opensc-project kayıtları
opensc-project üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-310 Cryptographic Issues2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-312 Cleartext Storage of Sensitive Information1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
30İzleyin | CVE-2009-1603İstismar yok | src/tools/pkcs11-tool.c in pkcs11-tool in OpenSC 0.11.7, when used with unspecified third-party PKCS#11 modules, generates RSA keys with incopensc-project · opensc · CWE-312 | Yüksek7,5 | — | %1,1 | 11 May 2009 |
28İzleyin | CVE-2010-4523İstismar yok | Multiple stack-based buffer overflows in libopensc in OpenSC 0.11.13 and earlier allow physically proximate attackers to execute arbitrary copensc-project · opensc · CWE-119 | Yüksek7,2 | — | %0,9 | 7 Oca 2011 |
26İzleyin | CVE-2008-3972İstismar yok | pkcs15-tool in OpenSC before 0.11.6 does not apply security updates to a smart card unless the card's label matches the "OpenSC" string, whiopensc-project · opensc · CWE-264 | Orta6,6 | — | %0,4 | 10 Eyl 2008 |
19İzleyin | CVE-2008-2235İstismar yok | OpenSC before 0.11.5 uses weak permissions (ADMIN file control information of 00) for the 5015 directory on smart cards and USB crypto tokensiemens · cardos · CWE-310 | Orta4,9 | — | %0,4 | 1 Ağu 2008 |
8İzleyin | CVE-2009-0368Kavram kanıtı | OpenSC before 0.11.7 allows physically proximate attackers to bypass intended PIN requirements and read private data objects via a (1) low lopensc-project · opensc · CWE-310 | Düşük2,1 | — | %1,2 | 2 Mar 2009 |
- CVE-2009-160330İzleyin
src/tools/pkcs11-tool.c in pkcs11-tool in OpenSC 0.11.7, when used with unspecified third-party PKCS#11 modules, generates RSA keys with inc
YüksekCVSS 7,5İstismar yokEPSS %1opensc-project · opensc11 May 2009
- CVE-2010-452328İzleyin
Multiple stack-based buffer overflows in libopensc in OpenSC 0.11.13 and earlier allow physically proximate attackers to execute arbitrary c
YüksekCVSS 7,2İstismar yokEPSS %1opensc-project · opensc7 Oca 2011
- CVE-2008-397226İzleyin
pkcs15-tool in OpenSC before 0.11.6 does not apply security updates to a smart card unless the card's label matches the "OpenSC" string, whi
OrtaCVSS 6,6İstismar yokEPSS %0opensc-project · opensc10 Eyl 2008
- CVE-2008-223519İzleyin
OpenSC before 0.11.5 uses weak permissions (ADMIN file control information of 00) for the 5015 directory on smart cards and USB crypto token
OrtaCVSS 4,9İstismar yokEPSS %0siemens · cardos1 Ağu 2008
- CVE-2009-03688İzleyin
OpenSC before 0.11.7 allows physically proximate attackers to bypass intended PIN requirements and read private data objects via a (1) low l
DüşükCVSS 2,1Kavram kanıtıEPSS %1opensc-project · opensc2 Mar 2009