dronecode kayıtları
dronecode üreticisine ait 26 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %30,8
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')8
- CWE-121 Stack-based Buffer Overflow4
- CWE-229 Improper Handling of Values2
- CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')2
- CWE-862 Missing Authorization2
- CWE-319 Cleartext Transmission of Sensitive Information1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
26 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2020-10282İstismar yok | RVD#3316: No authentication in MAVLink protocoldronecode · micro air vehicle link · CWE-306 | Kritik9,8 | — | %1,8 | 3 Tem 2020 |
39İzleyin | CVE-2020-10283İstismar yok | RVD#3317: MAVLink version handshaking allows for an attacker to bypass authenticationdronecode · micro air vehicle link · CWE-288 | Kritik9,8 | — | %1,5 | 20 Ağu 2020 |
39İzleyin | CVE-2023-46256İstismar yok | PX4-Autopilot Heap Buffer Overflow Bugdronecode · px4 drone autopilot · CWE-120 | Kritik9,8 | — | %0,6 | 31 Eki 2023 |
32İzleyin | CVE-2026-32706İstismar yok | PX4 autopilot has a global buffer overflow in crsf_rc via oversized variable-length known packetdronecode · px4 drone autopilot · CWE-120 | Yüksek8,1 | — | %0,3 | 16 Mar 2026 |
32İzleyin | CVE-2026-26742İstismar yok | PX4 Autopilot versions 1.12.x through 1.15.x contain a protection mechanism failure in the "Re-arm Grace Period" logic.dronecode · px4 drone autopilot · CWE-862 | Yüksek8,1 | — | %0,3 | 10 Mar 2026 |
32İzleyin | CVE-2026-26741İstismar yok | PX4 Autopilot versions 1.12.x through 1.15.x contain a logic flaw in the mode switching mechanism.dronecode · px4 drone autopilot · CWE-862 | Yüksek8,1 | — | %0,3 | 10 Mar 2026 |
32İzleyin | CVE-2026-32708İstismar yok | Zenoh uORB Subscriber Allows Arbitrary Stack Allocation (PX4/PX4-Autopilot)dronecode · px4 drone autopilot · CWE-121 | Yüksek8,0 | — | %0,3 | 16 Mar 2026 |
31İzleyin | CVE-2024-40427İstismar yok | Stack Buffer Overflow in PX4-Autopilot v1.14.3, which allows attackers to execute commands to exploit this vulnerability and cause the progrdronecode · px4 drone autopilot · CWE-120 | Yüksek7,9 | — | %0,3 | 7 Oca 2025 |
30İzleyin | CVE-2021-34125İstismar yok | An issue discovered in Yuneec Mantis Q and PX4-Autopilot v 1.11.3 and below allow attacker to gain access to sensitive information via varioyuneec · mantis q firmware · CWE-200 | Yüksek7,5 | — | %1,0 | 9 Mar 2023 |
30İzleyin | CVE-2021-46896İstismar yok | Buffer Overflow vulnerability in PX4-Autopilot allows attackers to cause a denial of service via handler function handling msgid 332.dronecode · px4 drone autopilot · CWE-120 | Yüksek7,5 | — | %0,8 | 6 Tem 2023 |
30İzleyin | CVE-2020-10281İstismar yok | RVD#3315: Cleartext transmission of sensitive information in MAVLink protocol version 1.0 and 2.0dronecode · micro air vehicle link · CWE-319 | Yüksek7,5 | — | %0,7 | 3 Tem 2020 |
30İzleyin | CVE-2024-38952İstismar yok | PX4-Autopilot v1.14.3 was discovered to contain a buffer overflow via the topic_name parameter at /logger/logged_topics.cpp.dronecode · px4 drone autopilot · CWE-120 | Yüksek7,5 | — | %0,7 | 25 Haz 2024 |
27İzleyin | CVE-2026-32709İstismar yok | PX4 Autopilot MAVLink FTP Unauthenticated Path Traversal (Arbitrary File Read/Write/Delete)dronecode · px4 drone autopilot · CWE-22 | Orta6,8 | — | %0,3 | 16 Mar 2026 |
27İzleyin | CVE-2026-32705İstismar yok | PX4 autopilot BST Device Name Length Can Overflow Driver Bufferdronecode · px4 drone autopilot · CWE-121 | Orta6,8 | — | %0,3 | 16 Mar 2026 |
26İzleyin | CVE-2024-38951İstismar yok | A buffer overflow in PX4-Autopilot v1.12.3 allows attackers to cause a Denial of Service (DoS) via a crafted MavLink message.dronecode · px4 drone autopilot · CWE-120 | Orta6,5 | — | %0,5 | 25 Haz 2024 |
26İzleyin | CVE-2026-32743Kavram kanıtı | PX4 Autopilot: Stack-based Buffer Overflow via Oversized Path Input in MAVLink Log Request Handlingdronecode · px4 drone autopilot · CWE-121 | Orta6,5 | — | %0,3 | 18 Mar 2026 |
