cups kayıtları
cups üreticisine ait 11 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 5
- Düzeltme kaydı olan
- %90,9
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
- CWE-20 Improper Input Validation2
- CWE-189 Numeric Errors1
- CWE-254 7PK - Security Features1
- CWE-400 Uncontrolled Resource Consumption1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
11 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
49Planlayın | CVE-2015-1158Kavram kanıtı | The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-cups · cups · CWE-254 | Kritik10,0 | — | %29,9 | 26 Haz 2015 |
42Planlayın | CVE-2007-4351İstismar yok | Off-by-one error in the ippReadIO function in cups/ipp.c in CUPS 1.3.3 allows remote attackers to cause a denial of service (crash) via a crcups · cups · CWE-189 | Kritik10,0 | — | %7,4 | 31 Eki 2007 |
42Planlayın | CVE-2008-0882İstismar yok | Double free vulnerability in the process_browse_data function in CUPS 1.3.5 allows remote attackers to cause a denial of service (daemon cracups · cups · CWE-119 | Kritik10,0 | — | %5,8 | 21 Şub 2008 |
39İzleyin | CVE-2008-0047İstismar yok | Heap-based buffer overflow in the cgiCompileSearch function in CUPS 1.3.5, and other versions including the version bundled with Apple Mac Oapple · mac os x · CWE-119 | Kritik9,3 | — | %6,8 | 18 Mar 2008 |
36İzleyin | CVE-2014-8166İstismar yok | The browsing feature in the server in CUPS does not filter ANSI escape sequences from shared printer names, which might allow remote attackecups · cups · CWE-20 | Yüksek8,8 | — | %3,7 | 12 Oca 2018 |
35İzleyin | CVE-2018-6553İstismar yok | AppArmor cupsd Sandbox Bypass Due to Use of Hard Linkscups · cups | Yüksek8,8 | — | %0,4 | 10 Ağu 2018 |
31İzleyin | CVE-2005-4873İstismar yok | Multiple stack-based buffer overflows in the phpcups PHP module for CUPS 1.1.23rc1 might allow context-dependent attackers to execute arbitrcups · cups · CWE-119 | Yüksek7,5 | — | %1,9 | 31 Ara 2005 |
30İzleyin | CVE-2024-47850İstismar yok | CUPS cups-browsed before 2.5b1 will send an HTTP POST request to an arbitrary destination and port in response to a single IPP UDP packet reCWE-400 | Yüksek7,5 | — | %0,9 | 4 Eki 2024 |
22İzleyin | CVE-2007-0720İstismar yok | The CUPS service on multiple platforms allows remote attackers to cause a denial of service (service hang) via a "partially-negotiated" SSL cups · cups | Orta5,0 | — | %5,3 | 13 Mar 2007 |
19İzleyin | CVE-2015-1159İstismar yok | Cross-site scripting (XSS) vulnerability in the cgi_puts function in cgi-bin/template.c in the template engine in CUPS before 2.0.3 allows rcups · cups · CWE-79 | Orta4,3 | — | %7,3 | 26 Haz 2015 |
18İzleyin | CVE-2008-1722İstismar yok | Multiple integer overflows in (1) filter/image-png.c and (2) filter/image-zoom.c in CUPS 1.3 allow attackers to cause a denial of service (ccups · cups · CWE-20 | Orta4,3 | — | %2,0 | 10 Nis 2008 |
- CVE-2015-115849Planlayın
The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-
KritikCVSS 10,0Kavram kanıtıEPSS %30cups · cups26 Haz 2015
- CVE-2007-435142Planlayın
Off-by-one error in the ippReadIO function in cups/ipp.c in CUPS 1.3.3 allows remote attackers to cause a denial of service (crash) via a cr
KritikCVSS 10,0İstismar yokEPSS %7cups · cups31 Eki 2007
- CVE-2008-088242Planlayın
Double free vulnerability in the process_browse_data function in CUPS 1.3.5 allows remote attackers to cause a denial of service (daemon cra
KritikCVSS 10,0İstismar yokEPSS %6cups · cups21 Şub 2008
- CVE-2008-004739İzleyin
Heap-based buffer overflow in the cgiCompileSearch function in CUPS 1.3.5, and other versions including the version bundled with Apple Mac O
KritikCVSS 9,3İstismar yokEPSS %7apple · mac os x18 Mar 2008
- CVE-2014-816636İzleyin
The browsing feature in the server in CUPS does not filter ANSI escape sequences from shared printer names, which might allow remote attacke
YüksekCVSS 8,8İstismar yokEPSS %4cups · cups12 Oca 2018
- CVE-2018-655335İzleyin
AppArmor cupsd Sandbox Bypass Due to Use of Hard Links
YüksekCVSS 8,8İstismar yokEPSS %0cups · cups10 Ağu 2018
- CVE-2005-487331İzleyin
Multiple stack-based buffer overflows in the phpcups PHP module for CUPS 1.1.23rc1 might allow context-dependent attackers to execute arbitr
YüksekCVSS 7,5İstismar yokEPSS %2cups · cups31 Ara 2005
- CVE-2024-4785030İzleyin
CUPS cups-browsed before 2.5b1 will send an HTTP POST request to an arbitrary destination and port in response to a single IPP UDP packet re
YüksekCVSS 7,5İstismar yokEPSS %14 Eki 2024
- CVE-2007-072022İzleyin
The CUPS service on multiple platforms allows remote attackers to cause a denial of service (service hang) via a "partially-negotiated" SSL
OrtaCVSS 5,0İstismar yokEPSS %5cups · cups13 Mar 2007
- CVE-2015-115919İzleyin
Cross-site scripting (XSS) vulnerability in the cgi_puts function in cgi-bin/template.c in the template engine in CUPS before 2.0.3 allows r
OrtaCVSS 4,3İstismar yokEPSS %7cups · cups26 Haz 2015
- CVE-2008-172218İzleyin
Multiple integer overflows in (1) filter/image-png.c and (2) filter/image-zoom.c in CUPS 1.3 allow attackers to cause a denial of service (c
OrtaCVSS 4,3İstismar yokEPSS %2cups · cups10 Nis 2008