dia kayıtları
dia üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %83,3
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-134 Use of Externally-Controlled Format String2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2006-1550İstismar yok | Multiple buffer overflows in the xfig import code (xfig-import.c) in Dia 0.87 and later before 0.95-pre6 allow user-assisted attackers to hadia · dia · CWE-119 | Yüksek7,6 | — | %2,5 | 30 Mar 2006 |
31İzleyin | CVE-2006-2453İstismar yok | Multiple unspecified format string vulnerabilities in Dia have unspecified impact and attack vectors, a different set of issues than CVE-200dia · dia · CWE-134 | Yüksek7,5 | — | %2,2 | 28 May 2006 |
30İzleyin | CVE-2007-3408İstismar yok | Multiple unspecified vulnerabilities in Dia before 0.96.1-6 have unspecified attack vectors and impact, probably involving the use of vulnerdia · dia | Yüksek7,5 | — | %1,2 | 26 Haz 2007 |
27İzleyin | CVE-2008-5984İstismar yok | Untrusted search path vulnerability in the Python plugin in Dia 0.96.1, and possibly other versions, allows local users to execute arbitrarydia · dia | Orta6,9 | — | %0,4 | 28 Oca 2009 |
22İzleyin | CVE-2006-2480Kavram kanıtı | Format string vulnerability in Dia 0.94 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary cdia · dia · CWE-134 | Orta5,1 | — | %7,6 | 19 May 2006 |
21İzleyin | CVE-2005-2966İstismar yok | The Python SVG import plugin (diasvg_import.py) for DIA 0.94 and earlier allows user-assisted attackers to execute arbitrary commands via a dia · dia | Orta5,1 | — | %2,6 | 5 Eki 2005 |
- CVE-2006-155031İzleyin
Multiple buffer overflows in the xfig import code (xfig-import.c) in Dia 0.87 and later before 0.95-pre6 allow user-assisted attackers to ha
YüksekCVSS 7,6İstismar yokEPSS %2dia · dia30 Mar 2006
- CVE-2006-245331İzleyin
Multiple unspecified format string vulnerabilities in Dia have unspecified impact and attack vectors, a different set of issues than CVE-200
YüksekCVSS 7,5İstismar yokEPSS %2dia · dia28 May 2006
- CVE-2007-340830İzleyin
Multiple unspecified vulnerabilities in Dia before 0.96.1-6 have unspecified attack vectors and impact, probably involving the use of vulner
YüksekCVSS 7,5İstismar yokEPSS %1dia · dia26 Haz 2007
- CVE-2008-598427İzleyin
Untrusted search path vulnerability in the Python plugin in Dia 0.96.1, and possibly other versions, allows local users to execute arbitrary
OrtaCVSS 6,9İstismar yokEPSS %0dia · dia28 Oca 2009
- CVE-2006-248022İzleyin
Format string vulnerability in Dia 0.94 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary c
OrtaCVSS 5,1Kavram kanıtıEPSS %8dia · dia19 May 2006
- CVE-2005-296621İzleyin
The Python SVG import plugin (diasvg_import.py) for DIA 0.94 and earlier allows user-assisted attackers to execute arbitrary commands via a
OrtaCVSS 5,1İstismar yokEPSS %3dia · dia5 Eki 2005