26İzleyin | CVE-2026-32713İstismar yok | PX4 Autopilot MAVLink FTP Session Validation Logic Error Allows Operations on Invalid File Descriptorsdronecode · px4 drone autopilot · CWE-670 | Orta6,5 | — | %0,3 | 16 Mar 2026 |
26İzleyin | CVE-2024-29460İstismar yok | An issue in PX4 Autopilot v.1.14.0 allows an attacker to manipulate the flight path allowing for crashes of the drone via the home point locdronecode · px4 drone autopilot · CWE-229 | Orta6,6 | — | %0,2 | 10 Nis 2024 |
24İzleyin | CVE-2026-32707Kavram kanıtı | PX4 autopilot has a stack buffer overflow in tattu_can due to unbounded memcpy in frame assembly loopdronecode · px4 drone autopilot · CWE-121 | Orta6,1 | — | %0,3 | 16 Mar 2026 |
22İzleyin | CVE-2024-30800İstismar yok | PX4 Autopilot v.1.14 allows an attacker to fly the drone into no-fly zones by breaching the geofence using flaws in the function.dronecode · px4 drone autopilot · CWE-229 | Orta5,6 | — | %0,2 | 23 Nis 2024 |
21İzleyin | CVE-2026-32724İstismar yok | PX4 autopilot has a heap Use-After-Free in MavlinkShell::available() via SERIAL_CONTROL Race Conditiondronecode · px4 drone autopilot · CWE-416 | Orta5,3 | — | %0,2 | 16 Mar 2026 |
19İzleyin | CVE-2025-15150İstismar yok | PX4 PX4-Autopilot mavlink_log_handler.cpp log_entry_from_id stack-based overflowdronecode · px4 drone autopilot · CWE-119 | Orta4,8 | — | %0,2 | 28 Ara 2025 |
17İzleyin | CVE-2023-47625İstismar yok | Global Buffer Overflow leading to denial of service in PX4-Autopilotdronecode · px4 drone autopilot · CWE-120 | Orta4,3 | — | %0,5 | 13 Kas 2023 |
17İzleyin | CVE-2024-30799İstismar yok | An issue in PX4 Autopilot v1.14 and before allows a remote attacker to execute arbitrary code and cause a denial of service via the Breach Rdronecode · px4 drone autopilot · CWE-120 | Orta4,4 | — | %0,3 | 21 Nis 2024 |
16İzleyin | CVE-2024-24254İstismar yok | PX4 Autopilot 1.14 and earlier, due to the lack of synchronization mechanism for loading geofence data, has a Race Condition vulnerability idronecode · px4 drone autopilot · CWE-362 | Orta4,2 | — | %0,4 | 6 Şub 2024 |
- CVE-2020-1028240Planlayın
RVD#3316: No authentication in MAVLink protocol
KritikCVSS 9,8İstismar yokEPSS %2dronecode · micro air vehicle link3 Tem 2020
- CVE-2020-1028339İzleyin
RVD#3317: MAVLink version handshaking allows for an attacker to bypass authentication
KritikCVSS 9,8İstismar yokEPSS %1dronecode · micro air vehicle link20 Ağu 2020
- CVE-2023-4625639İzleyin
PX4-Autopilot Heap Buffer Overflow Bug
KritikCVSS 9,8İstismar yokEPSS %1dronecode · px4 drone autopilot31 Eki 2023
- CVE-2026-3270632İzleyin
PX4 autopilot has a global buffer overflow in crsf_rc via oversized variable-length known packet
YüksekCVSS 8,1İstismar yokEPSS %0dronecode · px4 drone autopilot16 Mar 2026
- CVE-2026-2674232İzleyin
PX4 Autopilot versions 1.12.x through 1.15.x contain a protection mechanism failure in the "Re-arm Grace Period" logic.
YüksekCVSS 8,1İstismar yokEPSS %0dronecode · px4 drone autopilot10 Mar 2026
- CVE-2026-2674132İzleyin
PX4 Autopilot versions 1.12.x through 1.15.x contain a logic flaw in the mode switching mechanism.
YüksekCVSS 8,1İstismar yokEPSS %0dronecode · px4 drone autopilot10 Mar 2026
- CVE-2026-3270832İzleyin
Zenoh uORB Subscriber Allows Arbitrary Stack Allocation (PX4/PX4-Autopilot)
YüksekCVSS 8,0İstismar yokEPSS %0dronecode · px4 drone autopilot16 Mar 2026
- CVE-2024-4042731İzleyin
Stack Buffer Overflow in PX4-Autopilot v1.14.3, which allows attackers to execute commands to exploit this vulnerability and cause the progr
YüksekCVSS 7,9İstismar yokEPSS %0dronecode · px4 drone autopilot7 Oca 2025
- CVE-2021-3412530İzleyin
An issue discovered in Yuneec Mantis Q and PX4-Autopilot v 1.11.3 and below allow attacker to gain access to sensitive information via vario
YüksekCVSS 7,5İstismar yokEPSS %1yuneec · mantis q firmware9 Mar 2023
- CVE-2021-4689630İzleyin
Buffer Overflow vulnerability in PX4-Autopilot allows attackers to cause a denial of service via handler function handling msgid 332.
