Записи Jasper
5 опубликованных записей вендора jasper.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 2 · 40 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-134 Use of Externally-Controlled Format String2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-255 Credentials Management Errors1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
59В плане | CVE-2009-3711Готовый эксплойт | Stack-based buffer overflow in the h_handlepeer function in http.cpp in httpdx 1.4, and possibly 1.4.3, allows remote attackers to cause a djasper · httpdx · CWE-119 | Критическая10,0 | — | 63,9 % | 16 окт. 2009 г. |
48В плане | CVE-2009-4769Готовый эксплойт | Multiple format string vulnerabilities in the tolog function in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 allow (1) remote attackers to execjasper · httpdx · CWE-134 | Критическая9,3 | — | 37,9 % | 20 апр. 2010 г. |
44В плане | CVE-2009-3663Proof of concept | Format string vulnerability in the h_readrequest function in http.c in httpdx Web Server 1.4 allows remote attackers to cause a denial of sejasper · httpdx · CWE-134 | Критическая10,0 | — | 14,6 % | 11 окт. 2009 г. |
30Наблюдать | CVE-2009-4770Эксплойта нет | The FTP server component in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 has a default password of pass123 for the moderator account, which makjasper · httpdx · CWE-255 | Высокая7,5 | — | 1,3 % | 20 апр. 2010 г. |
22Наблюдать | CVE-2009-4531Proof of concept | httpdx 1.4.4 and earlier allows remote attackers to obtain the source code for a web page by appending a .jasper · httpdx · CWE-200 | Средняя5,0 | — | 7,1 % | 31 дек. 2009 г. |
- CVE-2009-371159В плане
Stack-based buffer overflow in the h_handlepeer function in http.cpp in httpdx 1.4, and possibly 1.4.3, allows remote attackers to cause a d
КритическаяCVSS 10,0Готовый эксплойтEPSS 64 %jasper · httpdx16 окт. 2009 г.
- CVE-2009-476948В плане
Multiple format string vulnerabilities in the tolog function in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 allow (1) remote attackers to exec
КритическаяCVSS 9,3Готовый эксплойтEPSS 38 %jasper · httpdx20 апр. 2010 г.
- CVE-2009-366344В плане
Format string vulnerability in the h_readrequest function in http.c in httpdx Web Server 1.4 allows remote attackers to cause a denial of se
КритическаяCVSS 10,0Proof of conceptEPSS 15 %jasper · httpdx11 окт. 2009 г.
- CVE-2009-477030Наблюдать
The FTP server component in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 has a default password of pass123 for the moderator account, which mak
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %jasper · httpdx20 апр. 2010 г.
- CVE-2009-453122Наблюдать
httpdx 1.4.4 and earlier allows remote attackers to obtain the source code for a web page by appending a .
СредняяCVSS 5,0Proof of conceptEPSS 7 %jasper · httpdx31 дек. 2009 г.