Записи arj software
3 опубликованных записей вендора arj software.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 100 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-59 Improper Link Resolution Before File Access ('Link Following')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
3 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
32Наблюдать | CVE-2015-2782Эксплойта нет | Buffer overflow in Open-source ARJ archiver 3.10.22 allows remote attackers to cause a denial of service (crash) or possibly execute arbitradebian · debian linux · CWE-119 | Высокая7,5 | — | 5,8 % | 8 апр. 2015 г. |
24Наблюдать | CVE-2015-0556Эксплойта нет | Open-source ARJ archiver 3.10.22 allows remote attackers to conduct directory traversal attacks via a symlink attack in an ARJ archive.arj software · arj archiver · CWE-59 | Средняя5,8 | — | 3,8 % | 8 апр. 2015 г. |
24Наблюдать | CVE-2015-0557Эксплойта нет | Open-source ARJ archiver 3.10.22 does not properly remove leading slashes from paths, which allows remote attackers to conduct absolute patharj software · arj archiver · CWE-22 | Средняя5,8 | — | 3,3 % | 8 апр. 2015 г. |
- CVE-2015-278232Наблюдать
Buffer overflow in Open-source ARJ archiver 3.10.22 allows remote attackers to cause a denial of service (crash) or possibly execute arbitra
ВысокаяCVSS 7,5Эксплойта нетEPSS 6 %debian · debian linux8 апр. 2015 г.
- CVE-2015-055624Наблюдать
Open-source ARJ archiver 3.10.22 allows remote attackers to conduct directory traversal attacks via a symlink attack in an ARJ archive.
СредняяCVSS 5,8Эксплойта нетEPSS 4 %arj software · arj archiver8 апр. 2015 г.
- CVE-2015-055724Наблюдать
Open-source ARJ archiver 3.10.22 does not properly remove leading slashes from paths, which allows remote attackers to conduct absolute path
СредняяCVSS 5,8Эксплойта нетEPSS 3 %arj software · arj archiver8 апр. 2015 г.