uTorrent kayıtları
utorrent üreticisine ait 12 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 5
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer4
- CWE-269 Improper Privilege Management2
- CWE-20 Improper Input Validation1
- CWE-310 Cryptographic Issues1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
12 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
43Planlayın | CVE-2007-0927Kavram kanıtı | Heap-based buffer overflow in uTorrent 1.6 allows remote attackers to execute arbitrary code via a torrent file with a crafted announce headutorrent · utorrent | Yüksek7,5 | — | %45,0 | 14 Şub 2007 |
40Planlayın | CVE-2008-4434Kavram kanıtı | Stack-based buffer overflow in (1) uTorrent 1.7.7 build 8179 and earlier and (2) BitTorrent 6.0.3 build 8642 and earlier allows remote attacutorrent · utorrent · CWE-119 | Kritik9,3 | — | %11,0 | 3 Eki 2008 |
39İzleyin | CVE-2010-3129Kavram kanıtı | Untrusted search path vulnerability in uTorrent 2.0.3 and earlier allows local users, and possibly remote attackers, to execute arbitrary coutorrent · utorrent | Kritik9,3 | — | %7,3 | 26 Ağu 2010 |
38İzleyin | CVE-2015-5474İstismar yok | BitTorrent and uTorrent allow remote attackers to inject command line parameters and execute arbitrary commands via a crafted URL using the bittorrent · bittorrent · CWE-77 | Kritik9,3 | — | %3,8 | 13 Ağu 2015 |
35İzleyin | CVE-2018-25041İstismar yok | uTorrent JSON RPC Server privileges managementutorrent · web · CWE-269 | Yüksek8,8 | — | %1,0 | 17 Haz 2022 |
35İzleyin | CVE-2018-25040İstismar yok | uTorrent Web HTTP RPC Server privileges managementutorrent · web · CWE-269 | Yüksek8,8 | — | %0,9 | 17 Haz 2022 |
29İzleyin | CVE-2009-5134Kavram kanıtı | Buffer overflow in the "create torrent dialog" functionality in uTorrent 1.8.3 build 15772, and possibly other versions before 1.8.3 (Build utorrent · utorrent · CWE-119 | Orta6,8 | — | %7,7 | 18 Oca 2013 |
28İzleyin | CVE-2008-6586Kavram kanıtı | Cross-site request forgery (CSRF) vulnerability in gui/index.php in µTorrent (uTorrent) WebUI 0.315 allows remote attackers to (1) hijack thutorrent · utorrent webui · CWE-352 | Orta6,8 | — | %2,7 | 3 Nis 2009 |
23İzleyin | CVE-2008-0364Kavram kanıtı | Buffer overflow in (1) BitTorrent 6.0 and earlier; and (2) uTorrent 1.7.5 and earlier, and 1.8-alpha-7834 and earlier in the 1.8.x series; obittorrent · bittorrent · CWE-119 | Orta5,0 | — | %8,9 | 18 Oca 2008 |
21İzleyin | CVE-2008-7166İstismar yok | Buffer overflow in the web interface in BitTorrent 6.0.1 (build 7859) and earlier, and uTorrent 1.7.6 (build 7859) and earlier, allows remotbittorrent · bittorrent · CWE-119 | Orta5,0 | — | %2,8 | 4 Eyl 2009 |
21İzleyin | CVE-2014-5727İstismar yok | The uTorrent Remote (aka com.utorrent.web) application 1.0.20110929 for Android does not verify X.509 certificates from SSL servers, which autorrent · utorrent remote · CWE-310 | Orta5,4 | — | %0,3 | 9 Eyl 2014 |
19İzleyin | CVE-2008-0071Kavram kanıtı | The Web UI interface in (1) BitTorrent before 6.0.3 build 8642 and (2) uTorrent before 1.8beta build 10524 allows remote attackers to cause bittorrent · bittorrent · CWE-20 | Orta4,3 | — | %7,2 | 16 Haz 2008 |
- CVE-2007-092743Planlayın
Heap-based buffer overflow in uTorrent 1.6 allows remote attackers to execute arbitrary code via a torrent file with a crafted announce head
YüksekCVSS 7,5Kavram kanıtıEPSS %45utorrent · utorrent14 Şub 2007
- CVE-2008-443440Planlayın
Stack-based buffer overflow in (1) uTorrent 1.7.7 build 8179 and earlier and (2) BitTorrent 6.0.3 build 8642 and earlier allows remote attac
KritikCVSS 9,3Kavram kanıtıEPSS %11utorrent · utorrent3 Eki 2008
- CVE-2010-312939İzleyin
Untrusted search path vulnerability in uTorrent 2.0.3 and earlier allows local users, and possibly remote attackers, to execute arbitrary co
KritikCVSS 9,3Kavram kanıtıEPSS %7utorrent · utorrent26 Ağu 2010
- CVE-2015-547438İzleyin
BitTorrent and uTorrent allow remote attackers to inject command line parameters and execute arbitrary commands via a crafted URL using the
KritikCVSS 9,3İstismar yokEPSS %4bittorrent · bittorrent13 Ağu 2015
- CVE-2018-2504135İzleyin
uTorrent JSON RPC Server privileges management
YüksekCVSS 8,8İstismar yokEPSS %1utorrent · web17 Haz 2022
- CVE-2018-2504035İzleyin
uTorrent Web HTTP RPC Server privileges management
YüksekCVSS 8,8İstismar yokEPSS %1utorrent · web17 Haz 2022
- CVE-2009-513429İzleyin
Buffer overflow in the "create torrent dialog" functionality in uTorrent 1.8.3 build 15772, and possibly other versions before 1.8.3 (Build
OrtaCVSS 6,8Kavram kanıtıEPSS %8utorrent · utorrent18 Oca 2013
- CVE-2008-658628İzleyin
Cross-site request forgery (CSRF) vulnerability in gui/index.php in µTorrent (uTorrent) WebUI 0.315 allows remote attackers to (1) hijack th
OrtaCVSS 6,8Kavram kanıtıEPSS %3utorrent · utorrent webui3 Nis 2009
- CVE-2008-036423İzleyin
Buffer overflow in (1) BitTorrent 6.0 and earlier; and (2) uTorrent 1.7.5 and earlier, and 1.8-alpha-7834 and earlier in the 1.8.x series; o
OrtaCVSS 5,0Kavram kanıtıEPSS %9bittorrent · bittorrent18 Oca 2008
- CVE-2008-716621İzleyin
Buffer overflow in the web interface in BitTorrent 6.0.1 (build 7859) and earlier, and uTorrent 1.7.6 (build 7859) and earlier, allows remot
OrtaCVSS 5,0İstismar yokEPSS %3bittorrent · bittorrent4 Eyl 2009
- CVE-2014-572721İzleyin
The uTorrent Remote (aka com.utorrent.web) application 1.0.20110929 for Android does not verify X.509 certificates from SSL servers, which a
OrtaCVSS 5,4İstismar yokEPSS %0utorrent · utorrent remote9 Eyl 2014
- CVE-2008-007119İzleyin
The Web UI interface in (1) BitTorrent before 6.0.3 build 8642 and (2) uTorrent before 1.8beta build 10524 allows remote attackers to cause
OrtaCVSS 4,3Kavram kanıtıEPSS %7bittorrent · bittorrent16 Haz 2008