mono-project kayıtları
mono-project üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2015-2320İstismar yok | The TLS stack in Mono before 3.12.1 allows remote attackers to have unspecified impact via vectors related to client-side SSLv2 fallback.mono-project · mono · CWE-295 | Kritik9,8 | — | %3,5 | 8 Oca 2018 |
35İzleyin | CVE-2023-26314İstismar yok | The mono package before 6.8.0.105+dfsg-3.3 for Debian allows arbitrary code execution because the application/x-ms-dos-executable MIME type debian · debian linux | Yüksek8,8 | — | %1,0 | 22 Şub 2023 |
33İzleyin | CVE-2015-2318İstismar yok | The TLS stack in Mono before 3.12.1 allows man-in-the-middle attackers to conduct message skipping attacks and consequently impersonate cliemono-project · mono · CWE-295 | Yüksek8,1 | — | %2,0 | 8 Oca 2018 |
31İzleyin | CVE-2015-2319İstismar yok | The TLS stack in Mono before 3.12.1 makes it easier for remote attackers to conduct cipher-downgrade attacks to EXPORT_RSA ciphers via craftmono-project · mono · CWE-295 | Yüksek7,5 | — | %3,2 | 8 Oca 2018 |
31İzleyin | CVE-2012-3543İstismar yok | mono 2.10.x ASP.NET Web Form Hash collision DoSmono-project · mono · CWE-20 | Yüksek7,5 | — | %2,6 | 21 Kas 2019 |
28İzleyin | CVE-2010-1526İstismar yok | Multiple integer overflows in libgdiplus 2.6.7, as used in Mono, allow attackers to execute arbitrary code via (1) a crafted TIFF file, relamono-project · libgdiplus · CWE-189 | Orta6,8 | — | %1,9 | 24 Ağu 2010 |
27İzleyin | CVE-2019-0757İstismar yok | A tampering vulnerability exists in the NuGet Package Manager for Linux and Mac that could allow an authenticated attacker to modify a NuGetmicrosoft · visual studio 2017 | Orta6,5 | — | %2,7 | 8 Nis 2019 |
- CVE-2015-232040Planlayın
The TLS stack in Mono before 3.12.1 allows remote attackers to have unspecified impact via vectors related to client-side SSLv2 fallback.
KritikCVSS 9,8İstismar yokEPSS %4mono-project · mono8 Oca 2018
- CVE-2023-2631435İzleyin
The mono package before 6.8.0.105+dfsg-3.3 for Debian allows arbitrary code execution because the application/x-ms-dos-executable MIME type
YüksekCVSS 8,8İstismar yokEPSS %1debian · debian linux22 Şub 2023
- CVE-2015-231833İzleyin
The TLS stack in Mono before 3.12.1 allows man-in-the-middle attackers to conduct message skipping attacks and consequently impersonate clie
YüksekCVSS 8,1İstismar yokEPSS %2mono-project · mono8 Oca 2018
- CVE-2015-231931İzleyin
The TLS stack in Mono before 3.12.1 makes it easier for remote attackers to conduct cipher-downgrade attacks to EXPORT_RSA ciphers via craft
YüksekCVSS 7,5İstismar yokEPSS %3mono-project · mono8 Oca 2018
- CVE-2012-354331İzleyin
mono 2.10.x ASP.NET Web Form Hash collision DoS
YüksekCVSS 7,5İstismar yokEPSS %3mono-project · mono21 Kas 2019
- CVE-2010-152628İzleyin
Multiple integer overflows in libgdiplus 2.6.7, as used in Mono, allow attackers to execute arbitrary code via (1) a crafted TIFF file, rela
OrtaCVSS 6,8İstismar yokEPSS %2mono-project · libgdiplus24 Ağu 2010
- CVE-2019-075727İzleyin
A tampering vulnerability exists in the NuGet Package Manager for Linux and Mac that could allow an authenticated attacker to modify a NuGet
OrtaCVSS 6,5İstismar yokEPSS %3microsoft · visual studio 20178 Nis 2019