Записи irontec
7 опубликованных записей вендора irontec.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 85,7 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-787 Out-of-bounds Write3
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')2
- CWE-122 Heap-based Buffer Overflow1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2024-3120Эксплойта нет | Stack-Buffer Overflow in 'Content-Length' and 'Warning' Header Processing in sngrepirontec · sngrep · CWE-120 | Критическая9,8 | — | 1,9 % | 9 апр. 2024 г. |
40В плане | CVE-2024-3119Эксплойта нет | Stack-Buffer Overflow in 'Call-ID' and 'X-Call-ID' SIP Header Processing in sngrepirontec · sngrep · CWE-120 | Критическая9,8 | — | 1,8 % | 9 апр. 2024 г. |
39Наблюдать | CVE-2015-10084Эксплойта нет | irontec klear-library BaseController.php _prepareWhere sql injectionirontec · klear-library · CWE-89 | Критическая9,8 | — | 0,7 % | 21 февр. 2023 г. |
31Наблюдать | CVE-2023-31982Эксплойта нет | Sngrep v1.6.0 was discovered to contain a heap buffer overflow via the function capture_packet_reasm_ip at /src/capture.c.irontec · sngrep · CWE-787 | Высокая7,8 | — | 0,3 % | 9 мая 2023 г. |
31Наблюдать | CVE-2023-36192Эксплойта нет | Sngrep v1.6.0 was discovered to contain a heap buffer overflow via the function capture_ws_check_packet at /src/capture.c.irontec · sngrep · CWE-787 | Высокая7,8 | — | 0,3 % | 22 июн. 2023 г. |
31Наблюдать | CVE-2023-31981Эксплойта нет | Sngrep v1.6.0 was discovered to contain a stack buffer overflow via the function packet_set_payload at /src/packet.c.irontec · sngrep · CWE-787 | Высокая7,8 | — | 0,3 % | 9 мая 2023 г. |
30Наблюдать | CVE-2024-35434Эксплойта нет | Irontec Sngrep v1.8.1 was discovered to contain a heap buffer overflow via the function rtp_check_packet at /sngrep/src/rtp.c.irontec · sngrep · CWE-122 | Высокая7,5 | — | 0,6 % | 29 мая 2024 г. |
- CVE-2024-312040В плане
Stack-Buffer Overflow in 'Content-Length' and 'Warning' Header Processing in sngrep
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %irontec · sngrep9 апр. 2024 г.
- CVE-2024-311940В плане
Stack-Buffer Overflow in 'Call-ID' and 'X-Call-ID' SIP Header Processing in sngrep
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %irontec · sngrep9 апр. 2024 г.
- CVE-2015-1008439Наблюдать
irontec klear-library BaseController.php _prepareWhere sql injection
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %irontec · klear-library21 февр. 2023 г.
- CVE-2023-3198231Наблюдать
Sngrep v1.6.0 was discovered to contain a heap buffer overflow via the function capture_packet_reasm_ip at /src/capture.c.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %irontec · sngrep9 мая 2023 г.
- CVE-2023-3619231Наблюдать
Sngrep v1.6.0 was discovered to contain a heap buffer overflow via the function capture_ws_check_packet at /src/capture.c.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %irontec · sngrep22 июн. 2023 г.
- CVE-2023-3198131Наблюдать
Sngrep v1.6.0 was discovered to contain a stack buffer overflow via the function packet_set_payload at /src/packet.c.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %irontec · sngrep9 мая 2023 г.
- CVE-2024-3543430Наблюдать
Irontec Sngrep v1.8.1 was discovered to contain a heap buffer overflow via the function rtp_check_packet at /sngrep/src/rtp.c.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %irontec · sngrep29 мая 2024 г.