ACME kayıtları
acme üreticisine ait 15 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 4
- Düzeltme kaydı olan
- %40
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-20 Improper Input Validation3
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
- CWE-668 Exposure of Resource to Wrong Sphere2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-404 Improper Resource Shutdown or Release1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
15 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
47Planlayın | CVE-2018-18778Kavram kanıtı | ACME mini_httpd before 1.30 lets remote users read arbitrary files.acme · mini-httpd · CWE-200 | Orta6,5 | — | %70,8 | 29 Eki 2018 |
46Planlayın | CVE-2003-0899Kavram kanıtı | Buffer overflow in defang in libhttpd.c for thttpd 2.21 to 2.23b1 allows remote attackers to execute arbitrary code via requests that contaiacme · thttpd · CWE-131 | Kritik9,8 | — | %22,2 | 3 Kas 2003 |
43Planlayın | CVE-2009-4491Kavram kanıtı | thttpd 2.25b0 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window'sacme · thttpd · CWE-20 | Kritik9,8 | — | %13,7 | 13 Oca 2010 |
40Planlayın | CVE-2001-1496İstismar yok | Off-by-one buffer overflow in Basic Authentication in Acme Labs thttpd 1.95 through 2.20 allows remote attackers to cause a denial of servicacme · thttpd · CWE-193 | Kritik9,8 | — | %4,8 | 31 Ara 2001 |
40Planlayın | CVE-2017-17663İstismar yok | The htpasswd implementation of mini_httpd before v1.28 and of thttpd before v2.28 is affected by a buffer overflow that can be exploited remacme · mini httpd · CWE-119 | Kritik9,8 | — | %2,7 | 6 Şub 2018 |
39İzleyin | CVE-2007-0158İstismar yok | thttpd 2007 has buffer underflow.acme · thttpd · CWE-787 | Kritik9,8 | — | %1,3 | 27 Ara 2019 |
34İzleyin | CVE-2014-4927Kavram kanıtı | Buffer overflow in ACME micro_httpd, as used in D-Link DSL2750U and DSL2740U and NetGear WGR614 and MR-ADSL-DG834 routers allows remote attaacme · micro httpd · CWE-119 | Yüksek7,8 | — | %11,2 | 24 Tem 2014 |
30İzleyin | CVE-2024-0263İstismar yok | ACME Ultra Mini HTTPd HTTP GET Request denial of serviceacme · ultra mini httpd · CWE-404 | Yüksek7,5 | — | %1,4 | 7 Oca 2024 |
23İzleyin | CVE-2009-4490Kavram kanıtı | mini_httpd 1.19 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a windowacme · mini httpd · CWE-20 | Orta5,0 | — | %10,2 | 13 Oca 2010 |
22İzleyin | CVE-2012-5640İstismar yok | thttpd has a local DoS vulnerability via specially-crafted .htpasswd filesacme · thttpd · CWE-476 | Orta5,5 | — | %0,4 | 25 Kas 2019 |
21İzleyin | CVE-2010-1544Kavram kanıtı | micro_httpd on the RCA DCM425 cable modem allows remote attackers to cause a denial of service (device reboot) via a long string to TCP portrca · digital cable modem · CWE-20 | Orta5,0 | — | %2,6 | 26 Nis 2010 |
21İzleyin | CVE-2001-0893İstismar yok | Acme mini_httpd before 1.16 allows remote attackers to view sensitive files under the document root (such as .htpasswd) via a GET request wiacme · mini httpd · CWE-668 | Orta5,0 | — | %2,5 | 13 Kas 2001 |
21İzleyin | CVE-2001-0892İstismar yok | Acme Thttpd Secure Webserver before 2.22, with the chroot option enabled, allows remote attackers to view sensitive files under the documentacme · thttpd · CWE-668 | Orta5,0 | — | %1,9 | 13 Kas 2001 |
20İzleyin | CVE-2015-1548İstismar yok | mini_httpd 1.21 and earlier allows remote attackers to obtain sensitive information from process memory via an HTTP request with a long protacme · mini httpd · CWE-119 | Orta5,0 | — | %1,6 | 10 Şub 2015 |
8İzleyin | CVE-2013-0348İstismar yok | thttpd.c in sthttpd before 2.26.4-r2 and thttpd 2.25b use world-readable permissions for /var/log/thttpd.log, which allows local users to obopen source development team · sthttpd · CWE-264 | Düşük2,1 | — | %0,5 | 13 Ara 2013 |
- CVE-2018-1877847Planlayın
ACME mini_httpd before 1.30 lets remote users read arbitrary files.
