Nmap records
6 published records for vendor nmap.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 83.3%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-415 Double Free2
- CWE-191 Integer Underflow (Wrap or Wraparound)1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
6 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
32Monitor | CVE-2018-15173No exploit | Nmap through 7.70, when the -sV option is used, allows remote attackers to cause a denial of service (stack consumption and application crasnmap · nmap | High7.5 | — | 6.1% | Aug 7, 2018 |
31Monitor | CVE-2017-18594No exploit | nse_libssh2.cc in Nmap 7.70 is subject to a denial of service condition due to a double free when an SSH connection fails, as demonstrated bnmap · nmap · CWE-415 | High7.5 | — | 3.2% | Aug 28, 2019 |
31Monitor | CVE-2019-11490No exploit | An issue was discovered in Npcap 0.992.nmap · npcap · CWE-415 | High7.8 | — | 0.7% | Apr 23, 2019 |
29Monitor | CVE-2013-4885Proof of concept | The http-domino-enum-passwords.nse script in NMap before 6.40, when domino-enum-passwords.idpath is set, allows remote servers to upload "arnmap · nmap | Medium6.8 | — | 7.2% | Oct 26, 2013 |
27Monitor | CVE-2026-58058Proof of concept | Nmap - Integer Underflow in IPv6 Extension Header Parsingnmap · nmap · CWE-191 | Medium6.9 | — | 1.5% | Jun 27, 2026 |
22Monitor | CVE-2018-1000161No exploit | nmap version 6.49BETA6 through 7.60, up to and including SVN revision 37147 contains a Directory Traversal vulnerability in NSE script http-nmap · nmap · CWE-22 | Medium5.7 | — | 1.0% | Apr 18, 2018 |
- CVE-2018-1517332Monitor
Nmap through 7.70, when the -sV option is used, allows remote attackers to cause a denial of service (stack consumption and application cras
HighCVSS 7.5No exploitEPSS 6%nmap · nmapAug 7, 2018
- CVE-2017-1859431Monitor
nse_libssh2.cc in Nmap 7.70 is subject to a denial of service condition due to a double free when an SSH connection fails, as demonstrated b
HighCVSS 7.5No exploitEPSS 3%nmap · nmapAug 28, 2019
- CVE-2019-1149031Monitor
An issue was discovered in Npcap 0.992.
HighCVSS 7.8No exploitEPSS 1%nmap · npcapApr 23, 2019
- CVE-2013-488529Monitor
The http-domino-enum-passwords.nse script in NMap before 6.40, when domino-enum-passwords.idpath is set, allows remote servers to upload "ar
MediumCVSS 6.8Proof of conceptEPSS 7%nmap · nmapOct 26, 2013
- CVE-2026-5805827Monitor
Nmap - Integer Underflow in IPv6 Extension Header Parsing
MediumCVSS 6.9Proof of conceptEPSS 1%nmap · nmapJun 27, 2026
- CVE-2018-100016122Monitor
nmap version 6.49BETA6 through 7.60, up to and including SVN revision 37147 contains a Directory Traversal vulnerability in NSE script http-
MediumCVSS 5.7No exploitEPSS 1%nmap · nmapApr 18, 2018