Записи 3com
41 опубликованных записей вендора 3com.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 3 · 7,3 %
- Pre-auth RCE
- 4
- С записью об исправлении
- 2,4 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-16 Configuration2
- CWE-20 Improper Input Validation2
- CWE-399 Resource Management Errors2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-134 Use of Externally-Controlled Format String1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
41 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
61На этой неделе | CVE-2006-6183Готовый эксплойт | Multiple stack-based buffer overflows in 3Com 3CTftpSvc 2.0.1, and possibly earlier, allow remote attackers to cause a denial of service (cr3com · 3ctftpsvc · CWE-119 | Критическая10,0 | — | 70,3 % | 30 нояб. 2006 г. |
42В плане | CVE-2001-1291Proof of concept | The telnet server for 3Com hardware such as PS40 SuperStack II does not delay or disconnect remote attackers who provide an incorrect userna3com · superstack ii ps hub 40 firmware · CWE-307 | Критическая9,8 | — | 8,9 % | 12 июл. 2001 г. |
41В плане | CVE-2004-0477Эксплойта нет | Unknown vulnerability in 3Com OfficeConnect Remote 812 ADSL Router allows remote attackers to bypass authentication via repeated attempts us3com · 3cp4144 | Критическая10,0 | — | 4,1 % | 6 дек. 2004 г. |
41В плане | CVE-2007-5419Эксплойта нет | The 3Com 3CRWER100-75 router with 1.2.10ww software, when enabling an optional virtual server, configures this server to accept all source I3com · 3crwe554g72t · CWE-16 | Критическая10,0 | — | 2,2 % | 12 окт. 2007 г. |
40В плане | CVE-2004-2691Готовый эксплойт | Unspecified vulnerability in 3Com SuperStack 3 4400 switches with firmware version before 3.31 allows remote attackers to cause a denial of 3com · 3c17205-us | Высокая7,1 | — | 39,1 % | 31 дек. 2004 г. |
39Наблюдать | CVE-2005-0277Готовый эксплойт | Buffer overflow in the FTP service in 3Com 3CDaemon 2.0 revision 10 allows remote attackers to cause a denial of service (application crash)3com · 3cdaemon | Средняя5,0 | — | 61,9 % | 2 мая 2005 г. |
33Наблюдать | CVE-2002-0606Proof of concept | Buffer overflow in 3Cdaemon 2.0 FTP server allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code 3com · 3cdaemon | Высокая7,5 | — | 10,6 % | 18 июн. 2002 г. |
33Наблюдать | CVE-2007-3701Proof of concept | TippingPoint IPS before 20070710 does not properly handle a hex-encoded alternate Unicode '/' (slash) character, which might allow remote attippingpoint · tipping point · CWE-20 | Высокая7,5 | — | 8,5 % | 11 июл. 2007 г. |
32Наблюдать | CVE-2002-2300Proof of concept | Buffer overflow in ftpd 5.4 in 3Com NBX 4.0.17 or ftpd 5.4.2 in 3Com NBX 4.1.4 allows remote attackers to cause a denial of service (crash) 3com · webbngss3nbxnts · CWE-119 | Высокая7,5 | — | 5,0 % | 31 дек. 2002 г. |
32Наблюдать | CVE-2008-6395Эксплойта нет | The web management interface in 3Com Wireless 8760 Dual Radio 11a/b/g PoE Access Point allows remote attackers to cause a denial of service 3com · wireless 8760 dual-radio · CWE-134 | Высокая7,8 | — | 2,5 % | 4 мар. 2009 г. |
32Наблюдать | CVE-2007-2276Эксплойта нет | 3Com TippingPoint IPS allows remote attackers to cause a denial of service (device hang) via a flood of packets on TCP port 80 with sequenti3com · tippingpoint ips · CWE-399 | Высокая7,8 | — | 1,7 % | 25 апр. 2007 г. |
31Наблюдать | CVE-2005-0419Proof of concept | Multiple heap-based buffer overflows in 3Com 3CServer allow remote authenticated users to execute arbitrary code via long FTP commands, as d3com · 3cserver | Высокая7,5 | — | 3,9 % | 27 апр. 2005 г. |
