Записи Broadcom
698 опубликованных записей вендора broadcom.
Профиль для исследователя
- Попали в KEV
- 4 · 0,6 %
- С эксплойтом
- 25 · 3,6 %
- Pre-auth RCE
- 98
- С записью об исправлении
- 24,8 %
- Медиана: публикация → KEV
- 760 дн.
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')46
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer37
- CWE-20 Improper Input Validation25
- CWE-532 Insertion of Sensitive Information into Log File19
- CWE-125 Out-of-bounds Read17
- CWE-287 Improper Authentication14
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
698 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
98Срочно | CVE-2018-1273Готовый эксплойт | Spring Data Commons, versions prior to 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported versions, contain a property binder vulnerabilitbroadcom · spring data commons · CWE-94 | Критическая9,8 | KEV | 97,0 % | 11 апр. 2018 г. |
96Срочно | CVE-2021-40438Готовый эксплойт | A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user.resf · rocky linux · CWE-918 | Критическая9,0 | KEV | 100,0 % | 16 сент. 2021 г. |
90Срочно | CVE-2014-0160Готовый эксплойт | The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packets, which allows remopenssl · openssl · CWE-125 | Высокая7,5 | KEV | 100,0 % | 7 апр. 2014 г. |
68На этой неделе | CVE-2010-0425Готовый эксплойт | modules/arch/win32/mod_isapi.c in mod_isapi in the Apache HTTP Server 2.0.37 through 2.0.63, 2.2.0 through 2.2.14, and 2.3.x before 2.3.7, wapache · http server | Критическая10,0 | — | 94,2 % | 5 мар. 2010 г. |
67На этой неделе | CVE-2011-1653Готовый эксплойт | Multiple SQL injection vulnerabilities in the Unified Network Control (UNC) Server in CA Total Defense (TD) r12 before SE2 allow remote attabroadcom · total defense · CWE-89 | Критическая10,0 | — | 88,7 % | 18 апр. 2011 г. |
64На этой неделе | CVE-2008-4397Готовый эксплойт | Directory traversal vulnerability in the RPC interface (asdbapi.dll) in CA ARCserve Backup (formerly BrightStor ARCserve Backup) r11.1 throuca · arcserve backup · CWE-20 | Критическая10,0 | — | 80,5 % | 14 окт. 2008 г. |
64На этой неделе | CVE-2007-0449Готовый эксплойт | Multiple buffer overflows in LGSERVER.EXE in CA BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.1 SP1, Mobile Backup rbroadcom · brightstor arcserve backup laptops desktops · CWE-119 | Критическая10,0 | — | 79,4 % | 23 янв. 2007 г. |
64На этой неделе | CVE-2025-1976Готовый эксплойт | Code injection exposure in Fabric OS 9.1.0 through 9.1.1d6broadcom · fabric operating system · CWE-94 | Высокая8,6 | KEV | 0,7 % | 23 апр. 2025 г. |
63На этой неделе | CVE-2007-2139Готовый эксплойт | Multiple stack-based buffer overflows in the SUN RPC service in CA (formerly Computer Associates) BrightStor ARCserve Media Server, as used ca · brightstor arcserve backup | Критическая10,0 | — | 78,0 % | 25 апр. 2007 г. |
63На этой неделе | CVE-2005-2668Готовый эксплойт | Multiple buffer overflows in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_ca · etrust admin | Критическая10,0 | — | 75,2 % | 23 авг. 2005 г. |
62На этой неделе | CVE-2020-8012Готовый эксплойт | CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains a buffer overflow vulnerability in the robot (cbroadcom · unified infrastructure management · CWE-120 | Критическая9,8 | — | 77,4 % | 18 февр. 2020 г. |
61На этой неделе | CVE-2006-6076Готовый эксплойт | Buffer overflow in the Tape Engine (tapeeng.exe) in CA (formerly Computer Associates) BrightStor ARCserve Backup 11.5 and earlier allows remca · brightstor arcserve backup | Критическая10,0 | — | 70,9 % | 24 нояб. 2006 г. |
61На этой неделе | CVE-2005-0260Готовый эксплойт | Stack-based buffer overflow in the Discovery Service for BrightStor ARCserve Backup 11.1 and earlier allows remote attackers to execute arbibroadcom · brightstor arcserve backup | Критическая10,0 | — | 69,7 % | 2 мая 2005 г. |
60На этой неделе | CVE-2007-5003Готовый эксплойт | Multiple stack-based buffer overflows in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 alca · protection suites · CWE-119 | Критическая10,0 | — | 67,2 % | 1 окт. 2007 г. |
59В плане | CVE-2022-23305Proof of concept | SQL injection in JDBC Appender in Apache Log4j V1apache · log4j · CWE-89 | Критическая9,8 | — | 66,5 % | 18 янв. 2022 г. |
