verity records
7 published records for vendor verity.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
43Plan | CVE-2002-0370No exploit | Buffer overflow in the ZIP capability for multiple products allows remote attackers to cause a denial of service or execute arbitrary code vallume systems division · stuffit expander | High7.5 | — | 43.3% | Oct 10, 2002 |
42Plan | CVE-2006-5819No exploit | Verity Ultraseek before 5.7 allows remote attackers to use the server as a proxy for web attacks and host scanning via a direct request to tverity · ultraseek | Critical10.0 | — | 6.5% | Nov 17, 2006 |
21Monitor | CVE-2006-5970No exploit | Verity Ultraseek before 5.7 allows remote attackers to obtain sensitive information via direct requests with (1) a null ("%00") terminated uverity · ultraseek | Medium5.0 | — | 1.8% | Nov 17, 2006 |
21Monitor | CVE-2006-5971No exploit | Absolute path traversal vulnerability in admin/logfile.txt in Verity Ultraseek before 5.6.2 allows remote attackers to read arbitrary files verity · ultraseek | Medium5.0 | — | 1.7% | Nov 17, 2006 |
20Monitor | CVE-2004-0050No exploit | Verity Ultraseek before 5.2.2 allows remote attackers to obtain the full pathname of the document root via an MS-DOS device name in the web verity · ultraseek | Medium5.0 | — | 1.4% | Jun 14, 2004 |
18Monitor | CVE-2005-0514No exploit | Cross-site scripting (XSS) vulnerability in Verity Ultraseek before 5.3.3 allows remote attackers to inject arbitrary HTML and web script viverity · verity ultraseek | Medium4.3 | — | 2.4% | Feb 22, 2005 |
17Monitor | CVE-2002-1651No exploit | Cross-site scripting (XSS) vulnerability in Verity Search97 allows remote attackers to insert arbitrary web content and steal sensitive infoverity · search97 · CWE-79 | Medium4.3 | — | 1.3% | Dec 31, 2002 |
- CVE-2002-037043Plan
Buffer overflow in the ZIP capability for multiple products allows remote attackers to cause a denial of service or execute arbitrary code v
HighCVSS 7.5No exploitEPSS 43%allume systems division · stuffit expanderOct 10, 2002
- CVE-2006-581942Plan
Verity Ultraseek before 5.7 allows remote attackers to use the server as a proxy for web attacks and host scanning via a direct request to t
CriticalCVSS 10.0No exploitEPSS 7%verity · ultraseekNov 17, 2006
- CVE-2006-597021Monitor
Verity Ultraseek before 5.7 allows remote attackers to obtain sensitive information via direct requests with (1) a null ("%00") terminated u
MediumCVSS 5.0No exploitEPSS 2%verity · ultraseekNov 17, 2006
- CVE-2006-597121Monitor
Absolute path traversal vulnerability in admin/logfile.txt in Verity Ultraseek before 5.6.2 allows remote attackers to read arbitrary files
MediumCVSS 5.0No exploitEPSS 2%verity · ultraseekNov 17, 2006
- CVE-2004-005020Monitor
Verity Ultraseek before 5.2.2 allows remote attackers to obtain the full pathname of the document root via an MS-DOS device name in the web
MediumCVSS 5.0No exploitEPSS 1%verity · ultraseekJun 14, 2004
- CVE-2005-051418Monitor
Cross-site scripting (XSS) vulnerability in Verity Ultraseek before 5.3.3 allows remote attackers to inject arbitrary HTML and web script vi
MediumCVSS 4.3No exploitEPSS 2%verity · verity ultraseekFeb 22, 2005
- CVE-2002-165117Monitor
Cross-site scripting (XSS) vulnerability in Verity Search97 allows remote attackers to insert arbitrary web content and steal sensitive info
MediumCVSS 4.3No exploitEPSS 1%verity · search97Dec 31, 2002