vercot records
3 published records for vendor vercot.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')1
- CWE-476 NULL Pointer Dereference1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2021-44429No exploit | Serva 4.4.0 allows remote attackers to cause a denial of service (daemon crash) via a TFTP read (RRQ) request, aka opcode 1, a related issuevercot · serva · CWE-120 | High7.5 | — | 1.9% | Nov 29, 2021 |
30Monitor | CVE-2024-37826No exploit | A NULL pointer dereference in vercot Serva v4.6.0 allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request.vercot · serva · CWE-476 | High7.5 | — | 1.2% | Aug 12, 2024 |
23Monitor | CVE-2013-0145Proof of concept | Buffer overflow in the TFTPD service in Serva32 2.1.0 allows remote attackers to cause a denial of service (daemon crash) or possibly executvercot · serva32 · CWE-119 | Medium5.0 | — | 8.9% | May 20, 2013 |
- CVE-2021-4442931Monitor
Serva 4.4.0 allows remote attackers to cause a denial of service (daemon crash) via a TFTP read (RRQ) request, aka opcode 1, a related issue
HighCVSS 7.5No exploitEPSS 2%vercot · servaNov 29, 2021
- CVE-2024-3782630Monitor
A NULL pointer dereference in vercot Serva v4.6.0 allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request.
HighCVSS 7.5No exploitEPSS 1%vercot · servaAug 12, 2024
- CVE-2013-014523Monitor
Buffer overflow in the TFTPD service in Serva32 2.1.0 allows remote attackers to cause a denial of service (daemon crash) or possibly execut
MediumCVSS 5.0Proof of conceptEPSS 9%vercot · serva32May 20, 2013