Bitlbee kayıtları
bitlbee üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 3
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-476 NULL Pointer Dereference2
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-273 Improper Check for Dropped Privileges1
- CWE-416 Use After Free1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2017-5668İstismar yok | bitlbee-libpurple before 3.5.1 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly executbitlbee · bitlbee · CWE-476 | Kritik9,8 | — | %3,0 | 14 Mar 2017 |
40Planlayın | CVE-2016-10188İstismar yok | Use-after-free vulnerability in bitlbee-libpurple before 3.5 allows remote servers to cause a denial of service (crash) or possibly execute bitlbee · bitlbee · CWE-416 | Kritik9,8 | — | %2,9 | 14 Mar 2017 |
39İzleyin | CVE-2012-1187İstismar yok | Bitlbee does not drop extra group privileges correctly in unix.cbitlbee · bitlbee · CWE-273 | Kritik9,8 | — | %1,6 | 29 Eki 2019 |
31İzleyin | CVE-2016-10189İstismar yok | BitlBee before 3.5 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly execute arbitrary bitlbee · bitlbee · CWE-476 | Yüksek7,5 | — | %4,0 | 14 Mar 2017 |
31İzleyin | CVE-2008-3920İstismar yok | Unspecified vulnerability in BitlBee before 1.2.2 allows remote attackers to "recreate" and "hijack" existing accounts via unspecified vectobitlbee · bitlbee · CWE-264 | Yüksek7,5 | — | %2,1 | 4 Eyl 2008 |
21İzleyin | CVE-2008-3969İstismar yok | Multiple unspecified vulnerabilities in BitlBee before 1.2.3 allow remote attackers to "overwrite" and "hijack" existing accounts via unknowbitlbee · bitlbee | Orta5,0 | — | %2,4 | 10 Eyl 2008 |
- CVE-2017-566840Planlayın
bitlbee-libpurple before 3.5.1 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly execut
KritikCVSS 9,8İstismar yokEPSS %3bitlbee · bitlbee14 Mar 2017
- CVE-2016-1018840Planlayın
Use-after-free vulnerability in bitlbee-libpurple before 3.5 allows remote servers to cause a denial of service (crash) or possibly execute
KritikCVSS 9,8İstismar yokEPSS %3bitlbee · bitlbee14 Mar 2017
- CVE-2012-118739İzleyin
Bitlbee does not drop extra group privileges correctly in unix.c
KritikCVSS 9,8İstismar yokEPSS %2bitlbee · bitlbee29 Eki 2019
- CVE-2016-1018931İzleyin
BitlBee before 3.5 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly execute arbitrary
YüksekCVSS 7,5İstismar yokEPSS %4bitlbee · bitlbee14 Mar 2017
- CVE-2008-392031İzleyin
Unspecified vulnerability in BitlBee before 1.2.2 allows remote attackers to "recreate" and "hijack" existing accounts via unspecified vecto
YüksekCVSS 7,5İstismar yokEPSS %2bitlbee · bitlbee4 Eyl 2008
- CVE-2008-396921İzleyin
Multiple unspecified vulnerabilities in BitlBee before 1.2.3 allow remote attackers to "overwrite" and "hijack" existing accounts via unknow
OrtaCVSS 5,0İstismar yokEPSS %2bitlbee · bitlbee10 Eyl 2008