31Наблюдать | CVE-2004-1596Proof of concept | The 3COM Wireless router 3CRADSL72 running Boot Code 1.3d allows remote attackers to gain sensitive information such as passwords and router3com · 3cradsl72 | Высокая7,5 | — | 2,6 % | 13 окт. 2004 г. |
31Наблюдать | CVE-2007-2734Эксплойта нет | The 3Com TippingPoint IPS do not properly handle certain full-width and half-width Unicode character encodings in an HTTP POST request, whic3com · 3crtpx505-73 | Высокая7,5 | — | 2,1 % | 16 мая 2007 г. |
31Наблюдать | CVE-2007-3711Эксплойта нет | Unspecified vulnerability in TOS 2.1.x, 2.2.x before 2.2.5, and 2.5.x before 2.5.2 on TippingPoint IPS allows remote attackers to avoid dete3com · tippingpoint ips tos · CWE-20 | Высокая7,5 | — | 2,1 % | 11 июл. 2007 г. |
31Наблюдать | CVE-2006-5382Эксплойта нет | 3Com Switch SS3 4400 switches, firmware 5.11, 6.00 and 6.10 and earlier, allow remote attackers to read the SNMP Read-Write Community string3com · superstack 3 switch 4400 | Высокая7,5 | — | 1,7 % | 25 окт. 2006 г. |
30Наблюдать | CVE-2002-0888Эксплойта нет | 3Com OfficeConnect Remote 812 ADSL Router, firmware 1.1.9 and 1.1.7, allows remote attackers to bypass port access restrictions by connectin3com · 3cp4144 | Высокая7,5 | — | 1,6 % | 4 окт. 2002 г. |
30Наблюдать | CVE-1999-1513Эксплойта нет | Management information base (MIB) for a 3Com SuperStack II hub running software version 2.10 contains an object identifier (.1.3.6.1.4.1.43.3com · superstack ii hub | Высокая7,5 | — | 1,1 % | 30 авг. 1999 г. |
30Наблюдать | CVE-1999-1389Эксплойта нет | US Robotics/3Com Total Control Chassis with Frame Relay between 3.6.22 and 3.7.24 does not properly enforce access filters when the "set hos3com · total control netserver card | Высокая7,5 | — | 1,1 % | 11 мая 1998 г. |
27Наблюдать | CVE-2010-2103Proof of concept | Cross-site scripting (XSS) vulnerability in axis2-admin/axis2-admin/engagingglobally in the administration console in Apache Axis2/Java 1.4.apache · axis2 · CWE-79 | Средняя4,3 | — | 34,9 % | 27 мая 2010 г. |
21Наблюдать | CVE-2001-0740Proof of concept | 3COM OfficeConnect 812 and 840 ADSL Router 4.2, running OCR812 router software 1.1.9 and earlier, allows remote attackers to cause a denial 3com · 3c840-us | Средняя5,0 | — | 4,1 % | 18 окт. 2001 г. |
21Наблюдать | CVE-2001-1293Эксплойта нет | Buffer overflow in web server of 3com HomeConnect Cable Modem External with USB (#3CR29223) allows remote attackers to cause a denial of ser3com · 3cr29223 | Средняя5,0 | — | 3,6 % | 26 сент. 2001 г. |
21Наблюдать | CVE-2006-0993Эксплойта нет | The web management interface in 3Com TippingPoint SMS Server before 2.2.1.4478 does not restrict access to certain directories, which might 3com · tippingpoint sms server | Средняя5,0 | — | 2,7 % | 9 мая 2006 г. |
21Наблюдать | CVE-2004-1977Эксплойта нет | 3com NBX IP VOIP NetSet Configuration Manager allows remote attackers to cause a denial of service (crash) via a Nessus scan in safeChecks m3com · webbngss3nbxnts | Средняя5,0 | — | 2,6 % | 29 апр. 2004 г. |
21Наблюдать | CVE-2006-0362Эксплойта нет | TippingPoint Intrusion Prevention System (IPS) TOS before 2.1.4.6324, and TOS 2.2.x before 2.2.1.6506, allow remote attackers to cause a den3com · tippingpoint ips tos · CWE-399 | Средняя5,0 | — | 1,9 % | 22 янв. 2006 г. |
- CVE-2006-618361На этой неделе
Multiple stack-based buffer overflows in 3Com 3CTftpSvc 2.0.1, and possibly earlier, allow remote attackers to cause a denial of service (cr
КритическаяCVSS 10,0Готовый эксплойтEPSS 70 %3com · 3ctftpsvc30 нояб. 2006 г.
