bro kayıtları
bro üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-20 Improper Input Validation1
- CWE-772 Missing Release of Resource after Effective Lifetime1
- CWE-787 Out-of-bounds Write1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2017-1000458İstismar yok | Bro before Bro v2.5.2 is vulnerable to an out of bounds write in the ContentLine analyzer allowing remote attackers to cause a denial of serbro · bro · CWE-787 | Kritik9,8 | — | %2,3 | 2 Oca 2018 |
31İzleyin | CVE-2015-1521İstismar yok | analyzer/protocol/dnp3/DNP3.cc in Bro before 2.3.2 does not properly handle zero values of a packet length, which allows remote attackers tobro · bro · CWE-119 | Yüksek7,5 | — | %1,8 | 24 Nis 2017 |
31İzleyin | CVE-2015-1522İstismar yok | analyzer/protocol/dnp3/DNP3.cc in Bro before 2.3.2 does not reject certain non-zero values of a packet length, which allows remote attackersbro · bro · CWE-119 | Yüksek7,5 | — | %1,8 | 24 Nis 2017 |
30İzleyin | CVE-2018-16807İstismar yok | In Bro through 2.5.5, there is a memory leak potentially leading to DoS in scripts/base/protocols/krb/main.bro in the Kerberos protocol parsbro · bro · CWE-772 | Yüksek7,5 | — | %1,4 | 10 Eyl 2018 |
30İzleyin | CVE-2018-17019İstismar yok | In Bro through 2.5.5, there is a DoS in IRC protocol names command parsing in analyzer/protocol/irc/IRC.cc.bro · bro · CWE-20 | Yüksek7,5 | — | %1,4 | 13 Eyl 2018 |
- CVE-2017-100045840Planlayın
Bro before Bro v2.5.2 is vulnerable to an out of bounds write in the ContentLine analyzer allowing remote attackers to cause a denial of ser
KritikCVSS 9,8İstismar yokEPSS %2bro · bro2 Oca 2018
- CVE-2015-152131İzleyin
analyzer/protocol/dnp3/DNP3.cc in Bro before 2.3.2 does not properly handle zero values of a packet length, which allows remote attackers to
YüksekCVSS 7,5İstismar yokEPSS %2bro · bro24 Nis 2017
- CVE-2015-152231İzleyin
analyzer/protocol/dnp3/DNP3.cc in Bro before 2.3.2 does not reject certain non-zero values of a packet length, which allows remote attackers
YüksekCVSS 7,5İstismar yokEPSS %2bro · bro24 Nis 2017
- CVE-2018-1680730İzleyin
In Bro through 2.5.5, there is a memory leak potentially leading to DoS in scripts/base/protocols/krb/main.bro in the Kerberos protocol pars
YüksekCVSS 7,5İstismar yokEPSS %1bro · bro10 Eyl 2018
- CVE-2018-1701930İzleyin
In Bro through 2.5.5, there is a DoS in IRC protocol names command parsing in analyzer/protocol/irc/IRC.cc.
YüksekCVSS 7,5İstismar yokEPSS %1bro · bro13 Eyl 2018