Записи nfsen
4 опубликованных записей вендора nfsen.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')2
- CWE-273 Improper Check for Dropped Privileges1
- CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
4 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
43В плане | CVE-2017-6972Proof of concept | AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 have an error in privilege dropping and unnecessarily execute the NfSen Perl coalienvault · ossim · CWE-273 | Критическая9,8 | — | 14,6 % | 22 мар. 2017 г. |
41В плане | CVE-2017-7175Proof of concept | NfSen before 1.3.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the customfmt parameter (aka the "Cunfsen · nfsen · CWE-78 | Критическая9,9 | — | 6,5 % | 10 июл. 2017 г. |
40В плане | CVE-2017-6971Proof of concept | AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 allow remote authenticated users to execute arbitrary commands in a privileged alienvault · ossim · CWE-74 | Высокая8,8 | — | 16,2 % | 22 мар. 2017 г. |
34Наблюдать | CVE-2017-6970Proof of concept | AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 allow local users to execute arbitrary commands in a privileged context via an alienvault · ossim · CWE-78 | Высокая8,4 | — | 1,7 % | 22 мар. 2017 г. |
- CVE-2017-697243В плане
AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 have an error in privilege dropping and unnecessarily execute the NfSen Perl co
КритическаяCVSS 9,8Proof of conceptEPSS 15 %alienvault · ossim22 мар. 2017 г.
- CVE-2017-717541В плане
NfSen before 1.3.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the customfmt parameter (aka the "Cu
КритическаяCVSS 9,9Proof of conceptEPSS 7 %nfsen · nfsen10 июл. 2017 г.
- CVE-2017-697140В плане
AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 allow remote authenticated users to execute arbitrary commands in a privileged
ВысокаяCVSS 8,8Proof of conceptEPSS 16 %alienvault · ossim22 мар. 2017 г.
- CVE-2017-697034Наблюдать
AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 allow local users to execute arbitrary commands in a privileged context via an
ВысокаяCVSS 8,4Proof of conceptEPSS 2 %alienvault · ossim22 мар. 2017 г.