Записи NetSarang
11 опубликованных записей вендора netsarang.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 9,1 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-428 Unquoted Search Path or Element4
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-354 Improper Validation of Integrity Check Value1
- CWE-427 Uncontrolled Search Path Element1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
11 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
51В плане | CVE-2023-48795Proof of concept | The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypasssh · ssh · CWE-354 | Средняя5,9 | — | 93,5 % | 18 дек. 2023 г. |
40В плане | CVE-2019-17320Эксплойта нет | NetSarang XFTP Client 6.0149 and earlier version contains a buffer overflow vulnerability caused by improper boundary checks when copying finetsarang · xftp · CWE-119 | Критическая9,8 | — | 2,2 % | 10 окт. 2019 г. |
31Наблюдать | CVE-2022-33035Эксплойта нет | XLPD v7.0.0094 and below contains an unquoted service path vulnerability which allows local users to launch processes with elevated privilegnetsarang · xlpd · CWE-427 | Высокая7,8 | — | 0,4 % | 29 июн. 2022 г. |
30Наблюдать | CVE-2021-42095Эксплойта нет | Xshell before 7.0.0.76 allows attackers to cause a crash by triggering rapid changes to the title bar.netsarang · xshell | Высокая7,5 | — | 1,0 % | 7 окт. 2021 г. |
26Наблюдать | CVE-2022-27965Эксплойта нет | Xlpd v7.0.0094 and below contains a binary hijack vulnerability which allows attackers to execute arbitrary code via a crafted .exe file.netsarang · xlpd · CWE-428 | Средняя6,5 | — | 0,5 % | 31 мар. 2022 г. |
26Наблюдать | CVE-2022-27966Эксплойта нет | Xshell v7.0.0099 and below contains a binary hijack vulnerability which allows attackers to execute arbitrary code via a crafted .exe file.netsarang · xshell · CWE-428 | Средняя6,5 | — | 0,5 % | 31 мар. 2022 г. |
26Наблюдать | CVE-2022-27964Эксплойта нет | Xmanager v7.0.0096 and below contains a binary hijack vulnerability which allows attackers to execute arbitrary code via a crafted .exe filenetsarang · xmanager · CWE-428 | Средняя6,5 | — | 0,5 % | 31 мар. 2022 г. |
26Наблюдать | CVE-2022-27963Эксплойта нет | Xftp 7.0.0088p and below contains a binary hijack vulnerability which allows attackers to execute arbitrary code via a crafted .exe file.netsarang · xftp · CWE-428 | Средняя6,5 | — | 0,5 % | 31 мар. 2022 г. |
21Наблюдать | CVE-2012-1009Proof of concept | NetSarang Xlpd 4 Build 0100 and NetSarang Xmanager Enterprise 4 Build 0186 allow remote attackers to cause a denial of service (daemon crashnetsarang · xlpd | Средняя5,0 | — | 2,8 % | 14 февр. 2012 г. |
21Наблюдать | CVE-2021-37326Эксплойта нет | NetSarang Xshell 7 before Build 0077 includes unintended code strings in paste operations.netsarang · xshell · CWE-200 | Средняя5,3 | — | 0,8 % | 15 авг. 2021 г. |
20Наблюдать | CVE-2006-0148Эксплойта нет | NetSarang Xlpd 2.1 allows remote attackers to cause a denial of service (crash) via a large number of connections from the same IP address.netsarang · xlpd | Средняя5,0 | — | 1,6 % | 9 янв. 2006 г. |
- CVE-2023-4879551В плане
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypas
СредняяCVSS 5,9Proof of conceptEPSS 94 %ssh · ssh18 дек. 2023 г.
- CVE-2019-1732040В плане
NetSarang XFTP Client 6.0149 and earlier version contains a buffer overflow vulnerability caused by improper boundary checks when copying fi
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %netsarang · xftp10 окт. 2019 г.
- CVE-2022-3303531Наблюдать
XLPD v7.0.0094 and below contains an unquoted service path vulnerability which allows local users to launch processes with elevated privileg
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %netsarang · xlpd29 июн. 2022 г.
- CVE-2021-4209530Наблюдать
Xshell before 7.0.0.76 allows attackers to cause a crash by triggering rapid changes to the title bar.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %netsarang · xshell7 окт. 2021 г.
- CVE-2022-2796526Наблюдать
Xlpd v7.0.0094 and below contains a binary hijack vulnerability which allows attackers to execute arbitrary code via a crafted .exe file.
СредняяCVSS 6,5Эксплойта нетEPSS 0 %netsarang · xlpd31 мар. 2022 г.
- CVE-2022-2796626Наблюдать
Xshell v7.0.0099 and below contains a binary hijack vulnerability which allows attackers to execute arbitrary code via a crafted .exe file.
СредняяCVSS 6,5Эксплойта нетEPSS 0 %netsarang · xshell31 мар. 2022 г.
- CVE-2022-2796426Наблюдать
Xmanager v7.0.0096 and below contains a binary hijack vulnerability which allows attackers to execute arbitrary code via a crafted .exe file
СредняяCVSS 6,5Эксплойта нетEPSS 0 %netsarang · xmanager31 мар. 2022 г.
- CVE-2022-2796326Наблюдать
Xftp 7.0.0088p and below contains a binary hijack vulnerability which allows attackers to execute arbitrary code via a crafted .exe file.
СредняяCVSS 6,5Эксплойта нетEPSS 0 %netsarang · xftp31 мар. 2022 г.
- CVE-2012-100921Наблюдать
NetSarang Xlpd 4 Build 0100 and NetSarang Xmanager Enterprise 4 Build 0186 allow remote attackers to cause a denial of service (daemon crash
СредняяCVSS 5,0Proof of conceptEPSS 3 %netsarang · xlpd14 февр. 2012 г.
- CVE-2021-3732621Наблюдать
NetSarang Xshell 7 before Build 0077 includes unintended code strings in paste operations.
СредняяCVSS 5,3Эксплойта нетEPSS 1 %netsarang · xshell15 авг. 2021 г.
- CVE-2006-014820Наблюдать
NetSarang Xlpd 2.1 allows remote attackers to cause a denial of service (crash) via a large number of connections from the same IP address.
СредняяCVSS 5,0Эксплойта нетEPSS 2 %netsarang · xlpd9 янв. 2006 г.