Перейти к содержимому
Noroxi

Записи NetWin

50 опубликованных записей вендора netwin.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
11
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 17

Столбик: всего · тёмная часть: CISA KEV.

Повторяющиеся классы

Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

CWE

Все записи

50 записей
  • CVE-2000-0490
    42В плане

    Buffer overflow in the NetWin DSMTP 2.7q in the NetWin dmail package allows remote attackers to execute arbitrary commands via a long ETRN r

    КритическаяCVSS 10,0Proof of conceptEPSS 6 %

    netwin · dmail1 июн. 2000 г.

  • CVE-2001-1356
    41В плане

    NetWin SurgeFTP 2.0f and earlier encrypts passwords using weak hashing, a fixed salt value and modulo 40 calculations, which allows remote a

    КритическаяCVSS 10,0Эксплойта нетEPSS 4 %

    netwin · surgeftp4 авг. 2001 г.

  • CVE-2001-1355
    41В плане

    Buffer overflows in NetWin Authentication Module (NWAuth) 3.0b and earlier, as implemented in DMail, SurgeFTP, and possibly other packages,

    КритическаяCVSS 10,0Эксплойта нетEPSS 4 %

    netwin · dmail20 июл. 2001 г.

  • CVE-2004-2537
    41В плане

    Unspecified vulnerability in SurgeMail before 2.2c10 has unknown impact and attack vectors, related to a "Webmail security bug."

    КритическаяCVSS 10,0Эксплойта нетEPSS 2 %

    netwin · surgemail31 дек. 2004 г.

  • CVE-2007-4372
    40В плане

    Unspecified vulnerability in NetWin SurgeMail 38k on Windows Server 2003 has unknown impact and remote attack vectors.

    КритическаяCVSS 10,0Эксплойта нетEPSS 1 %

    netwin · surgemail16 авг. 2007 г.

  • CVE-2008-1498
    38Наблюдать

    Stack-based buffer overflow in the IMAP service in NetWin Surgemail 3.8k4-4 and earlier allows remote authenticated users to execute arbitra

    КритическаяCVSS 9,0Proof of conceptEPSS 8 %

    netwin · surgemail25 мар. 2008 г.

  • CVE-2008-1497
    38Наблюдать

    Stack-based buffer overflow in the IMAP service in NetWin SurgeMail 38k4-4 and earlier allows remote authenticated users to execute arbitrar

    КритическаяCVSS 9,0Эксплойта нетEPSS 6 %

    netwin · surgemail25 мар. 2008 г.

  • CVE-2007-3768
    34Наблюдать

    The mirror mechanism in SurgeFTP 2.3a1 allows user-assisted, remote FTP servers to cause a denial of service (restart) via a malformed respo

    ВысокаяCVSS 8,5Эксплойта нетEPSS 2 %

    netwin · surgeftp15 июл. 2007 г.

  • CVE-2004-2254
    33Наблюдать

    SurgeLDAP 1.0g (Build 12), and possibly other versions before 1.0h, allows remote attackers to bypass authentication for the administration

    ВысокаяCVSS 7,5Proof of conceptEPSS 8 %

    netwin · surgeldap31 дек. 2004 г.

  • CVE-2008-1055
    32Наблюдать

    Format string vulnerability in webmail.exe in NetWin SurgeMail 38k4 and earlier and beta 39a, and WebMail 3.1s and earlier, allows remote at

    ВысокаяCVSS 7,5Proof of conceptEPSS 8 %

    netwin · surgemail27 февр. 2008 г.

  • CVE-2005-1478
    31Наблюдать

    Format string vulnerability in dSMTP (dsmtp.exe) in DMail 3.1a allows remote attackers to execute arbitrary code via format string specifier

    ВысокаяCVSS 7,5Эксплойта нетEPSS 5 %

    netwin · dmail11 мая 2005 г.

