webdav kayıtları
webdav üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-134 Use of Externally-Controlled Format String1
- CWE-326 Inadequate Encryption Strength1
- CWE-399 Resource Management Errors1
- CWE-787 Out-of-bounds Write1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
32İzleyin | CVE-2004-0398İstismar yok | Heap-based buffer overflow in the ne_rfc1036_parse date parsing function for the neon library (libneon) 0.24.5 and earlier, as used by cadavwebdav · cadaver · CWE-787 | Yüksek7,5 | — | %5,0 | 7 Tem 2004 |
30İzleyin | CVE-2004-0179Kavram kanıtı | Multiple format string vulnerabilities in (1) neon 0.24.4 and earlier, and other products that use neon including (2) Cadaver, (3) Subversiowebdav · neon · CWE-134 | Orta6,8 | — | %11,1 | 1 Haz 2004 |
23İzleyin | CVE-2009-2474İstismar yok | neon before 0.28.6, when OpenSSL or GnuTLS is used, does not properly handle a '\0' character in a domain name in the subject's Common Name webdav · neon · CWE-326 | Orta5,8 | — | %1,5 | 21 Ağu 2009 |
20İzleyin | CVE-2009-2473Kavram kanıtı | neon before 0.28.6, when expat is used, does not properly detect recursion during entity expansion, which allows context-dependent attackerswebdav · neon · CWE-399 | Orta4,3 | — | %8,4 | 21 Ağu 2009 |
18İzleyin | CVE-2008-3746İstismar yok | neon 0.28.0 through 0.28.2 allows remote servers to cause a denial of service (NULL pointer dereference and crash) via vectors related to Diwebdav · neon | Orta4,3 | — | %2,3 | 27 Ağu 2008 |
- CVE-2004-039832İzleyin
Heap-based buffer overflow in the ne_rfc1036_parse date parsing function for the neon library (libneon) 0.24.5 and earlier, as used by cadav
YüksekCVSS 7,5İstismar yokEPSS %5webdav · cadaver7 Tem 2004
- CVE-2004-017930İzleyin
Multiple format string vulnerabilities in (1) neon 0.24.4 and earlier, and other products that use neon including (2) Cadaver, (3) Subversio
OrtaCVSS 6,8Kavram kanıtıEPSS %11webdav · neon1 Haz 2004
- CVE-2009-247423İzleyin
neon before 0.28.6, when OpenSSL or GnuTLS is used, does not properly handle a '\0' character in a domain name in the subject's Common Name
OrtaCVSS 5,8İstismar yokEPSS %1webdav · neon21 Ağu 2009
- CVE-2009-247320İzleyin
neon before 0.28.6, when expat is used, does not properly detect recursion during entity expansion, which allows context-dependent attackers
OrtaCVSS 4,3Kavram kanıtıEPSS %8webdav · neon21 Ağu 2009
- CVE-2008-374618İzleyin
neon 0.28.0 through 0.28.2 allows remote servers to cause a denial of service (NULL pointer dereference and crash) via vectors related to Di
OrtaCVSS 4,3İstismar yokEPSS %2webdav · neon27 Ağu 2008