- CVE-2001-129142В плане
The telnet server for 3Com hardware such as PS40 SuperStack II does not delay or disconnect remote attackers who provide an incorrect userna
КритическаяCVSS 9,8Proof of conceptEPSS 9 %3com · superstack ii ps hub 40 firmware12 июл. 2001 г.
- CVE-2004-047741В плане
Unknown vulnerability in 3Com OfficeConnect Remote 812 ADSL Router allows remote attackers to bypass authentication via repeated attempts us
КритическаяCVSS 10,0Эксплойта нетEPSS 4 %3com · 3cp41446 дек. 2004 г.
- CVE-2007-541941В плане
The 3Com 3CRWER100-75 router with 1.2.10ww software, when enabling an optional virtual server, configures this server to accept all source I
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %3com · 3crwe554g72t12 окт. 2007 г.
- CVE-2004-269140В плане
Unspecified vulnerability in 3Com SuperStack 3 4400 switches with firmware version before 3.31 allows remote attackers to cause a denial of
ВысокаяCVSS 7,1Готовый эксплойтEPSS 39 %3com · 3c17205-us31 дек. 2004 г.
- CVE-2005-027739Наблюдать
Buffer overflow in the FTP service in 3Com 3CDaemon 2.0 revision 10 allows remote attackers to cause a denial of service (application crash)
СредняяCVSS 5,0Готовый эксплойтEPSS 62 %3com · 3cdaemon2 мая 2005 г.
- CVE-2002-060633Наблюдать
Buffer overflow in 3Cdaemon 2.0 FTP server allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code
ВысокаяCVSS 7,5Proof of conceptEPSS 11 %3com · 3cdaemon18 июн. 2002 г.
- CVE-2007-370133Наблюдать
TippingPoint IPS before 20070710 does not properly handle a hex-encoded alternate Unicode '/' (slash) character, which might allow remote at
ВысокаяCVSS 7,5Proof of conceptEPSS 8 %tippingpoint · tipping point11 июл. 2007 г.
- CVE-2002-230032Наблюдать
Buffer overflow in ftpd 5.4 in 3Com NBX 4.0.17 or ftpd 5.4.2 in 3Com NBX 4.1.4 allows remote attackers to cause a denial of service (crash)
ВысокаяCVSS 7,5Proof of conceptEPSS 5 %3com · webbngss3nbxnts31 дек. 2002 г.
- CVE-2008-639532Наблюдать
The web management interface in 3Com Wireless 8760 Dual Radio 11a/b/g PoE Access Point allows remote attackers to cause a denial of service
ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %3com · wireless 8760 dual-radio4 мар. 2009 г.
- CVE-2007-227632Наблюдать
3Com TippingPoint IPS allows remote attackers to cause a denial of service (device hang) via a flood of packets on TCP port 80 with sequenti
ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %3com · tippingpoint ips25 апр. 2007 г.