59В плане | CVE-2007-5082Готовый эксплойт | Multiple stack-based buffer overflows in Computer Associates (CA) BrightStor Hierarchical Storage Manager (HSM) before r11.6 allow remote atbroadcom · brightstor hierarchical storage manager · CWE-119 | Критическая10,0 | — | 63,5 % | 1 окт. 2007 г. |
58В плане | CVE-2022-2068Эксплойта нет | The c_rehash script allows command injectionopenssl · openssl · CWE-78 | Высокая7,3 | — | 95,4 % | 21 июн. 2022 г. |
58В плане | CVE-2017-9417Proof of concept | Broadcom BCM43xx Wi-Fi chips allow remote attackers to execute arbitrary code via unspecified vectors, aka the "Broadpwn" issue.broadcom · bcm43xx wi-fi chipset firmware | Критическая9,8 | — | 64,0 % | 4 июн. 2017 г. |
58В плане | CVE-2007-3216Готовый эксплойт | Multiple buffer overflows in the LGServer component of CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.1 albroadcom · brightstor arcserve backup laptops desktops · CWE-119 | Критическая10,0 | — | 59,2 % | 14 июн. 2007 г. |
54В плане | CVE-2005-2535Готовый эксплойт | Buffer overflow in the Discovery Service in BrightStor ARCserve Backup 9.0 through 11.1 allows remote attackers to execute arbitrary commandbroadcom · arcserve backup 2000 | Высокая7,5 | — | 80,9 % | 10 авг. 2005 г. |
54В плане | CVE-2006-5143Готовый эксплойт | Multiple buffer overflows in CA BrightStor ARCserve Backup r11.5 SP1 and earlier, r11.1, and 9.01; BrightStor ARCserve Backup for Windows r1ca · brightstor arcserve backup · CWE-119 | Высокая7,5 | — | 79,5 % | 10 окт. 2006 г. |
54В плане | CVE-2022-23302Эксплойта нет | Deserialization of untrusted data in JMSSink in Apache Log4j 1.xapache · log4j · CWE-502 | Высокая8,8 | — | 63,6 % | 18 янв. 2022 г. |
54В плане | CVE-2020-8010Готовый эксплойт | CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains an improper ACL handling vulnerability in the rbroadcom · unified infrastructure management | Критическая9,8 | — | 50,7 % | 18 февр. 2020 г. |
54В плане | CVE-2004-1812Эксплойта нет | Multiple stack-based buffer overflows in Agent Common Services (1) cam.exe and (2) awservices.exe in Unicenter TNG 2.4 allow remote attackerbroadcom · unicenter tng | Критическая10,0 | — | 45,2 % | 31 дек. 2004 г. |
52В плане | CVE-2007-4620Готовый эксплойт | Multiple stack-based buffer overflows in Computer Associates (CA) Alert Notification Service (Alert.exe) 8.1.586.0, 8.0.450.0, and 7.1.758.0ca · brightstor arcserve backup · CWE-119 | Критическая9,0 | — | 52,3 % | 7 апр. 2008 г. |
- CVE-2018-127398Срочно
Spring Data Commons, versions prior to 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported versions, contain a property binder vulnerabilit
КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 97 %broadcom · spring data commons11 апр. 2018 г.
- CVE-2021-4043896Срочно
A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user.
КритическаяCVSS 9,0KEVГотовый эксплойтEPSS 100 %resf · rocky linux16 сент. 2021 г.
- CVE-2014-016090Срочно
The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packets, which allows rem
ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 100 %openssl · openssl7 апр. 2014 г.
- CVE-2010-042568На этой неделе
modules/arch/win32/mod_isapi.c in mod_isapi in the Apache HTTP Server 2.0.37 through 2.0.63, 2.2.0 through 2.2.14, and 2.3.x before 2.3.7, w
КритическаяCVSS 10,0Готовый эксплойтEPSS 94 %apache · http server5 мар. 2010 г.
- CVE-2011-165367На этой неделе
Multiple SQL injection vulnerabilities in the Unified Network Control (UNC) Server in CA Total Defense (TD) r12 before SE2 allow remote atta
КритическаяCVSS 10,0Готовый эксплойтEPSS 89 %broadcom · total defense18 апр. 2011 г.
- CVE-2008-439764На этой неделе
Directory traversal vulnerability in the RPC interface (asdbapi.dll) in CA ARCserve Backup (formerly BrightStor ARCserve Backup) r11.1 throu
КритическаяCVSS 10,0Готовый эксплойтEPSS 81 %ca · arcserve backup14 окт. 2008 г.
- CVE-2007-044964На этой неделе
Multiple buffer overflows in LGSERVER.EXE in CA BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.1 SP1, Mobile Backup r
КритическаяCVSS 10,0Готовый эксплойтEPSS 79 %broadcom · brightstor arcserve backup laptops desktops23 янв. 2007 г.
- CVE-2025-197664На этой неделе
Code injection exposure in Fabric OS 9.1.0 through 9.1.1d6
ВысокаяCVSS 8,6KEVГотовый эксплойтEPSS 1 %broadcom · fabric operating system23 апр. 2025 г.
