Записи winace
7 опубликованных записей вендора winace.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 4
- С записью об исправлении
- 14,3 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
- CWE-189 Numeric Errors1
- CWE-399 Resource Management Errors1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
42В плане | CVE-2007-6563Эксплойта нет | Heap-based buffer overflow in WinAce 2.65 and earlier, and possibly other versions before 2.69, allows user-assisted remote attackers to exewinace · winace · CWE-119 | Критическая10,0 | — | 5,5 % | 27 дек. 2007 г. |
35Наблюдать | CVE-2005-2856Proof of concept | Stack-based buffer overflow in the WinACE UNACEV2.DLL third-party compression utility before 2.6.0.0, as used in multiple products includingwinace · winace · CWE-119 | Высокая7,5 | — | 15,7 % | 8 сент. 2005 г. |
32Наблюдать | CVE-2007-1673Эксплойта нет | unzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite looamavis · amavis · CWE-399 | Высокая7,8 | — | 3,2 % | 8 мая 2007 г. |
32Наблюдать | CVE-2007-2535Эксплойта нет | WinAce allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure that points to a prewinace · winace | Высокая7,8 | — | 2,7 % | 8 мая 2007 г. |
31Наблюдать | CVE-2005-2694Proof of concept | Buffer overflow in WinAce 2.6.0.5, and possibly earlier versions, allows remote attackers to execute arbitrary code via a temporary (.tmp) fwinace · winace | Высокая7,5 | — | 3,9 % | 26 авг. 2005 г. |
21Наблюдать | CVE-2006-0813Эксплойта нет | Heap-based buffer overflow in WinACE 2.60 allows user-assisted attackers to execute arbitrary code via a large header block in an ARJ archivwinace · winace · CWE-119 | Средняя5,1 | — | 3,2 % | 24 февр. 2006 г. |
18Наблюдать | CVE-2015-2063Эксплойта нет | Integer overflow in unace 1.2b allows remote attackers to cause a denial of service (crash) via a small file header in an ace archive, whichwinace · unace · CWE-189 | Средняя4,3 | — | 2,9 % | 9 мар. 2015 г. |
- CVE-2007-656342В плане
Heap-based buffer overflow in WinAce 2.65 and earlier, and possibly other versions before 2.69, allows user-assisted remote attackers to exe
КритическаяCVSS 10,0Эксплойта нетEPSS 6 %winace · winace27 дек. 2007 г.
- CVE-2005-285635Наблюдать
Stack-based buffer overflow in the WinACE UNACEV2.DLL third-party compression utility before 2.6.0.0, as used in multiple products including
ВысокаяCVSS 7,5Proof of conceptEPSS 16 %winace · winace8 сент. 2005 г.
- CVE-2007-167332Наблюдать
unzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite loo
ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %amavis · amavis8 мая 2007 г.
- CVE-2007-253532Наблюдать
WinAce allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure that points to a pre
ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %winace · winace8 мая 2007 г.
- CVE-2005-269431Наблюдать
Buffer overflow in WinAce 2.6.0.5, and possibly earlier versions, allows remote attackers to execute arbitrary code via a temporary (.tmp) f
ВысокаяCVSS 7,5Proof of conceptEPSS 4 %winace · winace26 авг. 2005 г.
- CVE-2006-081321Наблюдать
Heap-based buffer overflow in WinACE 2.60 allows user-assisted attackers to execute arbitrary code via a large header block in an ARJ archiv
СредняяCVSS 5,1Эксплойта нетEPSS 3 %winace · winace24 февр. 2006 г.
- CVE-2015-206318Наблюдать
Integer overflow in unace 1.2b allows remote attackers to cause a denial of service (crash) via a small file header in an ace archive, which
СредняяCVSS 4,3Эксплойта нетEPSS 3 %winace · unace9 мар. 2015 г.