arj software kayıtları
arj software üreticisine ait 3 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-59 Improper Link Resolution Before File Access ('Link Following')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
3 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
32İzleyin | CVE-2015-2782İstismar yok | Buffer overflow in Open-source ARJ archiver 3.10.22 allows remote attackers to cause a denial of service (crash) or possibly execute arbitradebian · debian linux · CWE-119 | Yüksek7,5 | — | %5,8 | 8 Nis 2015 |
24İzleyin | CVE-2015-0556İstismar yok | Open-source ARJ archiver 3.10.22 allows remote attackers to conduct directory traversal attacks via a symlink attack in an ARJ archive.arj software · arj archiver · CWE-59 | Orta5,8 | — | %3,8 | 8 Nis 2015 |
24İzleyin | CVE-2015-0557İstismar yok | Open-source ARJ archiver 3.10.22 does not properly remove leading slashes from paths, which allows remote attackers to conduct absolute patharj software · arj archiver · CWE-22 | Orta5,8 | — | %3,3 | 8 Nis 2015 |
- CVE-2015-278232İzleyin
Buffer overflow in Open-source ARJ archiver 3.10.22 allows remote attackers to cause a denial of service (crash) or possibly execute arbitra
YüksekCVSS 7,5İstismar yokEPSS %6debian · debian linux8 Nis 2015
- CVE-2015-055624İzleyin
Open-source ARJ archiver 3.10.22 allows remote attackers to conduct directory traversal attacks via a symlink attack in an ARJ archive.
OrtaCVSS 5,8İstismar yokEPSS %4arj software · arj archiver8 Nis 2015
- CVE-2015-055724İzleyin
Open-source ARJ archiver 3.10.22 does not properly remove leading slashes from paths, which allows remote attackers to conduct absolute path
OrtaCVSS 5,8İstismar yokEPSS %3arj software · arj archiver8 Nis 2015