sane-project kayıtları
sane-project üreticisine ait 9 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %77,8
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-125 Out-of-bounds Read3
- CWE-476 NULL Pointer Dereference2
- CWE-787 Out-of-bounds Write2
- CWE-20 Improper Input Validation1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
9 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2020-12861İstismar yok | A heap buffer overflow in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to executesane-project · sane backends · CWE-787 | Yüksek8,8 | — | %3,0 | 24 Haz 2020 |
32İzleyin | CVE-2020-12865İstismar yok | A heap buffer overflow in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to execsane-project · sane backends · CWE-787 | Yüksek8,0 | — | %1,5 | 24 Haz 2020 |
29İzleyin | CVE-2023-46047İstismar yok | An issue in Sane 1.2.1 allows a local attacker to execute arbitrary code via a crafted file to the sanei_configure_attach() function.sane-project · sane backends · CWE-20 | Yüksek7,3 | — | %0,4 | 27 Mar 2024 |
28İzleyin | CVE-2023-46052İstismar yok | Sane 1.2.1 heap bounds overwrite in init_options() from backend/test.c via a long init_mode string in a configuration file.sane-project · sane backends | Yüksek7,1 | — | %0,4 | 27 Mar 2024 |
22İzleyin | CVE-2020-12866İstismar yok | A NULL pointer dereference in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to causane-project · sane backends · CWE-476 | Orta5,7 | — | %1,0 | 24 Haz 2020 |
22İzleyin | CVE-2020-12867İstismar yok | A NULL pointer dereference in sanei_epson_net_read in SANE Backends before 1.0.30 allows a malicious device connected to the same local netwsane-project · sane backends · CWE-476 | Orta5,5 | — | %0,5 | 1 Haz 2020 |
17İzleyin | CVE-2020-12864İstismar yok | An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read sane-project · sane backends · CWE-125 | Orta4,3 | — | %1,2 | 24 Haz 2020 |
17İzleyin | CVE-2020-12862İstismar yok | An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read sane-project · sane backends · CWE-125 | Orta4,3 | — | %1,1 | 24 Haz 2020 |
17İzleyin | CVE-2020-12863İstismar yok | An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read sane-project · sane backends · CWE-125 | Orta4,3 | — | %1,0 | 24 Haz 2020 |
- CVE-2020-1286136İzleyin
A heap buffer overflow in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to execute
YüksekCVSS 8,8İstismar yokEPSS %3sane-project · sane backends24 Haz 2020
- CVE-2020-1286532İzleyin
A heap buffer overflow in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to exec
YüksekCVSS 8,0İstismar yokEPSS %1sane-project · sane backends24 Haz 2020
- CVE-2023-4604729İzleyin
An issue in Sane 1.2.1 allows a local attacker to execute arbitrary code via a crafted file to the sanei_configure_attach() function.
YüksekCVSS 7,3İstismar yokEPSS %0sane-project · sane backends27 Mar 2024
- CVE-2023-4605228İzleyin
Sane 1.2.1 heap bounds overwrite in init_options() from backend/test.c via a long init_mode string in a configuration file.
YüksekCVSS 7,1İstismar yokEPSS %0sane-project · sane backends27 Mar 2024
- CVE-2020-1286622İzleyin
A NULL pointer dereference in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to cau
OrtaCVSS 5,7İstismar yokEPSS %1sane-project · sane backends24 Haz 2020
- CVE-2020-1286722İzleyin
A NULL pointer dereference in sanei_epson_net_read in SANE Backends before 1.0.30 allows a malicious device connected to the same local netw
OrtaCVSS 5,5İstismar yokEPSS %0sane-project · sane backends1 Haz 2020
- CVE-2020-1286417İzleyin
An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read
OrtaCVSS 4,3İstismar yokEPSS %1sane-project · sane backends24 Haz 2020
- CVE-2020-1286217İzleyin
An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read
OrtaCVSS 4,3İstismar yokEPSS %1sane-project · sane backends24 Haz 2020
- CVE-2020-1286317İzleyin
An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read
OrtaCVSS 4,3İstismar yokEPSS %1sane-project · sane backends24 Haz 2020