Записи Bitlbee
6 опубликованных записей вендора bitlbee.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 100 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-476 NULL Pointer Dereference2
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-273 Improper Check for Dropped Privileges1
- CWE-416 Use After Free1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2017-5668Эксплойта нет | bitlbee-libpurple before 3.5.1 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly executbitlbee · bitlbee · CWE-476 | Критическая9,8 | — | 3,0 % | 14 мар. 2017 г. |
40В плане | CVE-2016-10188Эксплойта нет | Use-after-free vulnerability in bitlbee-libpurple before 3.5 allows remote servers to cause a denial of service (crash) or possibly execute bitlbee · bitlbee · CWE-416 | Критическая9,8 | — | 2,9 % | 14 мар. 2017 г. |
39Наблюдать | CVE-2012-1187Эксплойта нет | Bitlbee does not drop extra group privileges correctly in unix.cbitlbee · bitlbee · CWE-273 | Критическая9,8 | — | 1,6 % | 29 окт. 2019 г. |
31Наблюдать | CVE-2016-10189Эксплойта нет | BitlBee before 3.5 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly execute arbitrary bitlbee · bitlbee · CWE-476 | Высокая7,5 | — | 4,0 % | 14 мар. 2017 г. |
31Наблюдать | CVE-2008-3920Эксплойта нет | Unspecified vulnerability in BitlBee before 1.2.2 allows remote attackers to "recreate" and "hijack" existing accounts via unspecified vectobitlbee · bitlbee · CWE-264 | Высокая7,5 | — | 2,1 % | 4 сент. 2008 г. |
21Наблюдать | CVE-2008-3969Эксплойта нет | Multiple unspecified vulnerabilities in BitlBee before 1.2.3 allow remote attackers to "overwrite" and "hijack" existing accounts via unknowbitlbee · bitlbee | Средняя5,0 | — | 2,4 % | 10 сент. 2008 г. |
- CVE-2017-566840В плане
bitlbee-libpurple before 3.5.1 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly execut
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %bitlbee · bitlbee14 мар. 2017 г.
- CVE-2016-1018840В плане
Use-after-free vulnerability in bitlbee-libpurple before 3.5 allows remote servers to cause a denial of service (crash) or possibly execute
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %bitlbee · bitlbee14 мар. 2017 г.
- CVE-2012-118739Наблюдать
Bitlbee does not drop extra group privileges correctly in unix.c
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %bitlbee · bitlbee29 окт. 2019 г.
- CVE-2016-1018931Наблюдать
BitlBee before 3.5 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly execute arbitrary
ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %bitlbee · bitlbee14 мар. 2017 г.
- CVE-2008-392031Наблюдать
Unspecified vulnerability in BitlBee before 1.2.2 allows remote attackers to "recreate" and "hijack" existing accounts via unspecified vecto
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %bitlbee · bitlbee4 сент. 2008 г.
- CVE-2008-396921Наблюдать
Multiple unspecified vulnerabilities in BitlBee before 1.2.3 allow remote attackers to "overwrite" and "hijack" existing accounts via unknow
СредняяCVSS 5,0Эксплойта нетEPSS 2 %bitlbee · bitlbee10 сент. 2008 г.