Записи Bloomberg
6 опубликованных записей вендора bloomberg.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 16,7 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-476 NULL Pointer Dereference3
- CWE-617 Reachable Assertion2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
30Наблюдать | CVE-2025-36520Эксплойта нет | A null pointer dereference vulnerability exists in the net_connectmsg Protocol Buffer Message functionality of Bloomberg Comdb2 8.1.bloomberg · comdb2 · CWE-476 | Высокая7,5 | — | 0,9 % | 22 июл. 2025 г. |
30Наблюдать | CVE-2025-46354Эксплойта нет | A denial of service vulnerability exists in the Distributed Transaction Commit/Abort Operation functionality of Bloomberg Comdb2 8.1.bloomberg · comdb2 · CWE-617 | Высокая7,5 | — | 0,8 % | 22 июл. 2025 г. |
30Наблюдать | CVE-2025-35966Эксплойта нет | A null pointer dereference vulnerability exists in the CDB2SQLQUERY protocol buffer message handling of Bloomberg Comdb2 8.1.bloomberg · comdb2 · CWE-476 | Высокая7,5 | — | 0,6 % | 22 июл. 2025 г. |
30Наблюдать | CVE-2025-48498Эксплойта нет | A null pointer dereference vulnerability exists in the Distributed Transaction component of Bloomberg Comdb2 8.1 when processing a number ofbloomberg · comdb2 · CWE-476 | Высокая7,5 | — | 0,6 % | 22 июл. 2025 г. |
30Наблюдать | CVE-2025-36512Эксплойта нет | A denial of service vulnerability exists in the Bloomberg Comdb2 8.1 database when handling a distributed transaction heartbeat.bloomberg · comdb2 · CWE-617 | Высокая7,5 | — | 0,5 % | 22 июл. 2025 г. |
24Наблюдать | CVE-2026-32722Proof of concept | Memray-generated HTML reports vulnerable to Stored XSS via unescaped command-line metadatabloomberg · memray · CWE-79 | Средняя6,1 | — | 0,4 % | 18 мар. 2026 г. |
- CVE-2025-3652030Наблюдать
A null pointer dereference vulnerability exists in the net_connectmsg Protocol Buffer Message functionality of Bloomberg Comdb2 8.1.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %bloomberg · comdb222 июл. 2025 г.
- CVE-2025-4635430Наблюдать
A denial of service vulnerability exists in the Distributed Transaction Commit/Abort Operation functionality of Bloomberg Comdb2 8.1.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %bloomberg · comdb222 июл. 2025 г.
- CVE-2025-3596630Наблюдать
A null pointer dereference vulnerability exists in the CDB2SQLQUERY protocol buffer message handling of Bloomberg Comdb2 8.1.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %bloomberg · comdb222 июл. 2025 г.
- CVE-2025-4849830Наблюдать
A null pointer dereference vulnerability exists in the Distributed Transaction component of Bloomberg Comdb2 8.1 when processing a number of
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %bloomberg · comdb222 июл. 2025 г.
- CVE-2025-3651230Наблюдать
A denial of service vulnerability exists in the Bloomberg Comdb2 8.1 database when handling a distributed transaction heartbeat.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %bloomberg · comdb222 июл. 2025 г.
- CVE-2026-3272224Наблюдать
Memray-generated HTML reports vulnerable to Stored XSS via unescaped command-line metadata
СредняяCVSS 6,1Proof of conceptEPSS 0 %bloomberg · memray18 мар. 2026 г.