openser records
4 published records for vendor openser.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-264 Permissions, Privileges, and Access Controls1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
38Monitor | CVE-2006-6749No exploit | Buffer overflow in the parse_expression function in parse_config in OpenSER 1.1.0 allows attackers to have an unknown impact via a long str openser · openser · CWE-119 | Critical9.3 | — | 1.8% | Dec 26, 2006 |
31Monitor | CVE-2006-6875No exploit | Buffer overflow in the validateospheader function in the Open Settlement Protocol (OSP) module in OpenSER 1.1.0 and earlier allows remote atopenser · openser | High7.5 | — | 2.9% | Dec 31, 2006 |
30Monitor | CVE-2006-6876No exploit | Buffer overflow in the fetchsms function in the SMS handling module (libsms_getsms.c) in OpenSER 1.2.0 and earlier allows remote attackers topenser · openser | High7.5 | — | 1.7% | Dec 31, 2006 |
20Monitor | CVE-2007-5469No exploit | OpenSER 1.2.2 does not verify the Digest authentication header URI against the Request URI in SIP messages, which allows remote attackers toopenser · openser · CWE-264 | Medium5.0 | — | 1.6% | Oct 15, 2007 |
- CVE-2006-674938Monitor
Buffer overflow in the parse_expression function in parse_config in OpenSER 1.1.0 allows attackers to have an unknown impact via a long str
CriticalCVSS 9.3No exploitEPSS 2%openser · openserDec 26, 2006
- CVE-2006-687531Monitor
Buffer overflow in the validateospheader function in the Open Settlement Protocol (OSP) module in OpenSER 1.1.0 and earlier allows remote at
HighCVSS 7.5No exploitEPSS 3%openser · openserDec 31, 2006
- CVE-2006-687630Monitor
Buffer overflow in the fetchsms function in the SMS handling module (libsms_getsms.c) in OpenSER 1.2.0 and earlier allows remote attackers t
HighCVSS 7.5No exploitEPSS 2%openser · openserDec 31, 2006
- CVE-2007-546920Monitor
OpenSER 1.2.2 does not verify the Digest authentication header URI against the Request URI in SIP messages, which allows remote attackers to
MediumCVSS 5.0No exploitEPSS 2%openser · openserOct 15, 2007