xinetd records
8 published records for vendor xinetd.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 50%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
8 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2001-0825No exploit | Buffer overflow in internal string handling routines of xinetd before 2.1.8.8 allows remote attackers to execute arbitrary commands via a lexinetd · xinetd | Critical10.0 | — | 3.6% | Dec 6, 2001 |
32Monitor | CVE-2013-4342No exploit | xinetd does not enforce the user and group configuration directives for TCPMUX services, which causes these services to be run as root and mxinetd · xinetd · CWE-264 | High7.6 | — | 6.4% | Oct 9, 2013 |
31Monitor | CVE-2001-1389No exploit | Multiple vulnerabilities in xinetd 2.3.0 and earlier, and additional variants until 2.3.3, may allow remote attackers to cause a denial of sxinetd · xinetd | High7.5 | — | 3.3% | Aug 29, 2001 |
31Monitor | CVE-2000-0536No exploit | xinetd 2.1.8.x does not properly restrict connections if hostnames are used for access control and the connecting host does not have a reverxinetd · xinetd | High7.5 | — | 2.1% | Jun 4, 2000 |
23Monitor | CVE-2003-0211Proof of concept | Memory leak in xinetd 2.3.10 allows remote attackers to cause a denial of service (memory consumption) via a large number of rejected connecxinetd · xinetd | Medium5.0 | — | 8.9% | May 5, 2003 |
18Monitor | CVE-2012-0862No exploit | builtins.c in Xinetd before 2.3.15 does not check the service type when the tcpmux-server service is enabled, which exposes all enabled servxinetd · xinetd · CWE-20 | Medium4.3 | — | 2.8% | Jun 4, 2012 |
14Monitor | CVE-2001-1322No exploit | xinetd 2.1.8 and earlier runs with a default umask of 0, which could allow local users to read or modify files that are created by an applicxinetd · xinetd | Low3.6 | — | 0.4% | Jul 10, 2001 |
8Monitor | CVE-2002-0871No exploit | xinetd 2.3.4 leaks file descriptors for the signal pipe to services that are launched by xinetd, which could allow those services to cause axinetd · xinetd | Low2.1 | — | 0.4% | Sep 5, 2002 |
- CVE-2001-082541Plan
Buffer overflow in internal string handling routines of xinetd before 2.1.8.8 allows remote attackers to execute arbitrary commands via a le
CriticalCVSS 10.0No exploitEPSS 4%xinetd · xinetdDec 6, 2001
- CVE-2013-434232Monitor
xinetd does not enforce the user and group configuration directives for TCPMUX services, which causes these services to be run as root and m
HighCVSS 7.6No exploitEPSS 6%xinetd · xinetdOct 9, 2013
- CVE-2001-138931Monitor
Multiple vulnerabilities in xinetd 2.3.0 and earlier, and additional variants until 2.3.3, may allow remote attackers to cause a denial of s
HighCVSS 7.5No exploitEPSS 3%xinetd · xinetdAug 29, 2001
- CVE-2000-053631Monitor
xinetd 2.1.8.x does not properly restrict connections if hostnames are used for access control and the connecting host does not have a rever
HighCVSS 7.5No exploitEPSS 2%xinetd · xinetdJun 4, 2000
- CVE-2003-021123Monitor
Memory leak in xinetd 2.3.10 allows remote attackers to cause a denial of service (memory consumption) via a large number of rejected connec
MediumCVSS 5.0Proof of conceptEPSS 9%xinetd · xinetdMay 5, 2003
- CVE-2012-086218Monitor
builtins.c in Xinetd before 2.3.15 does not check the service type when the tcpmux-server service is enabled, which exposes all enabled serv
MediumCVSS 4.3No exploitEPSS 3%xinetd · xinetdJun 4, 2012
- CVE-2001-132214Monitor
xinetd 2.1.8 and earlier runs with a default umask of 0, which could allow local users to read or modify files that are created by an applic
LowCVSS 3.6No exploitEPSS 0%xinetd · xinetdJul 10, 2001
- CVE-2002-08718Monitor
xinetd 2.3.4 leaks file descriptors for the signal pipe to services that are launched by xinetd, which could allow those services to cause a
LowCVSS 2.1No exploitEPSS 0%xinetd · xinetdSep 5, 2002