windriver kayıtları
windriver üreticisine ait 48 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 1 · %2,1
- Pre-auth RCE
- 7
- Düzeltme kaydı olan
- %6,3
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-20 Improper Input Validation7
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')6
- CWE-190 Integer Overflow or Wraparound4
- CWE-787 Out-of-bounds Write3
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-125 Out-of-bounds Read2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
48 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
62Bu hafta | CVE-2019-12255Kavram kanıtı | Wind River VxWorks has a Buffer Overflow in the TCP component (issue 1 of 4).windriver · vxworks · CWE-120 | Kritik9,8 | — | %75,3 | 9 Ağu 2019 |
62Bu hafta | CVE-2002-1337Kavram kanıtı | Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related tsendmail · sendmail · CWE-120 | Kritik10,0 | — | %72,6 | 7 Mar 2003 |
60Bu hafta | CVE-2019-12257İstismar yok | Wind River VxWorks 6.6 through 6.9 has a Buffer Overflow in the DHCP client component.windriver · vxworks · CWE-120 | Yüksek8,8 | — | %84,2 | 9 Ağu 2019 |
53Planlayın | CVE-2010-2965İstismar yok | The WDB target agent debug service in Wind River VxWorks 6.x, 5.x, and earlier, as used on the Rockwell Automation 1756-ENBT series A with frockwellautomation · 1756-enbt\/a firmware · CWE-863 | Kritik9,8 | — | %47,4 | 5 Ağu 2010 |
47Planlayın | CVE-2019-12256İstismar yok | Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the IPv4 component.windriver · vxworks · CWE-120 | Kritik9,8 | — | %26,6 | 9 Ağu 2019 |
46Planlayın | CVE-2019-12260İstismar yok | Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 2 of 4).windriver · vxworks · CWE-120 | Kritik9,8 | — | %22,8 | 9 Ağu 2019 |
42Planlayın | CVE-2019-12261İstismar yok | Wind River VxWorks 6.7 though 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 3 of 4).windriver · vxworks · CWE-120 | Kritik9,8 | — | %9,0 | 9 Ağu 2019 |
42Planlayın | CVE-2013-0714İstismar yok | IPSSH (aka the SSH server) in Wind River VxWorks 6.5 through 6.9 allows remote attackers to execute arbitrary code or cause a denial of servwindriver · vxworks · CWE-20 | Kritik10,0 | — | %6,4 | 20 Mar 2013 |
41Planlayın | CVE-2007-2736Kavram kanıtı | PHP remote file inclusion vulnerability in index.php in Achievo 1.1.0 allows remote attackers to execute arbitrary PHP code via a URL in thehp · hp-ux | Kritik10,0 | — | %4,1 | 17 May 2007 |
40Planlayın | CVE-2019-12262İstismar yok | Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and 7 has Incorrect Access Control in the RARP client component.windriver · vxworks | Kritik9,8 | — | %4,1 | 14 Ağu 2019 |
40Planlayın | CVE-2020-35198İstismar yok | An issue was discovered in Wind River VxWorks 7.windriver · vxworks · CWE-190 | Kritik9,8 | — | %2,5 | 12 May 2021 |
40Planlayın | CVE-2021-29998İstismar yok | An issue was discovered in Wind River VxWorks before 6.5.windriver · vxworks · CWE-787 | Kritik9,8 | — | %2,4 | 13 Nis 2021 |
40Planlayın | CVE-2016-20009İstismar yok | A DNS client stack-based buffer overflow in ipdnsc_decode_name() affects Wind River VxWorks 6.5 through 7.windriver · vxworks · CWE-787 | Kritik9,8 | — | %1,9 | 11 Mar 2021 |
40Planlayın | CVE-2021-29999İstismar yok | An issue was discovered in Wind River VxWorks through 6.8.windriver · vxworks · CWE-787 | Kritik9,8 | — | %1,8 | 13 Nis 2021 |
