Skip to content
Noroxi

xArrow records

7 published records for vendor xarrow.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
5
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

7 records
  • Integer overflow in the server in xArrow before 3.4.1 allows remote attackers to execute arbitrary code via a crafted packet that triggers a

    CriticalCVSS 10.0No exploitEPSS 5%

    xarrow · xarrowMay 25, 2012

  • Heap-based buffer overflow in the server in xArrow before 3.4.1 allows remote attackers to execute arbitrary code via packets that trigger a

    CriticalCVSS 10.0No exploitEPSS 4%

    xarrow · xarrowMay 25, 2012

  • The server in xArrow before 3.4.1 performs an invalid read operation, which allows remote attackers to execute arbitrary code via unspecifie

    CriticalCVSS 10.0No exploitEPSS 4%

    xarrow · xarrowMay 25, 2012

  • CVE-2012-2426
    32Monitor

    The server in xArrow before 3.4.1 does not properly allocate memory, which allows remote attackers to cause a denial of service (NULL pointe

    HighCVSS 7.8No exploitEPSS 2%

    xarrow · xarrowMay 25, 2012

  • xArrow SCADA Path Traversal

    HighCVSS 7.8No exploitEPSS 0%

    xarrow · xarrowMay 16, 2022

  • xArrow SCADA Cross-site Scripting

    MediumCVSS 6.1No exploitEPSS 1%

    xarrow · xarrowMay 16, 2022

  • xArrow SCADA Cross-site Scripting

    MediumCVSS 6.1No exploitEPSS 1%

    xarrow · xarrowMay 16, 2022