- CVE-2007-213963На этой неделе
Multiple stack-based buffer overflows in the SUN RPC service in CA (formerly Computer Associates) BrightStor ARCserve Media Server, as used
КритическаяCVSS 10,0Готовый эксплойтEPSS 78 %ca · brightstor arcserve backup25 апр. 2007 г.
- CVE-2005-266863На этой неделе
Multiple buffer overflows in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_
КритическаяCVSS 10,0Готовый эксплойтEPSS 75 %ca · etrust admin23 авг. 2005 г.
- CVE-2020-801262На этой неделе
CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains a buffer overflow vulnerability in the robot (c
КритическаяCVSS 9,8Готовый эксплойтEPSS 77 %broadcom · unified infrastructure management18 февр. 2020 г.
- CVE-2006-607661На этой неделе
Buffer overflow in the Tape Engine (tapeeng.exe) in CA (formerly Computer Associates) BrightStor ARCserve Backup 11.5 and earlier allows rem
КритическаяCVSS 10,0Готовый эксплойтEPSS 71 %ca · brightstor arcserve backup24 нояб. 2006 г.
- CVE-2005-026061На этой неделе
Stack-based buffer overflow in the Discovery Service for BrightStor ARCserve Backup 11.1 and earlier allows remote attackers to execute arbi
КритическаяCVSS 10,0Готовый эксплойтEPSS 70 %broadcom · brightstor arcserve backup2 мая 2005 г.
- CVE-2007-500360На этой неделе
Multiple stack-based buffer overflows in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 al
КритическаяCVSS 10,0Готовый эксплойтEPSS 67 %ca · protection suites1 окт. 2007 г.
- CVE-2022-2330559В плане
SQL injection in JDBC Appender in Apache Log4j V1
КритическаяCVSS 9,8Proof of conceptEPSS 67 %apache · log4j18 янв. 2022 г.
- CVE-2007-508259В плане
Multiple stack-based buffer overflows in Computer Associates (CA) BrightStor Hierarchical Storage Manager (HSM) before r11.6 allow remote at
КритическаяCVSS 10,0Готовый эксплойтEPSS 63 %broadcom · brightstor hierarchical storage manager1 окт. 2007 г.
- CVE-2022-206858В плане
The c_rehash script allows command injection
ВысокаяCVSS 7,3Эксплойта нетEPSS 95 %openssl · openssl21 июн. 2022 г.
- CVE-2017-941758В плане
Broadcom BCM43xx Wi-Fi chips allow remote attackers to execute arbitrary code via unspecified vectors, aka the "Broadpwn" issue.
КритическаяCVSS 9,8Proof of conceptEPSS 64 %broadcom · bcm43xx wi-fi chipset firmware4 июн. 2017 г.
- CVE-2007-321658В плане
Multiple buffer overflows in the LGServer component of CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.1 al
КритическаяCVSS 10,0Готовый эксплойтEPSS 59 %broadcom · brightstor arcserve backup laptops desktops14 июн. 2007 г.
- CVE-2005-253554В плане
Buffer overflow in the Discovery Service in BrightStor ARCserve Backup 9.0 through 11.1 allows remote attackers to execute arbitrary command
ВысокаяCVSS 7,5Готовый эксплойтEPSS 81 %broadcom · arcserve backup 200010 авг. 2005 г.
- CVE-2006-514354В плане
Multiple buffer overflows in CA BrightStor ARCserve Backup r11.5 SP1 and earlier, r11.1, and 9.01; BrightStor ARCserve Backup for Windows r1
ВысокаяCVSS 7,5Готовый эксплойтEPSS 80 %ca · brightstor arcserve backup10 окт. 2006 г.
- CVE-2022-2330254В плане
Deserialization of untrusted data in JMSSink in Apache Log4j 1.x
ВысокаяCVSS 8,8Эксплойта нетEPSS 64 %apache · log4j18 янв. 2022 г.
- CVE-2020-801054В плане
CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains an improper ACL handling vulnerability in the r
КритическаяCVSS 9,8Готовый эксплойтEPSS 51 %broadcom · unified infrastructure management18 февр. 2020 г.
- CVE-2004-181254В плане
Multiple stack-based buffer overflows in Agent Common Services (1) cam.exe and (2) awservices.exe in Unicenter TNG 2.4 allow remote attacker
КритическаяCVSS 10,0Эксплойта нетEPSS 45 %broadcom · unicenter tng31 дек. 2004 г.
- CVE-2007-462052В плане
Multiple stack-based buffer overflows in Computer Associates (CA) Alert Notification Service (Alert.exe) 8.1.586.0, 8.0.450.0, and 7.1.758.0
КритическаяCVSS 9,0Готовый эксплойтEPSS 52 %ca · brightstor arcserve backup7 апр. 2008 г.