39İzleyin | CVE-2019-12265İstismar yok | Wind River VxWorks 6.5, 6.6, 6.7, 6.8, 6.9.3 and 6.9.4 has a Memory Leak in the IGMPv3 client component.windriver · vxworks · CWE-401 | Orta5,3 | — | %59,8 | 9 Ağu 2019 |
39İzleyin | CVE-2008-2476İstismar yok | The IPv6 Neighbor Discovery Protocol (NDP) implementation in (1) FreeBSD 6.3 through 7.1, (2) OpenBSD 4.2 and 4.3, (3) NetBSD, (4) Force10 Fforce10 · ftos · CWE-20 | Kritik9,3 | — | %7,4 | 3 Eki 2008 |
39İzleyin | CVE-2020-10288İstismar yok | RVD#3327: No authentication required for accesing ABB IRC5 FTP serverabb · robotware · CWE-284 | Kritik9,8 | — | %1,4 | 15 Tem 2020 |
37İzleyin | CVE-2019-12258Silahlaştırılmış | Wind River VxWorks 6.6 through vx7 has Session Fixation in the TCP component.windriver · vxworks · CWE-384 | Yüksek7,5 | — | %22,8 | 9 Ağu 2019 |
35İzleyin | CVE-2021-3450Kavram kanıtı | CA certificate check bypass with X509_V_FLAG_X509_STRICTopenssl · openssl · CWE-295 | Yüksek7,4 | — | %18,3 | 25 Mar 2021 |
35İzleyin | CVE-2007-4938Kavram kanıtı | Heap-based buffer overflow in libmpdemux/aviheader.c in MPlayer 1.0rc1 and earlier allows remote attackers to cause a denial of service (appibm · aix · CWE-119 | Yüksek7,6 | — | %16,0 | 18 Eyl 2007 |
35İzleyin | CVE-2019-12259İstismar yok | Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and vx7 has an array index error in the IGMPv3 client component.windriver · vxworks · CWE-476 | Yüksek7,5 | — | %15,9 | 9 Ağu 2019 |
35İzleyin | CVE-2023-38346İstismar yok | An issue was discovered in Wind River VxWorks 6.9 and 7.windriver · vxworks · CWE-22 | Yüksek8,8 | — | %1,5 | 22 Eyl 2023 |
34İzleyin | CVE-2015-7599İstismar yok | Integer overflow in the _authenticate function in svc_auth.c in Wind River VxWorks 5.5 through 6.9.4.1, when the Remote Procedure Call (RPC)windriver · vxworks · CWE-190 | Yüksek8,1 | — | %5,9 | 7 Şub 2017 |
33İzleyin | CVE-2007-1043Kavram kanıtı | Ezboo webstats, possibly 3.0.3, allows remote attackers to bypass authentication and gain access via a direct request to (1) update.php and hp · hp-ux | Yüksek7,5 | — | %8,3 | 21 Şub 2007 |
33İzleyin | CVE-2019-12263İstismar yok | Wind River VxWorks 6.9.4 and vx7 has a Buffer Overflow in the TCP component (issue 4 of 4).windriver · vxworks · CWE-362 | Yüksek8,1 | — | %3,2 | 9 Ağu 2019 |
- CVE-2019-1225562Bu hafta
Wind River VxWorks has a Buffer Overflow in the TCP component (issue 1 of 4).
KritikCVSS 9,8Kavram kanıtıEPSS %75windriver · vxworks9 Ağu 2019
- CVE-2002-133762Bu hafta
Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related t
KritikCVSS 10,0Kavram kanıtıEPSS %73sendmail · sendmail7 Mar 2003
- CVE-2019-1225760Bu hafta
Wind River VxWorks 6.6 through 6.9 has a Buffer Overflow in the DHCP client component.
YüksekCVSS 8,8İstismar yokEPSS %84windriver · vxworks9 Ağu 2019
- CVE-2010-296553Planlayın
The WDB target agent debug service in Wind River VxWorks 6.x, 5.x, and earlier, as used on the Rockwell Automation 1756-ENBT series A with f
KritikCVSS 9,8İstismar yokEPSS %47rockwellautomation · 1756-enbt\/a firmware5 Ağu 2010
- CVE-2019-1225647Planlayın
Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the IPv4 component.
KritikCVSS 9,8İstismar yokEPSS %27windriver · vxworks9 Ağu 2019
- CVE-2019-1226046Planlayın
Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 2 of 4).
KritikCVSS 9,8İstismar yokEPSS %23windriver · vxworks9 Ağu 2019
- CVE-2019-1226142Planlayın
Wind River VxWorks 6.7 though 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 3 of 4).
