İçeriğe atla
Noroxi

openpkg kayıtları

openpkg üreticisine ait 27 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
1 · %3,7
Pre-auth RCE
15
Düzeltme kaydı olan
%88,9
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

27 kayıt
  • CVE-2004-0990
    48Planlayın

    Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows remote attackers to cause a denial of ser

    KritikCVSS 10,0Kavram kanıtıEPSS %28

    gd graphics library · gdlib1 Mar 2005

  • CVE-2004-0333
    47Planlayın

    Buffer overflow in the UUDeview package, as used in WinZip 6.2 through WinZip 8.1 SR-1, and possibly other packages, allows remote attackers

    KritikCVSS 10,0Kavram kanıtıEPSS %24

    uudeview · uudeview23 Kas 2004

  • CVE-2004-0416
    44Planlayın

    Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attacker

    KritikCVSS 10,0Kavram kanıtıEPSS %13

    cvs · cvs6 Ağu 2004

  • CVE-2003-0190
    43Planlayın

    OpenSSH-portable (OpenSSH) 3.6.1p1 and earlier with PAM support enabled immediately sends an error message when a user does not exist, which

    OrtaCVSS 5,0SilahlaştırılmışEPSS %77

    openbsd · openssh12 May 2003

  • CVE-2002-0083
    43Planlayın

    Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.

    KritikCVSS 9,8Kavram kanıtıEPSS %15

    immunix · immunix15 Mar 2002

  • CVE-2004-1065
    43Planlayın

    Buffer overflow in the exif_read_data function in PHP before 4.3.10 and PHP 5.x up to 5.0.2 allows remote attackers to execute arbitrary cod

    KritikCVSS 10,0İstismar yokEPSS %10

    php · php10 Oca 2005

  • CVE-2004-1019
    42Planlayın

    The deserialization code in PHP before 4.3.10 and PHP 5.x up to 5.0.2 allows remote attackers to cause a denial of service and execute arbit

    KritikCVSS 10,0İstismar yokEPSS %8

    php · php10 Oca 2005

  • CVE-2004-1012
    42Planlayın

    The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary cod

    KritikCVSS 10,0İstismar yokEPSS %6

    carnegie mellon university · cyrus imap server10 Oca 2005

  • CVE-2004-0413
    42Planlayın

    libsvn_ra_svn in Subversion 1.0.4 trusts the length field of (1) svn://, (2) svn+ssh://, and (3) other svn protocol URL strings, which allow

    KritikCVSS 10,0İstismar yokEPSS %6

    subversion · subversion6 Ağu 2004

  • CVE-2004-1011
    42Planlayın

    Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to exec

    KritikCVSS 10,0İstismar yokEPSS %6

    carnegie mellon university · cyrus imap server10 Oca 2005

  • CVE-2004-1013
    42Planlayın

    The argument parser of the FETCH command in Cyrus IMAP Server 2.2.x through 2.2.8 allows remote authenticated users to execute arbitrary cod

    KritikCVSS 10,0İstismar yokEPSS %6

    carnegie mellon university · cyrus imap server10 Oca 2005

  • CVE-2004-0418
    42Planlayın

    serve_notify in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle empty data lines, which may allow remote att

    KritikCVSS 10,0İstismar yokEPSS %6

    cvs · cvs6 Ağu 2004

  • CVE-2004-0772
    41Planlayın

    Double free vulnerabilities in error handling code in krb524d for MIT Kerberos 5 (krb5) 1.2.8 and earlier may allow remote attackers to exec

    KritikCVSS 9,8İstismar yokEPSS %7

    mit · kerberos 520 Eki 2004

  • CVE-2004-0414
    41Planlayın

    CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle malformed "Entry" lines, which prevents a NULL terminator fr

    KritikCVSS 10,0İstismar yokEPSS %4

    cvs · cvs6 Ağu 2004

  • CVE-2004-0594
    36İzleyin

    The memory_limit functionality in PHP 4.x up to 4.3.7, and 5.x up to 5.0.0RC3, under certain conditions such as when register_globals is ena

    OrtaCVSS 5,1Kavram kanıtıEPSS %55

    hp · hp-ux27 Tem 2004

  • CVE-2004-0940
    32İzleyin

    Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute

    YüksekCVSS 7,8Kavram kanıtıEPSS %5

    apache · http server9 Şub 2005

  • CVE-2007-5116
    31İzleyin

    Buffer overflow in the polymorphic opcode support in the Regular Expression Engine (regcomp.c) in Perl 5.8 allows context-dependent attacker

    YüksekCVSS 7,5İstismar yokEPSS %5

    debian · debian linux7 Kas 2007

  • CVE-2005-0373
    31İzleyin

    Buffer overflow in digestmd5.c CVS release 1.170 (also referred to as digestmda5.c), as used in the DIGEST-MD5 SASL plugin for Cyrus-SASL bu

    YüksekCVSS 7,5İstismar yokEPSS %4

    cyrus · sasl7 Eki 2004

  • CVE-2002-0985
    31İzleyin

    Argument injection vulnerability in the mail function for PHP 4.x to 4.2.2 may allow attackers to bypass safe mode restrictions and modify c

    YüksekCVSS 7,5İstismar yokEPSS %3

    php · php24 Eyl 2002

  • CVE-2004-1471
    30İzleyin

    Format string vulnerability in wrapper.c in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16 allows remote attackers with CVSROOT commi

    YüksekCVSS 7,1Kavram kanıtıEPSS %8

    cvs · cvs31 Ara 2004

  • CVE-2004-0957
    28İzleyin

    Unknown vulnerability in MySQL 3.23.58 and earlier, when a local user has privileges for a database whose name includes a "_" (underscore),

    OrtaCVSS 6,8İstismar yokEPSS %2

    openpkg · openpkg9 Şub 2005

  • CVE-2004-0918
    25İzleyin

    The asn_parse_header function (asn1.c) in the SNMP module for Squid Web Proxy Cache before 2.4.STABLE7 allows remote attackers to cause a de

    OrtaCVSS 5,0İstismar yokEPSS %16

    squid · squid27 Oca 2005

  • CVE-2003-0147
    22İzleyin

    OpenSSL does not use RSA blinding by default, which allows local and remote attackers to obtain the server's private key by determining fact

    OrtaCVSS 5,0İstismar yokEPSS %6

    openssl · openssl31 Mar 2003

  • CVE-2004-0421
    21İzleyin

    The Portable Network Graphics library (libpng) 1.0.15 and earlier allows attackers to cause a denial of service (crash) via a malformed PNG

    OrtaCVSS 5,0İstismar yokEPSS %4

    libpng · libpng18 Ağu 2004

  • CVE-2004-0417
    21İzleyin

    Integer overflow in the "Max-dotdot" CVS protocol command (serve_max_dotdot) for CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may

    OrtaCVSS 5,0İstismar yokEPSS %3

    cvs · cvs6 Ağu 2004