weechat kayıtları
weechat üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')2
- CWE-125 Out-of-bounds Read1
- CWE-190 Integer Overflow or Wraparound1
- CWE-295 Improper Certificate Validation1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2020-8955İstismar yok | irc_mode_channel_update in plugins/irc/irc-mode.c in WeeChat through 2.7 allows remote attackers to cause a denial of service (buffer overflweechat · weechat · CWE-120 | Kritik9,8 | — | %3,7 | 12 Şub 2020 |
40Planlayın | CVE-2020-9760İstismar yok | An issue was discovered in WeeChat before 2.7.1 (0.3.4 to 2.7 are affected).weechat · weechat · CWE-120 | Kritik9,8 | — | %2,2 | 23 Mar 2020 |
39İzleyin | CVE-2024-46613İstismar yok | WeeChat before 4.4.2 has an integer overflow and resultant buffer overflow at core/core-string.c when there are more than two billion items weechat · weechat · CWE-190 | Kritik9,8 | — | %0,5 | 10 Kas 2024 |
31İzleyin | CVE-2017-8073İstismar yok | WeeChat before 1.7.1 allows a remote crash by sending a filename via DCC to the IRC plugin.weechat · weechat · CWE-119 | Yüksek7,5 | — | %3,1 | 23 Nis 2017 |
31İzleyin | CVE-2017-14727İstismar yok | logger.c in the logger plugin in WeeChat before 1.9.1 allows a crash via strftime date/time specifiers, because a buffer is not initialized.weechat · logger · CWE-119 | Yüksek7,5 | — | %2,8 | 23 Eyl 2017 |
30İzleyin | CVE-2021-40516İstismar yok | WeeChat before 3.2.1 allows remote attackers to cause a denial of service (crash) via a crafted WebSocket frame that trigger an out-of-boundweechat · weechat · CWE-125 | Yüksek7,5 | — | %1,6 | 5 Eyl 2021 |
19İzleyin | CVE-2022-28352İstismar yok | WeeChat (aka Wee Enhanced Environment for Chat) 3.2 to 3.4 before 3.4.1 does not properly verify the TLS certificate of the server, after ceweechat · weechat · CWE-295 | Orta4,8 | — | %0,4 | 2 Nis 2022 |
- CVE-2020-895540Planlayın
irc_mode_channel_update in plugins/irc/irc-mode.c in WeeChat through 2.7 allows remote attackers to cause a denial of service (buffer overfl
KritikCVSS 9,8İstismar yokEPSS %4weechat · weechat12 Şub 2020
- CVE-2020-976040Planlayın
An issue was discovered in WeeChat before 2.7.1 (0.3.4 to 2.7 are affected).
KritikCVSS 9,8İstismar yokEPSS %2weechat · weechat23 Mar 2020
- CVE-2024-4661339İzleyin
WeeChat before 4.4.2 has an integer overflow and resultant buffer overflow at core/core-string.c when there are more than two billion items
KritikCVSS 9,8İstismar yokEPSS %0weechat · weechat10 Kas 2024
- CVE-2017-807331İzleyin
WeeChat before 1.7.1 allows a remote crash by sending a filename via DCC to the IRC plugin.
YüksekCVSS 7,5İstismar yokEPSS %3weechat · weechat23 Nis 2017
- CVE-2017-1472731İzleyin
logger.c in the logger plugin in WeeChat before 1.9.1 allows a crash via strftime date/time specifiers, because a buffer is not initialized.
YüksekCVSS 7,5İstismar yokEPSS %3weechat · logger23 Eyl 2017
- CVE-2021-4051630İzleyin
WeeChat before 3.2.1 allows remote attackers to cause a denial of service (crash) via a crafted WebSocket frame that trigger an out-of-bound
YüksekCVSS 7,5İstismar yokEPSS %2weechat · weechat5 Eyl 2021
- CVE-2022-2835219İzleyin
WeeChat (aka Wee Enhanced Environment for Chat) 3.2 to 3.4 before 3.4.1 does not properly verify the TLS certificate of the server, after ce
OrtaCVSS 4,8İstismar yokEPSS %0weechat · weechat2 Nis 2022