broadcom kayıtları
broadcom üreticisine ait 698 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 4 · %0,6
- Silahlaştırılmış
- 25 · %3,6
- Pre-auth RCE
- 98
- Düzeltme kaydı olan
- %24,6
- Yayından KEV’e ortanca
- 760 gün
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')46
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer37
- CWE-20 Improper Input Validation25
- CWE-532 Insertion of Sensitive Information into Log File19
- CWE-125 Out-of-bounds Read17
- CWE-287 Improper Authentication14
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
698 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
98Hemen | CVE-2018-1273Silahlaştırılmış | Spring Data Commons, versions prior to 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported versions, contain a property binder vulnerabilitbroadcom · spring data commons · CWE-94 | Kritik9,8 | KEV | %97,0 | 11 Nis 2018 |
96Hemen | CVE-2021-40438Silahlaştırılmış | A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user.resf · rocky linux · CWE-918 | Kritik9,0 | KEV | %100,0 | 16 Eyl 2021 |
90Hemen | CVE-2014-0160Silahlaştırılmış | The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packets, which allows remopenssl · openssl · CWE-125 | Yüksek7,5 | KEV | %100,0 | 7 Nis 2014 |
68Bu hafta | CVE-2010-0425Silahlaştırılmış | modules/arch/win32/mod_isapi.c in mod_isapi in the Apache HTTP Server 2.0.37 through 2.0.63, 2.2.0 through 2.2.14, and 2.3.x before 2.3.7, wapache · http server | Kritik10,0 | — | %94,2 | 5 Mar 2010 |
67Bu hafta | CVE-2011-1653Silahlaştırılmış | Multiple SQL injection vulnerabilities in the Unified Network Control (UNC) Server in CA Total Defense (TD) r12 before SE2 allow remote attabroadcom · total defense · CWE-89 | Kritik10,0 | — | %88,7 | 18 Nis 2011 |
64Bu hafta | CVE-2008-4397Silahlaştırılmış | Directory traversal vulnerability in the RPC interface (asdbapi.dll) in CA ARCserve Backup (formerly BrightStor ARCserve Backup) r11.1 throuca · arcserve backup · CWE-20 | Kritik10,0 | — | %80,5 | 14 Eki 2008 |
64Bu hafta | CVE-2007-0449Silahlaştırılmış | Multiple buffer overflows in LGSERVER.EXE in CA BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.1 SP1, Mobile Backup rbroadcom · brightstor arcserve backup laptops desktops · CWE-119 | Kritik10,0 | — | %79,4 | 23 Oca 2007 |
64Bu hafta | CVE-2025-1976Silahlaştırılmış | Code injection exposure in Fabric OS 9.1.0 through 9.1.1d6broadcom · fabric operating system · CWE-94 | Yüksek8,6 | KEV | %0,7 | 23 Nis 2025 |
63Bu hafta | CVE-2007-2139Silahlaştırılmış | Multiple stack-based buffer overflows in the SUN RPC service in CA (formerly Computer Associates) BrightStor ARCserve Media Server, as used ca · brightstor arcserve backup | Kritik10,0 | — | %78,0 | 25 Nis 2007 |
63Bu hafta | CVE-2005-2668Silahlaştırılmış | Multiple buffer overflows in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_ca · etrust admin | Kritik10,0 | — | %75,2 | 23 Ağu 2005 |
62Bu hafta | CVE-2020-8012Silahlaştırılmış | CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains a buffer overflow vulnerability in the robot (cbroadcom · unified infrastructure management · CWE-120 | Kritik9,8 | — | %77,4 | 18 Şub 2020 |
61Bu hafta | CVE-2006-6076Silahlaştırılmış | Buffer overflow in the Tape Engine (tapeeng.exe) in CA (formerly Computer Associates) BrightStor ARCserve Backup 11.5 and earlier allows remca · brightstor arcserve backup | Kritik10,0 | — | %70,9 | 24 Kas 2006 |
61Bu hafta | CVE-2005-0260Silahlaştırılmış | Stack-based buffer overflow in the Discovery Service for BrightStor ARCserve Backup 11.1 and earlier allows remote attackers to execute arbibroadcom · brightstor arcserve backup | Kritik10,0 | — | %69,7 | 2 May 2005 |
60Bu hafta | CVE-2007-5003Silahlaştırılmış | Multiple stack-based buffer overflows in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 alca · protection suites · CWE-119 | Kritik10,0 | — | %67,2 | 1 Eki 2007 |
59Planlayın | CVE-2022-23305Kavram kanıtı | SQL injection in JDBC Appender in Apache Log4j V1apache · log4j · CWE-89 | Kritik9,8 | — | %66,5 | 18 Oca 2022 |
