İçeriğe atla
Noroxi

MIT kayıtları

mit üreticisine ait 159 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
1 · %0,6
Pre-auth RCE
32
Düzeltme kaydı olan
%83
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

159 kayıt
  • CVE-2011-4862
    68Bu hafta

    Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and

    KritikCVSS 10,0SilahlaştırılmışEPSS %95

    mit · krb5-appl24 Ara 2011

  • CVE-2001-0554
    52Planlayın

    Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a

    KritikCVSS 10,0Kavram kanıtıEPSS %39

    mit · kerberos14 Ağu 2001

  • CVE-2007-0956
    49Planlayın

    The telnet daemon (telnetd) in MIT krb5 before 1.6.1 allows remote attackers to bypass authentication and gain system access via a username

    KritikCVSS 10,0İstismar yokEPSS %30

    mit · kerberos 55 Nis 2007

  • CVE-2011-0285
    46Planlayın

    The process_chpw_request function in schpw.c in the password-changing functionality in kadmind in MIT Kerberos 5 (aka krb5) 1.7 through 1.9

    KritikCVSS 10,0Kavram kanıtıEPSS %21

    mit · kerberos 514 Nis 2011

  • CVE-2001-0247
    46Planlayın

    Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} se

    KritikCVSS 10,0Kavram kanıtıEPSS %19

    mit · kerberos 518 Haz 2001

  • CVE-2000-0389
    45Planlayın

    Buffer overflow in krb_rd_req function in Kerberos 4 and 5 allows remote attackers to gain root privileges.

    KritikCVSS 10,0Kavram kanıtıEPSS %17

    cygnus · cygnus network security16 May 2000

  • CVE-2002-1235
    45Planlayın

    The kadm_ser_in function in (1) the Kerberos v4compatibility administration daemon (kadmind4) in the MIT Kerberos 5 (krb5) krb5-1.2.6 and ea

    KritikCVSS 10,0İstismar yokEPSS %15

    mit · kerberos 54 Kas 2002

  • CVE-2004-0523
    43Planlayın

    Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrary

    KritikCVSS 10,0İstismar yokEPSS %12

    mit · kerberos18 Ağu 2004

  • CVE-2007-2442
    43Planlayın

    The gssrpc__svcauth_gssapi function in the RPC library in MIT Kerberos 5 (krb5) 1.6.1 and earlier might allow remote attackers to execute ar

    KritikCVSS 10,0İstismar yokEPSS %11

    mit · kerberos 526 Haz 2007

  • CVE-2007-3999
    43Planlayın

    Stack-based buffer overflow in the svcauth_gss_validate function in lib/rpc/svc_auth_gss.c in the RPCSEC_GSS RPC library (librpcsecgss) in M

    KritikCVSS 10,0İstismar yokEPSS %11

    mit · kerberos 55 Eyl 2007

  • CVE-2009-0846
    43Planlayın

    The asn1_decode_generaltime function in lib/krb5/asn.1/asn1_decode.c in the ASN.1 GeneralizedTime decoder in MIT Kerberos 5 (aka krb5) befor

    KritikCVSS 10,0İstismar yokEPSS %9

    mit · kerberos 58 Nis 2009

  • CVE-2008-0947
    43Planlayın

    Buffer overflow in the RPC library used by libgssrpc and kadmind in MIT Kerberos 5 (krb5) 1.4 through 1.6.3 allows remote attackers to execu

    KritikCVSS 10,0İstismar yokEPSS %9

    mit · kerberos 518 Mar 2008

  • CVE-2005-1689
    42Planlayın

    Double free vulnerability in the krb5_recvauth function in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to execute arbitr

    KritikCVSS 9,8İstismar yokEPSS %11

    mit · kerberos 518 Tem 2005

  • CVE-2008-0062
    42Planlayın

    KDC in MIT Kerberos 5 (krb5kdc) does not set a global variable for some krb4 message types, which allows remote attackers to cause a denial

    KritikCVSS 9,8İstismar yokEPSS %10

    mit · kerberos 519 Mar 2008

  • CVE-2009-4212
    42Planlayın

    Multiple integer underflows in the (1) AES and (2) RC4 decryption functionality in the crypto library in MIT Kerberos 5 (aka krb5) 1.3 throu

    KritikCVSS 10,0İstismar yokEPSS %8

    mit · kerberos13 Oca 2010

  • CVE-2007-5902
    42Planlayın

    Integer overflow in the svcauth_gss_get_principal function in lib/rpc/svc_auth_gss.c in MIT Kerberos 5 (krb5) allows remote attackers to hav

    KritikCVSS 10,0İstismar yokEPSS %6

    mit · kerberos 55 Ara 2007

  • CVE-2017-15088
    41Planlayın

    plugins/preauth/pkinit/pkinit_crypto_openssl.c in MIT Kerberos 5 (aka krb5) through 1.15.2 mishandles Distinguished Name (DN) fields, which

    KritikCVSS 9,8İstismar yokEPSS %8

    mit · kerberos 523 Kas 2017

  • CVE-2004-0772
    41Planlayın

    Double free vulnerabilities in error handling code in krb524d for MIT Kerberos 5 (krb5) 1.2.8 and earlier may allow remote attackers to exec

    KritikCVSS 9,8İstismar yokEPSS %7

    mit · kerberos 520 Eki 2004

  • CVE-2017-11462
    41Planlayın

    Double free vulnerability in MIT Kerberos 5 (aka krb5) allows attackers to have unspecified impact via vectors involving automatic deletion

    KritikCVSS 9,8İstismar yokEPSS %5

    mit · kerberos 513 Eyl 2017

  • CVE-2007-4743
    41Planlayın

    The original patch for CVE-2007-3999 in svc_auth_gss.c in the RPCSEC_GSS RPC library in MIT Kerberos 5 (krb5) 1.4 through 1.6.2, as used by

    KritikCVSS 10,0İstismar yokEPSS %5

    mit · kerberos 56 Eyl 2007

  • CVE-2000-0391
    41Planlayın

    Buffer overflow in krshd in Kerberos 5 allows remote attackers to gain root privileges.

    KritikCVSS 10,0İstismar yokEPSS %4

    cygnus · cygnus network security16 May 2000

  • CVE-2000-0390
    41Planlayın

    Buffer overflow in krb425_conv_principal function in Kerberos 5 allows remote attackers to gain root privileges.

    KritikCVSS 10,0İstismar yokEPSS %4

    cygnus · cygnus network security16 May 2000

  • CVE-2003-0041
    41Planlayın

    Kerberos FTP client allows remote FTP sites to execute arbitrary code via a pipe (|) character in a filename that is retrieved by the client

    KritikCVSS 10,0İstismar yokEPSS %4

    mit · kerberos ftp client19 Şub 2003

  • CVE-2000-0514
    41Planlayın

    GSSFTP FTP daemon in Kerberos 5 1.1.x does not properly restrict access to some FTP commands, which allows remote attackers to cause a denia

    KritikCVSS 10,0İstismar yokEPSS %3

    mit · kerberos 514 Haz 2000

  • CVE-2020-7750
    40Planlayın

    Cross-site Scripting (XSS)

    KritikCVSS 9,6Kavram kanıtıEPSS %6

    mit · scratch-svg-renderer21 Eki 2020