Inkscape kayıtları
inkscape üreticisine ait 10 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 3
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-611 Improper Restriction of XML External Entity Reference2
- CWE-125 Out-of-bounds Read1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-787 Out-of-bounds Write1
- CWE-824 Access of Uninitialized Pointer1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
10 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2021-42704İstismar yok | Inkscape Out-of-bounds Writeinkscape · inkscape · CWE-787 | Yüksek7,8 | — | %1,5 | 18 May 2022 |
28İzleyin | CVE-2007-1463İstismar yok | Format string vulnerability in Inkscape before 0.45.1 allows user-assisted remote attackers to execute arbitrary code via format string specinkscape · inkscape | Orta6,8 | — | %3,4 | 21 Mar 2007 |
28İzleyin | CVE-2007-1464İstismar yok | Format string vulnerability in the whiteboard Jabber protocol in Inkscape before 0.45.1 allows user-assisted remote attackers to execute arbinkscape · inkscape | Orta6,8 | — | %3,2 | 21 Mar 2007 |
25İzleyin | CVE-2026-4980İstismar yok | Improper Restriction of XML External Entity Reference in Inkscapeinkscape · inkscape · CWE-611 | Orta6,3 | — | %0,2 | 27 Mar 2026 |
24İzleyin | CVE-2005-3737Kavram kanıtı | Buffer overflow in the SVG importer (style.cpp) of inkscape 0.41 through 0.42.2 might allow remote attackers to execute arbitrary code via ainkscape · inkscape | Orta5,1 | — | %13,4 | 21 Kas 2005 |
22İzleyin | CVE-2012-5656İstismar yok | The rasterization process in Inkscape before 0.48.4 allows local users to read arbitrary files via an external entity in a SVG file, aka an inkscape · inkscape · CWE-611 | Orta5,5 | — | %1,2 | 18 Oca 2013 |
17İzleyin | CVE-2012-6076İstismar yok | Inkscape before 0.48.4 reads .eps files from /tmp instead of the current directory, which might cause Inkspace to process unintended files, inkscape · inkscape · CWE-264 | Orta4,4 | — | %0,5 | 12 Mar 2013 |
13İzleyin | CVE-2021-42702İstismar yok | Inkscape Access of Uninitialized Pointerinkscape · inkscape · CWE-824 | Düşük3,3 | — | %1,0 | 18 May 2022 |
13İzleyin | CVE-2021-42700İstismar yok | Inkscape Out-of-bounds Readinkscape · inkscape · CWE-125 | Düşük3,3 | — | %0,8 | 18 May 2022 |
8İzleyin | CVE-2005-3885İstismar yok | The ps2epsi extension shell script (ps2epsi.sh) in Inkscape before 0.41 allows local users to overwrite arbitrary files via a symlink attackinkscape · inkscape | Düşük2,1 | — | %0,3 | 29 Kas 2005 |
- CVE-2021-4270431İzleyin
Inkscape Out-of-bounds Write
YüksekCVSS 7,8İstismar yokEPSS %1inkscape · inkscape18 May 2022
- CVE-2007-146328İzleyin
Format string vulnerability in Inkscape before 0.45.1 allows user-assisted remote attackers to execute arbitrary code via format string spec
OrtaCVSS 6,8İstismar yokEPSS %3inkscape · inkscape21 Mar 2007
- CVE-2007-146428İzleyin
Format string vulnerability in the whiteboard Jabber protocol in Inkscape before 0.45.1 allows user-assisted remote attackers to execute arb
OrtaCVSS 6,8İstismar yokEPSS %3inkscape · inkscape21 Mar 2007
- CVE-2026-498025İzleyin
Improper Restriction of XML External Entity Reference in Inkscape
OrtaCVSS 6,3İstismar yokEPSS %0inkscape · inkscape27 Mar 2026
- CVE-2005-373724İzleyin
Buffer overflow in the SVG importer (style.cpp) of inkscape 0.41 through 0.42.2 might allow remote attackers to execute arbitrary code via a
OrtaCVSS 5,1Kavram kanıtıEPSS %13inkscape · inkscape21 Kas 2005
- CVE-2012-565622İzleyin
The rasterization process in Inkscape before 0.48.4 allows local users to read arbitrary files via an external entity in a SVG file, aka an
OrtaCVSS 5,5İstismar yokEPSS %1inkscape · inkscape18 Oca 2013
- CVE-2012-607617İzleyin
Inkscape before 0.48.4 reads .eps files from /tmp instead of the current directory, which might cause Inkspace to process unintended files,
OrtaCVSS 4,4İstismar yokEPSS %0inkscape · inkscape12 Mar 2013
- CVE-2021-4270213İzleyin
Inkscape Access of Uninitialized Pointer
DüşükCVSS 3,3İstismar yokEPSS %1inkscape · inkscape18 May 2022
- CVE-2021-4270013İzleyin
Inkscape Out-of-bounds Read
DüşükCVSS 3,3İstismar yokEPSS %1inkscape · inkscape18 May 2022
- CVE-2005-38858İzleyin
The ps2epsi extension shell script (ps2epsi.sh) in Inkscape before 0.41 allows local users to overwrite arbitrary files via a symlink attack
DüşükCVSS 2,1İstismar yokEPSS %0inkscape · inkscape29 Kas 2005