59Planlayın | CVE-2007-5082Silahlaştırılmış | Multiple stack-based buffer overflows in Computer Associates (CA) BrightStor Hierarchical Storage Manager (HSM) before r11.6 allow remote atbroadcom · brightstor hierarchical storage manager · CWE-119 | Kritik10,0 | — | %63,5 | 1 Eki 2007 |
58Planlayın | CVE-2022-2068İstismar yok | The c_rehash script allows command injectionopenssl · openssl · CWE-78 | Yüksek7,3 | — | %95,4 | 21 Haz 2022 |
58Planlayın | CVE-2017-9417Kavram kanıtı | Broadcom BCM43xx Wi-Fi chips allow remote attackers to execute arbitrary code via unspecified vectors, aka the "Broadpwn" issue.broadcom · bcm43xx wi-fi chipset firmware | Kritik9,8 | — | %64,0 | 4 Haz 2017 |
58Planlayın | CVE-2007-3216Silahlaştırılmış | Multiple buffer overflows in the LGServer component of CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.1 albroadcom · brightstor arcserve backup laptops desktops · CWE-119 | Kritik10,0 | — | %59,2 | 14 Haz 2007 |
54Planlayın | CVE-2005-2535Silahlaştırılmış | Buffer overflow in the Discovery Service in BrightStor ARCserve Backup 9.0 through 11.1 allows remote attackers to execute arbitrary commandbroadcom · arcserve backup 2000 | Yüksek7,5 | — | %80,9 | 10 Ağu 2005 |
54Planlayın | CVE-2006-5143Silahlaştırılmış | Multiple buffer overflows in CA BrightStor ARCserve Backup r11.5 SP1 and earlier, r11.1, and 9.01; BrightStor ARCserve Backup for Windows r1ca · brightstor arcserve backup · CWE-119 | Yüksek7,5 | — | %79,5 | 10 Eki 2006 |
54Planlayın | CVE-2022-23302İstismar yok | Deserialization of untrusted data in JMSSink in Apache Log4j 1.xapache · log4j · CWE-502 | Yüksek8,8 | — | %63,6 | 18 Oca 2022 |
54Planlayın | CVE-2020-8010Silahlaştırılmış | CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains an improper ACL handling vulnerability in the rbroadcom · unified infrastructure management | Kritik9,8 | — | %50,7 | 18 Şub 2020 |
54Planlayın | CVE-2004-1812İstismar yok | Multiple stack-based buffer overflows in Agent Common Services (1) cam.exe and (2) awservices.exe in Unicenter TNG 2.4 allow remote attackerbroadcom · unicenter tng | Kritik10,0 | — | %45,2 | 31 Ara 2004 |
52Planlayın | CVE-2007-4620Silahlaştırılmış | Multiple stack-based buffer overflows in Computer Associates (CA) Alert Notification Service (Alert.exe) 8.1.586.0, 8.0.450.0, and 7.1.758.0ca · brightstor arcserve backup · CWE-119 | Kritik9,0 | — | %52,3 | 7 Nis 2008 |
- CVE-2018-127398Hemen
Spring Data Commons, versions prior to 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported versions, contain a property binder vulnerabilit
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %97broadcom · spring data commons11 Nis 2018
- CVE-2021-4043896Hemen
A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user.
KritikCVSS 9,0KEVSilahlaştırılmışEPSS %100resf · rocky linux16 Eyl 2021
- CVE-2014-016090Hemen
The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packets, which allows rem
YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %100openssl · openssl7 Nis 2014
- CVE-2010-042568Bu hafta
modules/arch/win32/mod_isapi.c in mod_isapi in the Apache HTTP Server 2.0.37 through 2.0.63, 2.2.0 through 2.2.14, and 2.3.x before 2.3.7, w
KritikCVSS 10,0SilahlaştırılmışEPSS %94apache · http server5 Mar 2010
- CVE-2011-165367Bu hafta
Multiple SQL injection vulnerabilities in the Unified Network Control (UNC) Server in CA Total Defense (TD) r12 before SE2 allow remote atta
KritikCVSS 10,0SilahlaştırılmışEPSS %89broadcom · total defense18 Nis 2011
- CVE-2008-439764Bu hafta
Directory traversal vulnerability in the RPC interface (asdbapi.dll) in CA ARCserve Backup (formerly BrightStor ARCserve Backup) r11.1 throu
KritikCVSS 10,0SilahlaştırılmışEPSS %81ca · arcserve backup14 Eki 2008
- CVE-2007-044964Bu hafta
Multiple buffer overflows in LGSERVER.EXE in CA BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.1 SP1, Mobile Backup r
