Skip to content
Noroxi

windriver records

48 published records for vendor windriver.

Researcher profile

Entered KEV
0 · 0%
Weaponized
1 · 2.1%
Pre-auth RCE
7
With a fix record
6.3%
Median publish → KEV
No record has entered KEV

All records

48 records
  • CVE-2019-12255
    62This week

    Wind River VxWorks has a Buffer Overflow in the TCP component (issue 1 of 4).

    CriticalCVSS 9.8Proof of conceptEPSS 75%

    windriver · vxworksAug 9, 2019

  • CVE-2002-1337
    62This week

    Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related t

    CriticalCVSS 10.0Proof of conceptEPSS 73%

    sendmail · sendmailMar 7, 2003

  • CVE-2019-12257
    60This week

    Wind River VxWorks 6.6 through 6.9 has a Buffer Overflow in the DHCP client component.

    HighCVSS 8.8No exploitEPSS 84%

    windriver · vxworksAug 9, 2019

  • The WDB target agent debug service in Wind River VxWorks 6.x, 5.x, and earlier, as used on the Rockwell Automation 1756-ENBT series A with f

    CriticalCVSS 9.8No exploitEPSS 47%

    rockwellautomation · 1756-enbt\/a firmwareAug 5, 2010

  • Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the IPv4 component.

    CriticalCVSS 9.8No exploitEPSS 27%

    windriver · vxworksAug 9, 2019

  • Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 2 of 4).

    CriticalCVSS 9.8No exploitEPSS 23%

    windriver · vxworksAug 9, 2019

  • Wind River VxWorks 6.7 though 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 3 of 4).

    CriticalCVSS 9.8No exploitEPSS 9%

    windriver · vxworksAug 9, 2019

  • IPSSH (aka the SSH server) in Wind River VxWorks 6.5 through 6.9 allows remote attackers to execute arbitrary code or cause a denial of serv

    CriticalCVSS 10.0No exploitEPSS 6%

    windriver · vxworksMar 20, 2013

  • PHP remote file inclusion vulnerability in index.php in Achievo 1.1.0 allows remote attackers to execute arbitrary PHP code via a URL in the

    CriticalCVSS 10.0Proof of conceptEPSS 4%

    hp · hp-uxMay 17, 2007

  • Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and 7 has Incorrect Access Control in the RARP client component.

    CriticalCVSS 9.8No exploitEPSS 4%

    windriver · vxworksAug 14, 2019

  • An issue was discovered in Wind River VxWorks 7.

    CriticalCVSS 9.8No exploitEPSS 2%

    windriver · vxworksMay 12, 2021

  • An issue was discovered in Wind River VxWorks before 6.5.

    CriticalCVSS 9.8No exploitEPSS 2%

    windriver · vxworksApr 13, 2021

  • A DNS client stack-based buffer overflow in ipdnsc_decode_name() affects Wind River VxWorks 6.5 through 7.

    CriticalCVSS 9.8No exploitEPSS 2%

    windriver · vxworksMar 11, 2021

  • An issue was discovered in Wind River VxWorks through 6.8.

    CriticalCVSS 9.8No exploitEPSS 2%

    windriver · vxworksApr 13, 2021

  • Wind River VxWorks 6.5, 6.6, 6.7, 6.8, 6.9.3 and 6.9.4 has a Memory Leak in the IGMPv3 client component.

    MediumCVSS 5.3No exploitEPSS 60%

    windriver · vxworksAug 9, 2019

  • CVE-2008-2476
    39Monitor

    The IPv6 Neighbor Discovery Protocol (NDP) implementation in (1) FreeBSD 6.3 through 7.1, (2) OpenBSD 4.2 and 4.3, (3) NetBSD, (4) Force10 F

    CriticalCVSS 9.3No exploitEPSS 7%

    force10 · ftosOct 3, 2008

  • RVD#3327: No authentication required for accesing ABB IRC5 FTP server

    CriticalCVSS 9.8No exploitEPSS 1%

    abb · robotwareJul 15, 2020

  • Wind River VxWorks 6.6 through vx7 has Session Fixation in the TCP component.

    HighCVSS 7.5WeaponizedEPSS 23%

    windriver · vxworksAug 9, 2019

  • CVE-2021-3450
    35Monitor

    CA certificate check bypass with X509_V_FLAG_X509_STRICT

    HighCVSS 7.4Proof of conceptEPSS 18%

    openssl · opensslMar 25, 2021

  • CVE-2007-4938
    35Monitor

    Heap-based buffer overflow in libmpdemux/aviheader.c in MPlayer 1.0rc1 and earlier allows remote attackers to cause a denial of service (app

    HighCVSS 7.6Proof of conceptEPSS 16%

    ibm · aixSep 18, 2007

  • Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and vx7 has an array index error in the IGMPv3 client component.

    HighCVSS 7.5No exploitEPSS 16%

    windriver · vxworksAug 9, 2019

  • An issue was discovered in Wind River VxWorks 6.9 and 7.

    HighCVSS 8.8No exploitEPSS 2%

    windriver · vxworksSep 22, 2023

  • CVE-2015-7599
    34Monitor

    Integer overflow in the _authenticate function in svc_auth.c in Wind River VxWorks 5.5 through 6.9.4.1, when the Remote Procedure Call (RPC)

    HighCVSS 8.1No exploitEPSS 6%

    windriver · vxworksFeb 7, 2017

  • CVE-2007-1043
    33Monitor

    Ezboo webstats, possibly 3.0.3, allows remote attackers to bypass authentication and gain access via a direct request to (1) update.php and

    HighCVSS 7.5Proof of conceptEPSS 8%

    hp · hp-uxFeb 21, 2007

  • Wind River VxWorks 6.9.4 and vx7 has a Buffer Overflow in the TCP component (issue 4 of 4).

    HighCVSS 8.1No exploitEPSS 3%

    windriver · vxworksAug 9, 2019