İçeriğe atla
Noroxi

curl kayıtları

curl üreticisine ait 7 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
2
Düzeltme kaydı olan
%85,7
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Bug bounty kapsamı

Ürünün üreticisi herkese açık bir programda görünüyor. Eşleşme ad üzerinden yapıldı; kapsam metnini programda doğrulayın.

Tüm kayıtlar

7 kayıt
  • CVE-2012-0036
    35İzleyin

    curl and libcurl 7.2x before 7.24.0 do not properly consider special characters during extraction of a pathname from a URL, which allows rem

    YüksekCVSS 7,5İstismar yokEPSS %16

    curl · curl13 Nis 2012

  • CVE-2005-3185
    32İzleyin

    Stack-based buffer overflow in the ntlm_output function in http-ntlm.c for (1) wget 1.10, (2) curl 7.13.2, and (3) libcurl 7.13.2, and other

    YüksekCVSS 7,5İstismar yokEPSS %5

    curl · curl13 Eki 2005

  • CVE-2009-2417
    31İzleyin

    lib/ssluse.c in cURL and libcurl 7.4 through 7.19.5, when OpenSSL is used, does not properly handle a '\0' character in a domain name in the

    YüksekCVSS 7,5İstismar yokEPSS %3

    curl · libcurl14 Ağu 2009

  • CVE-2009-0037
    30İzleyin

    The redirect implementation in curl and libcurl 5.11 through 7.19.3, when CURLOPT_FOLLOWLOCATION is enabled, accepts arbitrary Location valu

    OrtaCVSS 6,8Kavram kanıtıEPSS %9

    curl · curl4 Mar 2009

  • CVE-2010-0734
    28İzleyin

    content_encoding.c in libcurl 7.10.5 through 7.19.7, when zlib is enabled, does not properly restrict the amount of callback data sent to an

    OrtaCVSS 6,8İstismar yokEPSS %4

    curl · libcurl19 Mar 2010

  • CVE-2010-3842
    24İzleyin

    Absolute path traversal vulnerability in curl 7.20.0 through 7.21.1, when the --remote-header-name or -J option is used, allows remote serve

    OrtaCVSS 5,8İstismar yokEPSS %2

    curl · curl27 Eki 2010

  • CVE-2025-11563
    18İzleyin

    wcurl path traversal with percent-encoded slashes

    OrtaCVSS 4,6İstismar yokEPSS %0

    curl · wcurl25 Şub 2026