OrtaCVSS 6,5Kavram kanıtıEPSS %71acme · mini-httpd29 Eki 2018
- CVE-2003-089946Planlayın
Buffer overflow in defang in libhttpd.c for thttpd 2.21 to 2.23b1 allows remote attackers to execute arbitrary code via requests that contai
KritikCVSS 9,8Kavram kanıtıEPSS %22acme · thttpd3 Kas 2003
- CVE-2009-449143Planlayın
thttpd 2.25b0 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's
KritikCVSS 9,8Kavram kanıtıEPSS %14acme · thttpd13 Oca 2010
- CVE-2001-149640Planlayın
Off-by-one buffer overflow in Basic Authentication in Acme Labs thttpd 1.95 through 2.20 allows remote attackers to cause a denial of servic
KritikCVSS 9,8İstismar yokEPSS %5acme · thttpd31 Ara 2001
- CVE-2017-1766340Planlayın
The htpasswd implementation of mini_httpd before v1.28 and of thttpd before v2.28 is affected by a buffer overflow that can be exploited rem
KritikCVSS 9,8İstismar yokEPSS %3acme · mini httpd6 Şub 2018
- CVE-2007-015839İzleyin
thttpd 2007 has buffer underflow.
KritikCVSS 9,8İstismar yokEPSS %1acme · thttpd27 Ara 2019
- CVE-2014-492734İzleyin
Buffer overflow in ACME micro_httpd, as used in D-Link DSL2750U and DSL2740U and NetGear WGR614 and MR-ADSL-DG834 routers allows remote atta
YüksekCVSS 7,8Kavram kanıtıEPSS %11acme · micro httpd24 Tem 2014
- CVE-2024-026330İzleyin
ACME Ultra Mini HTTPd HTTP GET Request denial of service
YüksekCVSS 7,5İstismar yokEPSS %1acme · ultra mini httpd7 Oca 2024
- CVE-2009-449023İzleyin
mini_httpd 1.19 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window
OrtaCVSS 5,0Kavram kanıtıEPSS %10acme · mini httpd13 Oca 2010
- CVE-2012-564022İzleyin
thttpd has a local DoS vulnerability via specially-crafted .htpasswd files
OrtaCVSS 5,5İstismar yokEPSS %0acme · thttpd25 Kas 2019
- CVE-2010-154421İzleyin
micro_httpd on the RCA DCM425 cable modem allows remote attackers to cause a denial of service (device reboot) via a long string to TCP port
OrtaCVSS 5,0Kavram kanıtıEPSS %3rca · digital cable modem26 Nis 2010
- CVE-2001-089321İzleyin
Acme mini_httpd before 1.16 allows remote attackers to view sensitive files under the document root (such as .htpasswd) via a GET request wi
OrtaCVSS 5,0İstismar yokEPSS %3acme · mini httpd13 Kas 2001
- CVE-2001-089221İzleyin
Acme Thttpd Secure Webserver before 2.22, with the chroot option enabled, allows remote attackers to view sensitive files under the document
OrtaCVSS 5,0İstismar yokEPSS %2acme · thttpd13 Kas 2001
- CVE-2015-154820İzleyin
mini_httpd 1.21 and earlier allows remote attackers to obtain sensitive information from process memory via an HTTP request with a long prot
OrtaCVSS 5,0İstismar yokEPSS %2acme · mini httpd10 Şub 2015
- CVE-2013-03488İzleyin
thttpd.c in sthttpd before 2.26.4-r2 and thttpd 2.25b use world-readable permissions for /var/log/thttpd.log, which allows local users to ob
DüşükCVSS 2,1İstismar yokEPSS %1open source development team · sthttpd13 Ara 2013