İçeriğe atla
Noroxi

IETF kayıtları

ietf üreticisine ait 17 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
1 · %5,9
Silahlaştırılmış
1 · %5,9
Pre-auth RCE
0
Düzeltme kaydı olan
%23,5
Yayından KEV’e ortanca
0 gün

Tüm kayıtlar

17 kayıt
  • The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %100

    siemens · simatic s7-1500 cpu 1518f-4 pn\/dp mfp firmware10 Eki 2023

  • CVE-2004-2761
    42Planlayın

    The MD5 Message-Digest Algorithm is not collision resistant, which makes it easier for context-dependent attackers to conduct spoofing attac

    KritikCVSS 9,8Kavram kanıtıEPSS %10

    ietf · md55 Oca 2009

  • CVE-2016-10142
    35İzleyin

    An issue was discovered in the IPv6 protocol specification, related to ICMP Packet Too Big (PTB) messages.

    YüksekCVSS 8,6İstismar yokEPSS %3

    ietf · ipv614 Oca 2017

  • CVE-2007-2242
    33İzleyin

    The IPv6 protocol allows remote attackers to cause a denial of service via crafted IPv6 type 0 route headers (IPV6_RTHDR_TYPE_0) that create

    YüksekCVSS 7,8İstismar yokEPSS %5

    openbsd · openbsd25 Nis 2007

  • CVE-2015-8960
    33İzleyin

    The TLS protocol 1.2 and earlier supports the rsa_fixed_dh, dss_fixed_dh, rsa_fixed_ecdh, and ecdsa_fixed_ecdh values for ClientCertificateT

    YüksekCVSS 8,1İstismar yokEPSS %2

    ietf · transport layer security20 Eyl 2016

  • CVE-2024-7595
    26İzleyin

    GRE and GRE6 Protocols (RFC2784) do not validate or verify the source of a network packet

    OrtaCVSS 6,5Kavram kanıtıEPSS %2

    ietf · generic routing encapsulation5 Şub 2025

  • CVE-2025-23018
    26İzleyin

    IPv4-in-IPv6 and IPv6-in-IPv6 tunneling (RFC 2473) do not require the validation or verification of the source of a network packet, allowing

    OrtaCVSS 6,5İstismar yokEPSS %1

    ietf · ipv614 Oca 2025

  • CVE-2025-23019
    26İzleyin

    IPv6-in-IPv4 tunneling (RFC 4213) allows an attacker to spoof and route traffic via an exposed network interface.

    OrtaCVSS 6,5İstismar yokEPSS %1

    ietf · ipv614 Oca 2025

  • CVE-2024-7596
    26İzleyin

    Generic UDP Encapsulation (GUE) (IETF Draft) do not validate or verify the source of a network packet

    OrtaCVSS 6,5İstismar yokEPSS %1

    ietf · generic udp encapsulation5 Şub 2025

  • CVE-2018-5389
    24İzleyin

    The Internet Key Exchange v1 main mode is vulnerable to offline dictionary or brute force attacks.

    OrtaCVSS 5,9İstismar yokEPSS %3

    ietf · internet key exchange6 Eyl 2018

  • CVE-2020-20949
    23İzleyin

    Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in STM32 cryptographic firmware library software expansion for STM32Cube (UM1924).

    OrtaCVSS 5,9İstismar yokEPSS %1

    st · stm32cubef020 Oca 2021

  • CVE-2020-20950
    23İzleyin

    Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in Microchip Libraries for Applications 2018-11-26 All up to 2018-11-26.

    OrtaCVSS 5,9İstismar yokEPSS %1

    microchip · microchip libraries for applications19 Oca 2021

  • CVE-2021-27853
    18İzleyin

    L2 network filtering can be bypassed using stacked VLAN0 and LLC/SNAP headers

    OrtaCVSS 4,7İstismar yokEPSS %1

    ieee · ieee 802.227 Eyl 2022

  • CVE-2021-27854
    18İzleyin

    L2 network filtering bypass using stacked VLAN0, LLC/SNAP headers, and Ethernet to Wifi frame translation

    OrtaCVSS 4,7İstismar yokEPSS %1

    ieee · ieee 802.227 Eyl 2022

  • CVE-2021-27862
    18İzleyin

    L2 network filtering bypass using stacked VLAN0 and LLC/SNAP headers with an invalid length during Ethernet to Wifi frame translation

    OrtaCVSS 4,7İstismar yokEPSS %1

    ieee · ieee 802.227 Eyl 2022

  • CVE-2021-27861
    18İzleyin

    L2 network filtering bypass using stacked VLAN0 and LLC/SNAP headers with invalid lengths

    OrtaCVSS 4,7İstismar yokEPSS %1

    ieee · ieee 802.227 Eyl 2022

  • CVE-2024-39920
    17İzleyin

    The TCP protocol in RFC 9293 has a timing side channel that makes it easier for remote attackers to infer the content of one TCP connection

    OrtaCVSS 4,3İstismar yokEPSS %1

    3 Tem 2024