Записи Inkscape
10 опубликованных записей вендора inkscape.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 100 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-611 Improper Restriction of XML External Entity Reference2
- CWE-125 Out-of-bounds Read1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-787 Out-of-bounds Write1
- CWE-824 Access of Uninitialized Pointer1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
10 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
31Наблюдать | CVE-2021-42704Эксплойта нет | Inkscape Out-of-bounds Writeinkscape · inkscape · CWE-787 | Высокая7,8 | — | 1,5 % | 18 мая 2022 г. |
28Наблюдать | CVE-2007-1463Эксплойта нет | Format string vulnerability in Inkscape before 0.45.1 allows user-assisted remote attackers to execute arbitrary code via format string specinkscape · inkscape | Средняя6,8 | — | 3,4 % | 21 мар. 2007 г. |
28Наблюдать | CVE-2007-1464Эксплойта нет | Format string vulnerability in the whiteboard Jabber protocol in Inkscape before 0.45.1 allows user-assisted remote attackers to execute arbinkscape · inkscape | Средняя6,8 | — | 3,2 % | 21 мар. 2007 г. |
25Наблюдать | CVE-2026-4980Эксплойта нет | Improper Restriction of XML External Entity Reference in Inkscapeinkscape · inkscape · CWE-611 | Средняя6,3 | — | 0,2 % | 27 мар. 2026 г. |
24Наблюдать | CVE-2005-3737Proof of concept | Buffer overflow in the SVG importer (style.cpp) of inkscape 0.41 through 0.42.2 might allow remote attackers to execute arbitrary code via ainkscape · inkscape | Средняя5,1 | — | 13,4 % | 21 нояб. 2005 г. |
22Наблюдать | CVE-2012-5656Эксплойта нет | The rasterization process in Inkscape before 0.48.4 allows local users to read arbitrary files via an external entity in a SVG file, aka an inkscape · inkscape · CWE-611 | Средняя5,5 | — | 1,2 % | 18 янв. 2013 г. |
17Наблюдать | CVE-2012-6076Эксплойта нет | Inkscape before 0.48.4 reads .eps files from /tmp instead of the current directory, which might cause Inkspace to process unintended files, inkscape · inkscape · CWE-264 | Средняя4,4 | — | 0,5 % | 12 мар. 2013 г. |
13Наблюдать | CVE-2021-42702Эксплойта нет | Inkscape Access of Uninitialized Pointerinkscape · inkscape · CWE-824 | Низкая3,3 | — | 1,0 % | 18 мая 2022 г. |
13Наблюдать | CVE-2021-42700Эксплойта нет | Inkscape Out-of-bounds Readinkscape · inkscape · CWE-125 | Низкая3,3 | — | 0,8 % | 18 мая 2022 г. |
8Наблюдать | CVE-2005-3885Эксплойта нет | The ps2epsi extension shell script (ps2epsi.sh) in Inkscape before 0.41 allows local users to overwrite arbitrary files via a symlink attackinkscape · inkscape | Низкая2,1 | — | 0,3 % | 29 нояб. 2005 г. |
- CVE-2021-4270431Наблюдать
Inkscape Out-of-bounds Write
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %inkscape · inkscape18 мая 2022 г.
- CVE-2007-146328Наблюдать
Format string vulnerability in Inkscape before 0.45.1 allows user-assisted remote attackers to execute arbitrary code via format string spec
СредняяCVSS 6,8Эксплойта нетEPSS 3 %inkscape · inkscape21 мар. 2007 г.
- CVE-2007-146428Наблюдать
Format string vulnerability in the whiteboard Jabber protocol in Inkscape before 0.45.1 allows user-assisted remote attackers to execute arb
СредняяCVSS 6,8Эксплойта нетEPSS 3 %inkscape · inkscape21 мар. 2007 г.
- CVE-2026-498025Наблюдать
Improper Restriction of XML External Entity Reference in Inkscape
СредняяCVSS 6,3Эксплойта нетEPSS 0 %inkscape · inkscape27 мар. 2026 г.
- CVE-2005-373724Наблюдать
Buffer overflow in the SVG importer (style.cpp) of inkscape 0.41 through 0.42.2 might allow remote attackers to execute arbitrary code via a
СредняяCVSS 5,1Proof of conceptEPSS 13 %inkscape · inkscape21 нояб. 2005 г.
- CVE-2012-565622Наблюдать
The rasterization process in Inkscape before 0.48.4 allows local users to read arbitrary files via an external entity in a SVG file, aka an
СредняяCVSS 5,5Эксплойта нетEPSS 1 %inkscape · inkscape18 янв. 2013 г.
- CVE-2012-607617Наблюдать
Inkscape before 0.48.4 reads .eps files from /tmp instead of the current directory, which might cause Inkspace to process unintended files,
СредняяCVSS 4,4Эксплойта нетEPSS 0 %inkscape · inkscape12 мар. 2013 г.
- CVE-2021-4270213Наблюдать
Inkscape Access of Uninitialized Pointer
НизкаяCVSS 3,3Эксплойта нетEPSS 1 %inkscape · inkscape18 мая 2022 г.
- CVE-2021-4270013Наблюдать
Inkscape Out-of-bounds Read
НизкаяCVSS 3,3Эксплойта нетEPSS 1 %inkscape · inkscape18 мая 2022 г.
- CVE-2005-38858Наблюдать
The ps2epsi extension shell script (ps2epsi.sh) in Inkscape before 0.41 allows local users to overwrite arbitrary files via a symlink attack
НизкаяCVSS 2,1Эксплойта нетEPSS 0 %inkscape · inkscape29 нояб. 2005 г.