İçeriğe atla
Noroxi

boa kayıtları

boa üreticisine ait 12 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
1 · %8,3
Pre-auth RCE
1
Düzeltme kaydı olan
%8,3
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

12 kayıt
  • CVE-2007-4915
    60Bu hafta

    The Intersil isl3893 extensions for Boa 0.93.15, as used on the FreeLan RO80211G-AP and other devices, do not prevent stack writes from ente

    KritikCVSS 10,0SilahlaştırılmışEPSS %68

    boa · boa webserver17 Eyl 2007

  • CVE-2017-9833
    51Planlayın

    /cgi-bin/wapopen in Boa 0.94.14rc21 allows the injection of "../.." using the FILECAMERA variable (sent by GET) to read files with root priv

    YüksekCVSS 7,5Kavram kanıtıEPSS %68

    boa · boa23 Haz 2017

  • CVE-2018-21027
    40Planlayın

    Boa through 0.94.14rc21 allows remote attackers to trigger an out-of-memory (OOM) condition because malloc is mishandled.

    KritikCVSS 9,8İstismar yokEPSS %2

    boa · boa11 Eki 2019

  • CVE-2022-44117
    39İzleyin

    Boa 0.94.14rc21 is vulnerable to SQL Injection via username.

    KritikCVSS 9,8İstismar yokEPSS %1

    boa · boa23 Kas 2022

  • CVE-2021-33558
    34İzleyin

    Boa 0.94.13 allows remote attackers to obtain sensitive information via a misconfiguration involving backup.html, preview.html, js/log.js, l

    YüksekCVSS 7,5Kavram kanıtıEPSS %12

    boa · boa27 May 2021

  • CVE-2018-21028
    31İzleyin

    Boa through 0.94.14rc21 allows remote attackers to trigger a memory leak because of missing calls to the free function.

    YüksekCVSS 7,5İstismar yokEPSS %2

    boa · boa11 Eki 2019

  • CVE-2016-9564
    30İzleyin

    Buffer overflow in send_redirect() in Boa Webserver 0.92r allows remote attackers to DoS via an HTTP GET request requesting a long URI with

    YüksekCVSS 7,5İstismar yokEPSS %1

    boa · boa30 Kas 2016

  • CVE-2024-43367
    30İzleyin

    Boa has an uncaught exception when transitioning the state of `AsyncGenerator` objects

    YüksekCVSS 7,5İstismar yokEPSS %1

    boa-dev · boa15 Ağu 2024

  • CVE-2024-47916
    30İzleyin

    Boa web server - CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

    YüksekCVSS 7,5İstismar yokEPSS %1

    boa web server · boa web server 0.94.14rc2114 Kas 2024

  • CVE-2009-4496
    24İzleyin

    Boa 0.94.14rc21 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window

    OrtaCVSS 5,0Kavram kanıtıEPSS %12

    boa · boa13 Oca 2010

  • CVE-2000-0920
    23İzleyin

    Directory traversal vulnerability in BOA web server 0.94.8.2 and earlier allows remote attackers to read arbitrary files via a modified ..

    OrtaCVSS 5,0Kavram kanıtıEPSS %8

    boa · boa webserver19 Ara 2000

  • CVE-2022-45956
    21İzleyin

    Boa Web Server versions 0.94.13 through 0.94.14 fail to validate the correct security constraint on the HEAD HTTP method allowing everyone t

    OrtaCVSS 5,3İstismar yokEPSS %1

    boa · boa12 Ara 2022