YüksekCVSS 7,5İstismar yokEPSS %1dronecode · px4 drone autopilot6 Tem 2023
- CVE-2020-1028130İzleyin
RVD#3315: Cleartext transmission of sensitive information in MAVLink protocol version 1.0 and 2.0
YüksekCVSS 7,5İstismar yokEPSS %1dronecode · micro air vehicle link3 Tem 2020
- CVE-2024-3895230İzleyin
PX4-Autopilot v1.14.3 was discovered to contain a buffer overflow via the topic_name parameter at /logger/logged_topics.cpp.
YüksekCVSS 7,5İstismar yokEPSS %1dronecode · px4 drone autopilot25 Haz 2024
- CVE-2026-3270927İzleyin
PX4 Autopilot MAVLink FTP Unauthenticated Path Traversal (Arbitrary File Read/Write/Delete)
OrtaCVSS 6,8İstismar yokEPSS %0dronecode · px4 drone autopilot16 Mar 2026
- CVE-2026-3270527İzleyin
PX4 autopilot BST Device Name Length Can Overflow Driver Buffer
OrtaCVSS 6,8İstismar yokEPSS %0dronecode · px4 drone autopilot16 Mar 2026
- CVE-2024-3895126İzleyin
A buffer overflow in PX4-Autopilot v1.12.3 allows attackers to cause a Denial of Service (DoS) via a crafted MavLink message.
OrtaCVSS 6,5İstismar yokEPSS %1dronecode · px4 drone autopilot25 Haz 2024
- CVE-2026-3274326İzleyin
PX4 Autopilot: Stack-based Buffer Overflow via Oversized Path Input in MAVLink Log Request Handling
OrtaCVSS 6,5Kavram kanıtıEPSS %0dronecode · px4 drone autopilot18 Mar 2026
- CVE-2026-3271326İzleyin
PX4 Autopilot MAVLink FTP Session Validation Logic Error Allows Operations on Invalid File Descriptors
OrtaCVSS 6,5İstismar yokEPSS %0dronecode · px4 drone autopilot16 Mar 2026
- CVE-2024-2946026İzleyin
An issue in PX4 Autopilot v.1.14.0 allows an attacker to manipulate the flight path allowing for crashes of the drone via the home point loc
OrtaCVSS 6,6İstismar yokEPSS %0dronecode · px4 drone autopilot10 Nis 2024
- CVE-2026-3270724İzleyin
PX4 autopilot has a stack buffer overflow in tattu_can due to unbounded memcpy in frame assembly loop
OrtaCVSS 6,1Kavram kanıtıEPSS %0dronecode · px4 drone autopilot16 Mar 2026
- CVE-2024-3080022İzleyin
PX4 Autopilot v.1.14 allows an attacker to fly the drone into no-fly zones by breaching the geofence using flaws in the function.
OrtaCVSS 5,6İstismar yokEPSS %0dronecode · px4 drone autopilot23 Nis 2024
- CVE-2026-3272421İzleyin
PX4 autopilot has a heap Use-After-Free in MavlinkShell::available() via SERIAL_CONTROL Race Condition
OrtaCVSS 5,3İstismar yokEPSS %0dronecode · px4 drone autopilot16 Mar 2026
- CVE-2025-1515019İzleyin
PX4 PX4-Autopilot mavlink_log_handler.cpp log_entry_from_id stack-based overflow
OrtaCVSS 4,8İstismar yokEPSS %0dronecode · px4 drone autopilot28 Ara 2025
- CVE-2023-4762517İzleyin
Global Buffer Overflow leading to denial of service in PX4-Autopilot
OrtaCVSS 4,3İstismar yokEPSS %1dronecode · px4 drone autopilot13 Kas 2023
- CVE-2024-3079917İzleyin
An issue in PX4 Autopilot v1.14 and before allows a remote attacker to execute arbitrary code and cause a denial of service via the Breach R
OrtaCVSS 4,4İstismar yokEPSS %0dronecode · px4 drone autopilot21 Nis 2024
- CVE-2024-2425416İzleyin
PX4 Autopilot 1.14 and earlier, due to the lack of synchronization mechanism for loading geofence data, has a Race Condition vulnerability i
OrtaCVSS 4,2İstismar yokEPSS %0dronecode · px4 drone autopilot6 Şub 2024