Записи xinetd
8 опубликованных записей вендора xinetd.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 50 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
8 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
41В плане | CVE-2001-0825Эксплойта нет | Buffer overflow in internal string handling routines of xinetd before 2.1.8.8 allows remote attackers to execute arbitrary commands via a lexinetd · xinetd | Критическая10,0 | — | 3,6 % | 6 дек. 2001 г. |
32Наблюдать | CVE-2013-4342Эксплойта нет | xinetd does not enforce the user and group configuration directives for TCPMUX services, which causes these services to be run as root and mxinetd · xinetd · CWE-264 | Высокая7,6 | — | 6,4 % | 9 окт. 2013 г. |
31Наблюдать | CVE-2001-1389Эксплойта нет | Multiple vulnerabilities in xinetd 2.3.0 and earlier, and additional variants until 2.3.3, may allow remote attackers to cause a denial of sxinetd · xinetd | Высокая7,5 | — | 3,3 % | 29 авг. 2001 г. |
31Наблюдать | CVE-2000-0536Эксплойта нет | xinetd 2.1.8.x does not properly restrict connections if hostnames are used for access control and the connecting host does not have a reverxinetd · xinetd | Высокая7,5 | — | 2,1 % | 4 июн. 2000 г. |
23Наблюдать | CVE-2003-0211Proof of concept | Memory leak in xinetd 2.3.10 allows remote attackers to cause a denial of service (memory consumption) via a large number of rejected connecxinetd · xinetd | Средняя5,0 | — | 8,9 % | 5 мая 2003 г. |
18Наблюдать | CVE-2012-0862Эксплойта нет | builtins.c in Xinetd before 2.3.15 does not check the service type when the tcpmux-server service is enabled, which exposes all enabled servxinetd · xinetd · CWE-20 | Средняя4,3 | — | 2,8 % | 4 июн. 2012 г. |
14Наблюдать | CVE-2001-1322Эксплойта нет | xinetd 2.1.8 and earlier runs with a default umask of 0, which could allow local users to read or modify files that are created by an applicxinetd · xinetd | Низкая3,6 | — | 0,4 % | 10 июл. 2001 г. |
8Наблюдать | CVE-2002-0871Эксплойта нет | xinetd 2.3.4 leaks file descriptors for the signal pipe to services that are launched by xinetd, which could allow those services to cause axinetd · xinetd | Низкая2,1 | — | 0,4 % | 5 сент. 2002 г. |
- CVE-2001-082541В плане
Buffer overflow in internal string handling routines of xinetd before 2.1.8.8 allows remote attackers to execute arbitrary commands via a le
КритическаяCVSS 10,0Эксплойта нетEPSS 4 %xinetd · xinetd6 дек. 2001 г.
- CVE-2013-434232Наблюдать
xinetd does not enforce the user and group configuration directives for TCPMUX services, which causes these services to be run as root and m
ВысокаяCVSS 7,6Эксплойта нетEPSS 6 %xinetd · xinetd9 окт. 2013 г.
- CVE-2001-138931Наблюдать
Multiple vulnerabilities in xinetd 2.3.0 and earlier, and additional variants until 2.3.3, may allow remote attackers to cause a denial of s
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %xinetd · xinetd29 авг. 2001 г.
- CVE-2000-053631Наблюдать
xinetd 2.1.8.x does not properly restrict connections if hostnames are used for access control and the connecting host does not have a rever
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %xinetd · xinetd4 июн. 2000 г.
- CVE-2003-021123Наблюдать
Memory leak in xinetd 2.3.10 allows remote attackers to cause a denial of service (memory consumption) via a large number of rejected connec
СредняяCVSS 5,0Proof of conceptEPSS 9 %xinetd · xinetd5 мая 2003 г.
- CVE-2012-086218Наблюдать
builtins.c in Xinetd before 2.3.15 does not check the service type when the tcpmux-server service is enabled, which exposes all enabled serv
СредняяCVSS 4,3Эксплойта нетEPSS 3 %xinetd · xinetd4 июн. 2012 г.
- CVE-2001-132214Наблюдать
xinetd 2.1.8 and earlier runs with a default umask of 0, which could allow local users to read or modify files that are created by an applic
НизкаяCVSS 3,6Эксплойта нетEPSS 0 %xinetd · xinetd10 июл. 2001 г.
- CVE-2002-08718Наблюдать
xinetd 2.3.4 leaks file descriptors for the signal pipe to services that are launched by xinetd, which could allow those services to cause a
НизкаяCVSS 2,1Эксплойта нетEPSS 0 %xinetd · xinetd5 сент. 2002 г.