Записи Joyent
20 опубликованных записей вендора joyent.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 1 · 5 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 30 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')5
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-400 Uncontrolled Resource Consumption2
- CWE-190 Integer Overflow or Wraparound2
- CWE-667 Improper Locking1
- CWE-770 Allocation of Resources Without Limits or Throttling1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
20 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
44В плане | CVE-2014-7192Proof of concept | Eval injection vulnerability in index.js in the syntax-error package before 1.1.1 for Node.js 0.10.x, as used in IBM Rational Application Dejoyent · node.js · CWE-94 | Критическая10,0 | — | 13,0 % | 11 дек. 2014 г. |
40В плане | CVE-2012-0217Готовый эксплойт | The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and other products; Oracxen · xen · CWE-119 | Высокая7,2 | — | 39,8 % | 12 июн. 2012 г. |
39Наблюдать | CVE-2020-27678Эксплойта нет | An issue was discovered in illumos before 2020-10-22, as used in OmniOS before r151030by, r151032ay, and r151034y and SmartOS before 2020102illumos · illumos · CWE-120 | Критическая9,8 | — | 1,4 % | 26 окт. 2020 г. |
37Наблюдать | CVE-2017-10940Эксплойта нет | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Joyent Smart Data Center prior to agentsjoyent · triton datacenter · CWE-22 | Высокая8,8 | — | 5,4 % | 31 окт. 2017 г. |
35Наблюдать | CVE-2016-8733Эксплойта нет | An exploitable integer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system.joyent · smartos · CWE-190 | Высокая8,8 | — | 0,6 % | 14 дек. 2016 г. |
31Наблюдать | CVE-2014-6394Эксплойта нет | visionmedia send before 0.8.4 for Node.js uses a partial comparison for verifying whether a directory is within the document root, which allfedoraproject · fedora · CWE-22 | Высокая7,5 | — | 4,3 % | 8 окт. 2014 г. |
31Наблюдать | CVE-2018-3737Эксплойта нет | sshpk is vulnerable to ReDoS when parsing crafted invalid public keys.joyent · sshpk · CWE-770 | Высокая7,5 | — | 1,7 % | 6 июн. 2018 г. |
31Наблюдать | CVE-2016-9031Эксплойта нет | An exploitable integer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system.joyent · smartos · CWE-190 | Высокая7,8 | — | 0,5 % | 14 дек. 2016 г. |
31Наблюдать | CVE-2018-1166Эксплойта нет | This vulnerability allows local attackers to escalate privileges on vulnerable installations of Joyent SmartOS release-20170803-20170803T064joyent · smartos · CWE-416 | Высокая7,8 | — | 0,4 % | 21 февр. 2018 г. |
30Наблюдать | CVE-2017-16005Эксплойта нет | Http-signature is a "Reference implementation of Joyent's HTTP Signature Scheme".joyent · http-signature · CWE-20 | Высокая7,5 | — | 0,9 % | 4 июн. 2018 г. |
29Наблюдать | CVE-2020-7712Эксплойта нет | This affects the package json before 10.0.0.joyent · json · CWE-78 | Высокая7,2 | — | 3,1 % | 30 авг. 2020 г. |
28Наблюдать | CVE-2016-9035Эксплойта нет | An exploitable buffer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system.joyent · smartos · CWE-120 | Высокая7,0 | — | 0,5 % | 14 дек. 2016 г. |
28Наблюдать | CVE-2016-9034Эксплойта нет | An exploitable buffer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system.joyent · smartos · CWE-120 | Высокая7,0 | — | 0,5 % | 14 дек. 2016 г. |
28Наблюдать | CVE-2016-9033Эксплойта нет | An exploitable buffer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system.joyent · smartos · CWE-120 | Высокая7,0 | — | 0,5 % | 14 дек. 2016 г. |
28Наблюдать | CVE-2016-9032Эксплойта нет | An exploitable buffer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system.joyent · smartos · CWE-120 | Высокая7,0 | — | 0,5 % | 14 дек. 2016 г. |
28Наблюдать | CVE-2018-1165Эксплойта нет | This vulnerability allows local attackers to escalate privileges on vulnerable installations of Joyent SmartOS release-20170803-20170803T064joyent · smartos · CWE-122 | Высокая7,0 | — | 0,5 % | 21 февр. 2018 г. |
28Наблюдать | CVE-2018-1171Эксплойта нет | This vulnerability allows local attackers to escalate privileges on vulnerable installations of Joyent SmartOS release-20170803-20170803T064joyent · smartos · CWE-787 | Высокая7,0 | — | 0,4 % | 19 мар. 2018 г. |
22Наблюдать | CVE-2016-9039Эксплойта нет | An exploitable denial of service exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system.joyent · smartos · CWE-400 | Средняя5,5 | — | 0,5 % | 31 янв. 2017 г. |
22Наблюдать | CVE-2016-9040Эксплойта нет | An exploitable denial of service exists in the the Joyent SmartOS OS 20161110T013148Z Hyprlofs file system.joyent · smartos · CWE-400 | Средняя5,5 | — | 0,5 % | 7 сент. 2018 г. |
22Наблюдать | CVE-2021-43395Эксплойта нет | An issue was discovered in illumos before f859e7171bb5db34321e45585839c6c3200ebb90, OmniOS Community Edition r151038, OpenIndiana Hipster 20illumos · illumos · CWE-667 | Средняя5,5 | — | 0,3 % | 26 дек. 2022 г. |
- CVE-2014-719244В плане
Eval injection vulnerability in index.js in the syntax-error package before 1.1.1 for Node.js 0.10.x, as used in IBM Rational Application De
КритическаяCVSS 10,0Proof of conceptEPSS 13 %joyent · node.js11 дек. 2014 г.
