LowCVSS 3.7No exploitEPSS 1%

    nic · knot resolverJan 22, 2018