İçeriğe atla
Noroxi

cmu kayıtları

cmu üreticisine ait 16 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
3
Düzeltme kaydı olan
%62,5
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

16 kayıt
  • CVE-1999-0799
    41Planlayın

    Buffer overflow in bootpd 2.4.3 and earlier via a long boot file location.

    KritikCVSS 10,0İstismar yokEPSS %2

    cmu · bootpd1 Haz 1997

  • CVE-2022-31506
    37İzleyin

    The cmusatyalab/opendiamond repository through 10.1.1 on GitHub allows absolute path traversal because the Flask send_file function is used

    KritikCVSS 9,3İstismar yokEPSS %2

    cmu · opendiamond10 Tem 2022

  • CVE-2025-27092
    34İzleyin

    Path Traversal Vulnerability in GHOSTS Photo Retrieval Endpoint

    YüksekCVSS 8,7İstismar yokEPSS %1

    cmu · ghosts19 Şub 2025

  • CVE-2011-3208
    32İzleyin

    Stack-based buffer overflow in the split_wildmats function in nntpd.c in nntpd in Cyrus IMAP Server before 2.3.17 and 2.4.x before 2.4.11 al

    YüksekCVSS 7,5İstismar yokEPSS %5

    cmu · cyrus imap server14 Eyl 2011

  • CVE-2009-0663
    31İzleyin

    Heap-based buffer overflow in the DBD::Pg (aka DBD-Pg or libdbd-pg-perl) module 1.49 for Perl might allow context-dependent attackers to exe

    YüksekCVSS 7,5İstismar yokEPSS %4

    perl · perl30 Nis 2009

  • CVE-2026-35467
    30İzleyin

    Private Key stored as extractable in browser IndexeDB

    YüksekCVSS 7,5İstismar yokEPSS %0

    cmu · cveclient2 Nis 2026

  • CVE-2026-22189
    27İzleyin

    Panda3D <= 1.10.16 egg-mkfont Stack Buffer Overflow

    OrtaCVSS 6,9İstismar yokEPSS %1

    cmu · panda3d7 Oca 2026

  • CVE-2026-22188
    27İzleyin

    Panda3D <= 1.10.16 Deploy-Stub Stack Exhaustion via Unbounded alloca()

    OrtaCVSS 6,9İstismar yokEPSS %0

    cmu · panda3d7 Oca 2026

  • CVE-2026-35466
    24İzleyin

    Stored XSS via unsanitized input from remote service

    OrtaCVSS 6,1İstismar yokEPSS %0

    cmu · cveclient2 Nis 2026

  • CVE-2011-1926
    21İzleyin

    The STARTTLS implementation in Cyrus IMAP Server before 2.4.7 does not properly restrict I/O buffering, which allows man-in-the-middle attac

    OrtaCVSS 5,1İstismar yokEPSS %4

    cmu · cyrus imap server23 May 2011

  • CVE-2014-7723
    21İzleyin

    The Carnegie Mellon Silicon Valley (aka edu.cmu.sv.mobile) application 0.1 for Android does not verify X.509 certificates from SSL servers,

    OrtaCVSS 5,4İstismar yokEPSS %0

    cmu · carnegie mellon silicon valley21 Eki 2014

  • CVE-2026-22190
    20İzleyin

    Panda3D <= 1.10.16 egg-mkfont Format String Information Disclosure

    OrtaCVSS 5,1İstismar yokEPSS %0

    cmu · panda3d7 Oca 2026

  • CVE-2013-4122
    18İzleyin

    Cyrus SASL 2.1.23, 2.1.26, and earlier does not properly handle when a NULL value is returned upon an error by the crypt function as impleme

    OrtaCVSS 4,3İstismar yokEPSS %4

    cmu · cyrus-sasl26 Eki 2013

  • CVE-2011-3481
    18İzleyin

    The index_get_ids function in index.c in imapd in Cyrus IMAP Server before 2.4.11, when server-side threading is enabled, allows remote atta

    OrtaCVSS 4,3İstismar yokEPSS %2

    cmu · cyrus imap server14 Eyl 2011

  • CVE-2009-2632
    17İzleyin

    Buffer overflow in the SIEVE script component (sieve/script.c), as used in cyrus-imapd in Cyrus IMAP Server 2.2.13 and 2.3.14, and Dovecot 1

    OrtaCVSS 4,4İstismar yokEPSS %0

    cmu · cyrus imap server8 Eyl 2009

  • CVE-2014-0027
    13İzleyin

    The play_wave_from_socket function in audio/auserver.c in Flite 1.4 allows local users to modify arbitrary files via a symlink attack on /tm

    DüşükCVSS 3,3İstismar yokEPSS %0

    cmu · flite25 Oca 2014