KritikCVSS 10,0SilahlaştırılmışEPSS %79broadcom · brightstor arcserve backup laptops desktops23 Oca 2007
- CVE-2025-197664Bu hafta
Code injection exposure in Fabric OS 9.1.0 through 9.1.1d6
YüksekCVSS 8,6KEVSilahlaştırılmışEPSS %1broadcom · fabric operating system23 Nis 2025
- CVE-2007-213963Bu hafta
Multiple stack-based buffer overflows in the SUN RPC service in CA (formerly Computer Associates) BrightStor ARCserve Media Server, as used
KritikCVSS 10,0SilahlaştırılmışEPSS %78ca · brightstor arcserve backup25 Nis 2007
- CVE-2005-266863Bu hafta
Multiple buffer overflows in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_
KritikCVSS 10,0SilahlaştırılmışEPSS %75ca · etrust admin23 Ağu 2005
- CVE-2020-801262Bu hafta
CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains a buffer overflow vulnerability in the robot (c
KritikCVSS 9,8SilahlaştırılmışEPSS %77broadcom · unified infrastructure management18 Şub 2020
- CVE-2006-607661Bu hafta
Buffer overflow in the Tape Engine (tapeeng.exe) in CA (formerly Computer Associates) BrightStor ARCserve Backup 11.5 and earlier allows rem
KritikCVSS 10,0SilahlaştırılmışEPSS %71ca · brightstor arcserve backup24 Kas 2006
- CVE-2005-026061Bu hafta
Stack-based buffer overflow in the Discovery Service for BrightStor ARCserve Backup 11.1 and earlier allows remote attackers to execute arbi
KritikCVSS 10,0SilahlaştırılmışEPSS %70broadcom · brightstor arcserve backup2 May 2005
- CVE-2007-500360Bu hafta
Multiple stack-based buffer overflows in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 al
KritikCVSS 10,0SilahlaştırılmışEPSS %67ca · protection suites1 Eki 2007
- CVE-2022-2330559Planlayın
SQL injection in JDBC Appender in Apache Log4j V1
KritikCVSS 9,8Kavram kanıtıEPSS %67apache · log4j18 Oca 2022
- CVE-2007-508259Planlayın
Multiple stack-based buffer overflows in Computer Associates (CA) BrightStor Hierarchical Storage Manager (HSM) before r11.6 allow remote at
KritikCVSS 10,0SilahlaştırılmışEPSS %63broadcom · brightstor hierarchical storage manager1 Eki 2007
- CVE-2022-206858Planlayın
The c_rehash script allows command injection
YüksekCVSS 7,3İstismar yokEPSS %95openssl · openssl21 Haz 2022
- CVE-2017-941758Planlayın
Broadcom BCM43xx Wi-Fi chips allow remote attackers to execute arbitrary code via unspecified vectors, aka the "Broadpwn" issue.
KritikCVSS 9,8Kavram kanıtıEPSS %64broadcom · bcm43xx wi-fi chipset firmware4 Haz 2017
- CVE-2007-321658Planlayın
Multiple buffer overflows in the LGServer component of CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.1 al
KritikCVSS 10,0SilahlaştırılmışEPSS %59broadcom · brightstor arcserve backup laptops desktops14 Haz 2007
- CVE-2005-253554Planlayın
Buffer overflow in the Discovery Service in BrightStor ARCserve Backup 9.0 through 11.1 allows remote attackers to execute arbitrary command
YüksekCVSS 7,5SilahlaştırılmışEPSS %81broadcom · arcserve backup 200010 Ağu 2005
- CVE-2006-514354Planlayın
Multiple buffer overflows in CA BrightStor ARCserve Backup r11.5 SP1 and earlier, r11.1, and 9.01; BrightStor ARCserve Backup for Windows r1
YüksekCVSS 7,5SilahlaştırılmışEPSS %80ca · brightstor arcserve backup10 Eki 2006
- CVE-2022-2330254Planlayın
Deserialization of untrusted data in JMSSink in Apache Log4j 1.x
YüksekCVSS 8,8İstismar yokEPSS %64apache · log4j18 Oca 2022
- CVE-2020-801054Planlayın
CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains an improper ACL handling vulnerability in the r
KritikCVSS 9,8SilahlaştırılmışEPSS %51broadcom · unified infrastructure management18 Şub 2020
- CVE-2004-181254Planlayın
Multiple stack-based buffer overflows in Agent Common Services (1) cam.exe and (2) awservices.exe in Unicenter TNG 2.4 allow remote attacker
KritikCVSS 10,0İstismar yokEPSS %45broadcom · unicenter tng31 Ara 2004
- CVE-2007-462052Planlayın
Multiple stack-based buffer overflows in Computer Associates (CA) Alert Notification Service (Alert.exe) 8.1.586.0, 8.0.450.0, and 7.1.758.0
KritikCVSS 9,0SilahlaştırılmışEPSS %52ca · brightstor arcserve backup7 Nis 2008