KritikCVSS 9,8İstismar yokEPSS %9windriver · vxworks9 Ağu 2019
- CVE-2013-071442Planlayın
IPSSH (aka the SSH server) in Wind River VxWorks 6.5 through 6.9 allows remote attackers to execute arbitrary code or cause a denial of serv
KritikCVSS 10,0İstismar yokEPSS %6windriver · vxworks20 Mar 2013
- CVE-2007-273641Planlayın
PHP remote file inclusion vulnerability in index.php in Achievo 1.1.0 allows remote attackers to execute arbitrary PHP code via a URL in the
KritikCVSS 10,0Kavram kanıtıEPSS %4hp · hp-ux17 May 2007
- CVE-2019-1226240Planlayın
Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and 7 has Incorrect Access Control in the RARP client component.
KritikCVSS 9,8İstismar yokEPSS %4windriver · vxworks14 Ağu 2019
- CVE-2020-3519840Planlayın
An issue was discovered in Wind River VxWorks 7.
KritikCVSS 9,8İstismar yokEPSS %2windriver · vxworks12 May 2021
- CVE-2021-2999840Planlayın
An issue was discovered in Wind River VxWorks before 6.5.
KritikCVSS 9,8İstismar yokEPSS %2windriver · vxworks13 Nis 2021
- CVE-2016-2000940Planlayın
A DNS client stack-based buffer overflow in ipdnsc_decode_name() affects Wind River VxWorks 6.5 through 7.
KritikCVSS 9,8İstismar yokEPSS %2windriver · vxworks11 Mar 2021
- CVE-2021-2999940Planlayın
An issue was discovered in Wind River VxWorks through 6.8.
KritikCVSS 9,8İstismar yokEPSS %2windriver · vxworks13 Nis 2021
- CVE-2019-1226539İzleyin
Wind River VxWorks 6.5, 6.6, 6.7, 6.8, 6.9.3 and 6.9.4 has a Memory Leak in the IGMPv3 client component.
OrtaCVSS 5,3İstismar yokEPSS %60windriver · vxworks9 Ağu 2019
- CVE-2008-247639İzleyin
The IPv6 Neighbor Discovery Protocol (NDP) implementation in (1) FreeBSD 6.3 through 7.1, (2) OpenBSD 4.2 and 4.3, (3) NetBSD, (4) Force10 F
KritikCVSS 9,3İstismar yokEPSS %7force10 · ftos3 Eki 2008
- CVE-2020-1028839İzleyin
RVD#3327: No authentication required for accesing ABB IRC5 FTP server
KritikCVSS 9,8İstismar yokEPSS %1abb · robotware15 Tem 2020
- CVE-2019-1225837İzleyin
Wind River VxWorks 6.6 through vx7 has Session Fixation in the TCP component.
YüksekCVSS 7,5SilahlaştırılmışEPSS %23windriver · vxworks9 Ağu 2019
- CVE-2021-345035İzleyin
CA certificate check bypass with X509_V_FLAG_X509_STRICT
YüksekCVSS 7,4Kavram kanıtıEPSS %18openssl · openssl25 Mar 2021
- CVE-2007-493835İzleyin
Heap-based buffer overflow in libmpdemux/aviheader.c in MPlayer 1.0rc1 and earlier allows remote attackers to cause a denial of service (app
YüksekCVSS 7,6Kavram kanıtıEPSS %16ibm · aix18 Eyl 2007
- CVE-2019-1225935İzleyin
Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and vx7 has an array index error in the IGMPv3 client component.
YüksekCVSS 7,5İstismar yokEPSS %16windriver · vxworks9 Ağu 2019
- CVE-2023-3834635İzleyin
An issue was discovered in Wind River VxWorks 6.9 and 7.
YüksekCVSS 8,8İstismar yokEPSS %2windriver · vxworks22 Eyl 2023
- CVE-2015-759934İzleyin
Integer overflow in the _authenticate function in svc_auth.c in Wind River VxWorks 5.5 through 6.9.4.1, when the Remote Procedure Call (RPC)
YüksekCVSS 8,1İstismar yokEPSS %6windriver · vxworks7 Şub 2017
- CVE-2007-104333İzleyin
Ezboo webstats, possibly 3.0.3, allows remote attackers to bypass authentication and gain access via a direct request to (1) update.php and
YüksekCVSS 7,5Kavram kanıtıEPSS %8hp · hp-ux21 Şub 2007
- CVE-2019-1226333İzleyin
Wind River VxWorks 6.9.4 and vx7 has a Buffer Overflow in the TCP component (issue 4 of 4).
YüksekCVSS 8,1İstismar yokEPSS %3windriver · vxworks9 Ağu 2019