4D kayıtları
4d üreticisine ait 14 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 1 · %7,1
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %21,4
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-125 Out-of-bounds Read1
- CWE-287 Improper Authentication1
- CWE-295 Improper Certificate Validation1
- CWE-427 Uncontrolled Search Path Element1
- CWE-476 NULL Pointer Dereference1
- CWE-611 Improper Restriction of XML External Entity Reference1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
14 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2004-0695Silahlaştırılmış | Stack-based buffer overflow in the FTP service for 4D WebSTAR 5.3.2 and earlier allows remote attackers to execute arbitrary code via a long4d · webstar | Yüksek7,5 | — | %38,2 | 27 Tem 2004 |
34İzleyin | CVE-2024-39847İstismar yok | Arbitrary File Read and Server Side Request Forgery via XML External Entities in 4D Server SOAP4d · server · CWE-611 | Yüksek8,7 | — | %0,4 | 30 Nis 2026 |
33İzleyin | CVE-2004-0079İstismar yok | The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (openssl · openssl · CWE-476 | Yüksek7,5 | — | %9,5 | 23 Kas 2004 |
31İzleyin | CVE-2023-4770İstismar yok | Uncontrolled Search Path Element Vulnerability in 4D and 4D Windows Server4d · 4d · CWE-427 | Yüksek7,8 | — | %0,3 | 30 Kas 2023 |
30İzleyin | CVE-2023-30222İstismar yok | An information disclosure vulnerability in 4D SAS 4D Server Application v17, v18, v19 R7 and earlier allows attackers to retrieve password h4d · server · CWE-295 | Yüksek7,5 | — | %1,2 | 16 Haz 2023 |
30İzleyin | CVE-2023-30223İstismar yok | A broken authentication vulnerability in 4D SAS 4D Server software v17, v18, v19 R7, and earlier allows attackers to send crafted TCP packet4d · server · CWE-287 | Yüksek7,5 | — | %1,1 | 16 Haz 2023 |
23İzleyin | CVE-2004-0112İstismar yok | The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of openssl · openssl · CWE-125 | Orta5,0 | — | %10,4 | 23 Kas 2004 |
22İzleyin | CVE-2004-0081İstismar yok | OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infiopenssl · openssl | Orta5,0 | — | %7,2 | 23 Kas 2004 |
22İzleyin | CVE-2005-1507Kavram kanıtı | Buffer overflow in the Tomcat plugin in 4d WebSTAR 5.33 and 5.4 allows remote attackers to cause a denial of service and possibly execute ar4d · webstar | Orta5,0 | — | %5,7 | 11 May 2005 |
21İzleyin | CVE-2000-0290İstismar yok | Buffer overflow in Webstar HTTP server allows remote attackers to cause a denial of service via a long GET request.4d · webstar http server | Orta5,0 | — | %1,9 | 31 Mar 2000 |
20İzleyin | CVE-2004-0696İstismar yok | The ShellExample.cgi script in 4D WebSTAR 5.3.2 and earlier allows remote attackers to list arbitrary directories via a URL with the desired4d · webstar | Orta5,0 | — | %1,4 | 27 Tem 2004 |
20İzleyin | CVE-2004-0697İstismar yok | Unknown vulnerability in 4D WebSTAR 5.3.2 and earlier allows remote attackers to read the php.ini configuration file and possibly obtain sen4d · webstar | Orta5,0 | — | %1,4 | 27 Tem 2004 |
20İzleyin | CVE-2005-3143İstismar yok | Unspecified vulnerability in the Mailbox Server for 4D WebStar before 5.3.5 allows attackers to cause a denial of service (crash) via IMAP c4d · webstar | Orta5,0 | — | %1,3 | 5 Eki 2005 |
14İzleyin | CVE-2004-0698İstismar yok | 4D WebSTAR 5.3.2 and earlier allows local users to read and modify arbitrary files via a symlink attack.4d · webstar | Düşük3,6 | — | %0,3 | 27 Tem 2004 |
- CVE-2004-069541Planlayın
Stack-based buffer overflow in the FTP service for 4D WebSTAR 5.3.2 and earlier allows remote attackers to execute arbitrary code via a long
YüksekCVSS 7,5SilahlaştırılmışEPSS %384d · webstar27 Tem 2004
- CVE-2024-3984734İzleyin
Arbitrary File Read and Server Side Request Forgery via XML External Entities in 4D Server SOAP
YüksekCVSS 8,7İstismar yokEPSS %04d · server30 Nis 2026
- CVE-2004-007933İzleyin
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (
YüksekCVSS 7,5İstismar yokEPSS %10openssl · openssl23 Kas 2004
- CVE-2023-477031İzleyin
Uncontrolled Search Path Element Vulnerability in 4D and 4D Windows Server
YüksekCVSS 7,8İstismar yokEPSS %04d · 4d30 Kas 2023
- CVE-2023-3022230İzleyin
An information disclosure vulnerability in 4D SAS 4D Server Application v17, v18, v19 R7 and earlier allows attackers to retrieve password h
YüksekCVSS 7,5İstismar yokEPSS %14d · server16 Haz 2023
- CVE-2023-3022330İzleyin
A broken authentication vulnerability in 4D SAS 4D Server software v17, v18, v19 R7, and earlier allows attackers to send crafted TCP packet
YüksekCVSS 7,5İstismar yokEPSS %14d · server16 Haz 2023
- CVE-2004-011223İzleyin
The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of
OrtaCVSS 5,0İstismar yokEPSS %10openssl · openssl23 Kas 2004
- CVE-2004-008122İzleyin
OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infi
OrtaCVSS 5,0İstismar yokEPSS %7openssl · openssl23 Kas 2004
- CVE-2005-150722İzleyin
Buffer overflow in the Tomcat plugin in 4d WebSTAR 5.33 and 5.4 allows remote attackers to cause a denial of service and possibly execute ar
OrtaCVSS 5,0Kavram kanıtıEPSS %64d · webstar11 May 2005
- CVE-2000-029021İzleyin
Buffer overflow in Webstar HTTP server allows remote attackers to cause a denial of service via a long GET request.
OrtaCVSS 5,0İstismar yokEPSS %24d · webstar http server31 Mar 2000
- CVE-2004-069620İzleyin
The ShellExample.cgi script in 4D WebSTAR 5.3.2 and earlier allows remote attackers to list arbitrary directories via a URL with the desired
OrtaCVSS 5,0İstismar yokEPSS %14d · webstar27 Tem 2004
- CVE-2004-069720İzleyin
Unknown vulnerability in 4D WebSTAR 5.3.2 and earlier allows remote attackers to read the php.ini configuration file and possibly obtain sen
OrtaCVSS 5,0İstismar yokEPSS %14d · webstar27 Tem 2004
- CVE-2005-314320İzleyin
Unspecified vulnerability in the Mailbox Server for 4D WebStar before 5.3.5 allows attackers to cause a denial of service (crash) via IMAP c
OrtaCVSS 5,0İstismar yokEPSS %14d · webstar5 Eki 2005
- CVE-2004-069814İzleyin
4D WebSTAR 5.3.2 and earlier allows local users to read and modify arbitrary files via a symlink attack.
DüşükCVSS 3,6İstismar yokEPSS %04d · webstar27 Tem 2004