Перейти к содержимому
Noroxi

Записи pterodactyl

18 опубликованных записей вендора pterodactyl.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
0
С записью об исправлении
100 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

18 записей
  • CVE-2026-26016
    36Наблюдать

    Pterodactyl Panel Allows Cross-Node Server Configuration Disclosure via Remote API Missing Authorization

    КритическаяCVSS 9,2Эксплойта нетEPSS 0 %

    pterodactyl · panel19 февр. 2026 г.

  • CVE-2023-32080
    35Наблюдать

    Wings vulnerable to escape to host from installation container

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    pterodactyl · wings10 мая 2023 г.

  • CVE-2023-25152
    35Наблюдать

    Symbolic Link (Symlink) Following in github.com/pterodactyl/wings

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    pterodactyl · wings8 февр. 2023 г.

  • CVE-2024-27102
    34Наблюдать

    Improper isolation of server file access in github.com/pterodactyl/wings

    ВысокаяCVSS 8,5Proof of conceptEPSS 1 %

    pterodactyl · wings13 мар. 2024 г.

  • CVE-2021-41129
    33Наблюдать

    Authentication bypass in Pterodactyl

    ВысокаяCVSS 8,1Эксплойта нетEPSS 2 %

    pterodactyl · panel6 окт. 2021 г.

  • CVE-2024-34066
    33Наблюдать

    Arbitrary File Write/Read in Pterodactyl wings

    ВысокаяCVSS 8,4Эксплойта нетEPSS 1 %

    pterodactyl · wings3 мая 2024 г.

  • CVE-2026-21696
    33Наблюдать

    Endless reprocessing/reupload of activity log data due to SQLite max parameters limit not being considered

    ВысокаяCVSS 8,3Эксплойта нетEPSS 1 %

    pterodactyl · wings19 янв. 2026 г.

  • CVE-2025-69199
    33Наблюдать

    Pterodactyl Wings's websocket endpoints have no visible rate limits or monitoring, allowing for DOS attacks under certain circumstances

    ВысокаяCVSS 8,3Эксплойта нетEPSS 0 %

    pterodactyl · wings19 янв. 2026 г.

  • CVE-2023-25168
    32Наблюдать

    Symbolic Link (Symlink) Following allowing the deletion of files and directories on the host system in wings

    ВысокаяCVSS 8,2Эксплойта нетEPSS 1 %

    pterodactyl · wings8 февр. 2023 г.

  • CVE-2019-1020002
    30Наблюдать

    Pterodactyl before 0.7.14 with 2FA allows credential sniffing.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    pterodactyl · panel29 июл. 2019 г.

  • CVE-2025-68954
    30Наблюдать

    Pterodactyl does not revoke SFTP access when server is deleted or permissions reduced

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    pterodactyl · panel5 янв. 2026 г.

  • CVE-2025-69197
    26Наблюдать

    Pterodactyl TOTPs can be reused during validity window

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    pterodactyl · panel5 янв. 2026 г.

  • CVE-2021-32699
    26Наблюдать

    Asymmetric Resource Consumption (Amplification) in Docker containers created by Wings

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    pterodactyl · wings22 июн. 2021 г.

  • CVE-2024-34068
    25Наблюдать

    Server-side Request Forgery during remote file pull in Pterodactyl wings

    СредняяCVSS 6,4Эксплойта нетEPSS 0 %

    pterodactyl · wings3 мая 2024 г.

  • CVE-2024-34067
    24Наблюдать

    Multiple cross site scripting (XSS) vulnerabilities in the admin area of Pterodactyl panel

    СредняяCVSS 6,1Эксплойта нетEPSS 0 %

    pterodactyl · panel3 мая 2024 г.

  • CVE-2025-69198
    24Наблюдать

    Pterodactyl's improper resource locking allows raced queries to create more resources than alloted

    СредняяCVSS 6,0Эксплойта нетEPSS 0 %

    pterodactyl · panel19 янв. 2026 г.

  • CVE-2021-41176
    17Наблюдать

    logout CSRF in Pterodactyl Panel

    СредняяCVSS 4,3Эксплойта нетEPSS 1 %

    pterodactyl · panel25 окт. 2021 г.

  • CVE-2021-41273
    17Наблюдать

    Cross-Site Request Forgery allowing sending of test emails and generation of node auto-deployment keys

    СредняяCVSS 4,3Эксплойта нетEPSS 0 %

    pterodactyl · panel17 нояб. 2021 г.