Записи winimage
5 опубликованных записей вендора winimage.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-20 Improper Input Validation1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2007-4962Proof of concept | Directory traversal vulnerability in WinImage 8.10 and earlier allows user-assisted remote attackers to create or overwrite arbitrary files winimage · winimage · CWE-22 | Критическая9,3 | — | 6,0 % | 18 сент. 2007 г. |
39Наблюдать | CVE-2007-2758Эксплойта нет | Multiple buffer overflows in WinImage 8.0.8000 allow user-assisted remote attackers to execute arbitrary code via a FAT image that contains winimage · winimage | Критическая9,3 | — | 5,7 % | 18 мая 2007 г. |
38Наблюдать | CVE-2007-4963Эксплойта нет | Visual truncation vulnerability in WinImage 8.10 and earlier allows remote attackers to spoof a destination filename via a long sequence of winimage · winimage | Критическая9,3 | — | 2,0 % | 18 сент. 2007 г. |
27Наблюдать | CVE-2010-5253Эксплойта нет | Untrusted search path vulnerability in WinImage 8.50 allows local users to gain privileges via a Trojan horse wnaspi32.dll file in the currewinimage · winimage | Средняя6,9 | — | 0,5 % | 7 сент. 2012 г. |
21Наблюдать | CVE-2007-4964Proof of concept | WinImage 8.10 and earlier allows remote attackers to cause a denial of service (infinite loop) via an invalid BPB_BytsPerSec field in the hewinimage · winimage · CWE-20 | Средняя5,0 | — | 2,8 % | 18 сент. 2007 г. |
- CVE-2007-496239Наблюдать
Directory traversal vulnerability in WinImage 8.10 and earlier allows user-assisted remote attackers to create or overwrite arbitrary files
КритическаяCVSS 9,3Proof of conceptEPSS 6 %winimage · winimage18 сент. 2007 г.
- CVE-2007-275839Наблюдать
Multiple buffer overflows in WinImage 8.0.8000 allow user-assisted remote attackers to execute arbitrary code via a FAT image that contains
КритическаяCVSS 9,3Эксплойта нетEPSS 6 %winimage · winimage18 мая 2007 г.
- CVE-2007-496338Наблюдать
Visual truncation vulnerability in WinImage 8.10 and earlier allows remote attackers to spoof a destination filename via a long sequence of
КритическаяCVSS 9,3Эксплойта нетEPSS 2 %winimage · winimage18 сент. 2007 г.
- CVE-2010-525327Наблюдать
Untrusted search path vulnerability in WinImage 8.50 allows local users to gain privileges via a Trojan horse wnaspi32.dll file in the curre
СредняяCVSS 6,9Эксплойта нетEPSS 1 %winimage · winimage7 сент. 2012 г.
- CVE-2007-496421Наблюдать
WinImage 8.10 and earlier allows remote attackers to cause a denial of service (infinite loop) via an invalid BPB_BytsPerSec field in the he
СредняяCVSS 5,0Proof of conceptEPSS 3 %winimage · winimage18 сент. 2007 г.