- CVE-2005-041931Наблюдать
Multiple heap-based buffer overflows in 3Com 3CServer allow remote authenticated users to execute arbitrary code via long FTP commands, as d
ВысокаяCVSS 7,5Proof of conceptEPSS 4 %3com · 3cserver27 апр. 2005 г.
- CVE-2004-159631Наблюдать
The 3COM Wireless router 3CRADSL72 running Boot Code 1.3d allows remote attackers to gain sensitive information such as passwords and router
ВысокаяCVSS 7,5Proof of conceptEPSS 3 %3com · 3cradsl7213 окт. 2004 г.
- CVE-2007-273431Наблюдать
The 3Com TippingPoint IPS do not properly handle certain full-width and half-width Unicode character encodings in an HTTP POST request, whic
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %3com · 3crtpx505-7316 мая 2007 г.
- CVE-2007-371131Наблюдать
Unspecified vulnerability in TOS 2.1.x, 2.2.x before 2.2.5, and 2.5.x before 2.5.2 on TippingPoint IPS allows remote attackers to avoid dete
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %3com · tippingpoint ips tos11 июл. 2007 г.
- CVE-2006-538231Наблюдать
3Com Switch SS3 4400 switches, firmware 5.11, 6.00 and 6.10 and earlier, allow remote attackers to read the SNMP Read-Write Community string
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %3com · superstack 3 switch 440025 окт. 2006 г.
- CVE-2002-088830Наблюдать
3Com OfficeConnect Remote 812 ADSL Router, firmware 1.1.9 and 1.1.7, allows remote attackers to bypass port access restrictions by connectin
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %3com · 3cp41444 окт. 2002 г.
- CVE-1999-151330Наблюдать
Management information base (MIB) for a 3Com SuperStack II hub running software version 2.10 contains an object identifier (.1.3.6.1.4.1.43.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %3com · superstack ii hub30 авг. 1999 г.
- CVE-1999-138930Наблюдать
US Robotics/3Com Total Control Chassis with Frame Relay between 3.6.22 and 3.7.24 does not properly enforce access filters when the "set hos
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %3com · total control netserver card11 мая 1998 г.
- CVE-2010-210327Наблюдать
Cross-site scripting (XSS) vulnerability in axis2-admin/axis2-admin/engagingglobally in the administration console in Apache Axis2/Java 1.4.
СредняяCVSS 4,3Proof of conceptEPSS 35 %apache · axis227 мая 2010 г.
- CVE-2001-074021Наблюдать
3COM OfficeConnect 812 and 840 ADSL Router 4.2, running OCR812 router software 1.1.9 and earlier, allows remote attackers to cause a denial
СредняяCVSS 5,0Proof of conceptEPSS 4 %3com · 3c840-us18 окт. 2001 г.
- CVE-2001-129321Наблюдать
Buffer overflow in web server of 3com HomeConnect Cable Modem External with USB (#3CR29223) allows remote attackers to cause a denial of ser
СредняяCVSS 5,0Эксплойта нетEPSS 4 %3com · 3cr2922326 сент. 2001 г.
- CVE-2006-099321Наблюдать
The web management interface in 3Com TippingPoint SMS Server before 2.2.1.4478 does not restrict access to certain directories, which might
СредняяCVSS 5,0Эксплойта нетEPSS 3 %3com · tippingpoint sms server9 мая 2006 г.
- CVE-2004-197721Наблюдать
3com NBX IP VOIP NetSet Configuration Manager allows remote attackers to cause a denial of service (crash) via a Nessus scan in safeChecks m
СредняяCVSS 5,0Эксплойта нетEPSS 3 %3com · webbngss3nbxnts29 апр. 2004 г.
- CVE-2006-036221Наблюдать
TippingPoint Intrusion Prevention System (IPS) TOS before 2.1.4.6324, and TOS 2.2.x before 2.2.1.6506, allow remote attackers to cause a den
СредняяCVSS 5,0Эксплойта нетEPSS 2 %3com · tippingpoint ips tos22 янв. 2006 г.