  • CVE-2013-4742
    31Наблюдать

    Buffer overflow in NetWin SurgeFTP before 23d2 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary co

    ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %

    netwin · surgeftp9 авг. 2013 г.

  • CVE-2007-2655
    31Наблюдать

    Unspecified vulnerability in NetWin Webmail 3.1s-1 in SurgeMail before 3.8i2 has unknown impact and remote attack vectors, possibly a format

    ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %

    netwin · surgemail14 мая 2007 г.

  • CVE-2006-5100
    31Наблюдать

    PHP remote file inclusion vulnerability in parse/parser.php in WEB//NEWS (aka webnews) 1.4 and earlier allows remote attackers to execute ar

    ВысокаяCVSS 7,5Proof of conceptEPSS 4 %

    netwin · webnews3 окт. 2006 г.

  • CVE-2002-0290
    31Наблюдать

    Buffer overflow in Netwin WebNews CGI program 1.1, Webnews.exe, allows remote attackers to execute arbitrary code via a long group argument.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %

    netwin · webnews31 мая 2002 г.

  • CVE-2000-0422
    31Наблюдать

    Buffer overflow in Netwin DMailWeb CGI program allows remote attackers to execute arbitrary commands via a long utoken parameter.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    netwin · dmail4 мая 2000 г.

  • CVE-2005-1516
    30Наблюдать

    DList (dlist.exe) in DMail 3.1a allows remote attackers to bypass authentication, read log files, and shutdown the system via a sendlog comm

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    netwin · dmail11 мая 2005 г.

  • CVE-2002-0310
    30Наблюдать

    Netwin WebNews 1.1k CGI program includes several default usernames and cleartext passwords that cannot be deleted by the administrator, whic

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    netwin · webnews31 мая 2002 г.

  • CVE-2008-1054
    27Наблюдать

    Stack-based buffer overflow in the _lib_spawn_user_getpid function in (1) swatch.exe and (2) surgemail.exe in NetWin SurgeMail 38k4 and earl

    СредняяCVSS 6,4Proof of conceptEPSS 7 %

    netwin · surgemail27 февр. 2008 г.

  • CVE-2008-1052
    27Наблюдать

    The administration web interface in NetWin SurgeFTP 2.3a2 and earlier allows remote attackers to cause a denial of service (daemon crash) vi

    СредняяCVSS 6,4Proof of conceptEPSS 7 %

    netwin · surgeftp27 февр. 2008 г.

  • CVE-2007-4377
    26Наблюдать

    Stack-based buffer overflow in the IMAP service in SurgeMail 38k allows remote authenticated users to execute arbitrary code via a long argu

    СредняяCVSS 6,0Proof of conceptEPSS 5 %

    netwin · surgemail16 авг. 2007 г.

  • CVE-2017-17933
    24Наблюдать

    cgi/surgeftpmgr.cgi (aka the Web Manager interface on TCP port 7021 or 9021) in NetWin SurgeFTP version 23f2 has XSS via the classid, domain

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    netwin · surgeftp29 дек. 2017 г.

  • CVE-2008-7182
    23Наблюдать

    Buffer overflow in the IMAP service in NetWin Surgemail 3.9e, and possibly other versions before 3.9g2, allows remote authenticated users to

    СредняяCVSS 4,0Proof of conceptEPSS 24 %

    netwin · surgemail8 сент. 2009 г.

  • CVE-2007-3769
    23Наблюдать

    Cross-site scripting (XSS) vulnerability in the mirrored server management interface in SurgeFTP 2.3a1 allows user-assisted, remote FTP serv

    СредняяCVSS 5,8Эксплойта нетEPSS 1 %

    netwin · surgeftp15 июл. 2007 г.

  • CVE-2000-0423
    22Наблюдать

    Buffer overflow in Netwin DNEWSWEB CGI program allows remote attackers to execute arbitrary commands via long parameters such as group, cmd,

    СредняяCVSS 5,0Proof of conceptEPSS 8 %

    netwin · dnews5 мая 2000 г.