- CVE-2012-021740В плане
The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and other products; Orac
ВысокаяCVSS 7,2Готовый эксплойтEPSS 40 %xen · xen12 июн. 2012 г.
- CVE-2020-2767839Наблюдать
An issue was discovered in illumos before 2020-10-22, as used in OmniOS before r151030by, r151032ay, and r151034y and SmartOS before 2020102
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %illumos · illumos26 окт. 2020 г.
- CVE-2017-1094037Наблюдать
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Joyent Smart Data Center prior to agents
ВысокаяCVSS 8,8Эксплойта нетEPSS 5 %joyent · triton datacenter31 окт. 2017 г.
- CVE-2016-873335Наблюдать
An exploitable integer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %joyent · smartos14 дек. 2016 г.
- CVE-2014-639431Наблюдать
visionmedia send before 0.8.4 for Node.js uses a partial comparison for verifying whether a directory is within the document root, which all
ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %fedoraproject · fedora8 окт. 2014 г.
- CVE-2018-373731Наблюдать
sshpk is vulnerable to ReDoS when parsing crafted invalid public keys.
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %joyent · sshpk6 июн. 2018 г.
- CVE-2016-903131Наблюдать
An exploitable integer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %joyent · smartos14 дек. 2016 г.
- CVE-2018-116631Наблюдать
This vulnerability allows local attackers to escalate privileges on vulnerable installations of Joyent SmartOS release-20170803-20170803T064
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %joyent · smartos21 февр. 2018 г.
- CVE-2017-1600530Наблюдать
Http-signature is a "Reference implementation of Joyent's HTTP Signature Scheme".
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %joyent · http-signature4 июн. 2018 г.
- CVE-2020-771229Наблюдать
This affects the package json before 10.0.0.
ВысокаяCVSS 7,2Эксплойта нетEPSS 3 %joyent · json30 авг. 2020 г.
- CVE-2016-903528Наблюдать
An exploitable buffer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system.
ВысокаяCVSS 7,0Эксплойта нетEPSS 1 %joyent · smartos14 дек. 2016 г.
- CVE-2016-903428Наблюдать
An exploitable buffer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system.
ВысокаяCVSS 7,0Эксплойта нетEPSS 1 %joyent · smartos14 дек. 2016 г.
- CVE-2016-903328Наблюдать
An exploitable buffer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system.
ВысокаяCVSS 7,0Эксплойта нетEPSS 1 %joyent · smartos14 дек. 2016 г.
- CVE-2016-903228Наблюдать
An exploitable buffer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system.
ВысокаяCVSS 7,0Эксплойта нетEPSS 1 %joyent · smartos14 дек. 2016 г.
- CVE-2018-116528Наблюдать
This vulnerability allows local attackers to escalate privileges on vulnerable installations of Joyent SmartOS release-20170803-20170803T064
ВысокаяCVSS 7,0Эксплойта нетEPSS 0 %joyent · smartos21 февр. 2018 г.
- CVE-2018-117128Наблюдать
This vulnerability allows local attackers to escalate privileges on vulnerable installations of Joyent SmartOS release-20170803-20170803T064
ВысокаяCVSS 7,0Эксплойта нетEPSS 0 %joyent · smartos19 мар. 2018 г.
- CVE-2016-903922Наблюдать
An exploitable denial of service exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system.
СредняяCVSS 5,5Эксплойта нетEPSS 1 %joyent · smartos31 янв. 2017 г.
- CVE-2016-904022Наблюдать
An exploitable denial of service exists in the the Joyent SmartOS OS 20161110T013148Z Hyprlofs file system.
СредняяCVSS 5,5Эксплойта нетEPSS 0 %joyent · smartos7 сент. 2018 г.
- CVE-2021-4339522Наблюдать
An issue was discovered in illumos before f859e7171bb5db34321e45585839c6c3200ebb90, OmniOS Community Edition r151038, OpenIndiana Hipster 20
СредняяCVSS 5,5Эксплойта нетEPSS 0 %illumos · illumos26 дек. 2022 г.