xchat kayıtları
xchat üreticisine ait 12 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 8
- Düzeltme kaydı olan
- %25
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-310 Cryptographic Issues1
- CWE-476 NULL Pointer Dereference1
- CWE-787 Out-of-bounds Write1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
12 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2012-0828İstismar yok | Heap-based buffer overflow in Xchat-WDK before 1499-4 (2012-01-18) xchat 2.8.6 on Maemo architecture could allow remote attackers to cause axchat · xchat · CWE-787 | Kritik9,8 | — | %4,3 | 21 Şub 2020 |
33İzleyin | CVE-2000-0787Kavram kanıtı | IRC Xchat client versions 1.4.2 and earlier allows remote attackers to execute arbitrary commands by encoding shell metacharacters into a URxchat · xchat | Yüksek7,5 | — | %9,2 | 20 Eki 2000 |
33İzleyin | CVE-2004-0409Kavram kanıtı | Stack-based buffer overflow in the Socks-5 proxy code for XChat 1.8.0 to 2.0.8, with socks5 traversal enabled, allows remote attackers to exxchat · xchat | Yüksek7,5 | — | %9,0 | 1 Haz 2004 |
32İzleyin | CVE-2008-2841Kavram kanıtı | Argument injection vulnerability in XChat 2.8.7b and earlier on Windows, when Internet Explorer is used, allows remote attackers to execute xchat · xchat · CWE-94 | Orta6,8 | — | %15,4 | 24 Haz 2008 |
32İzleyin | CVE-2002-0006Kavram kanıtı | XChat 1.8.7 and earlier, including default configurations of 1.4.2 and 1.4.3, allows remote attackers to execute arbitrary IRC commands as oxchat · xchat | Yüksek7,5 | — | %8,1 | 25 Haz 2002 |
31İzleyin | CVE-2001-0792İstismar yok | Format string vulnerability in XChat 1.2.x allows remote attackers to execute arbitrary code via a malformed nickname.xchat · xchat | Yüksek7,5 | — | %2,8 | 18 Eki 2001 |
31İzleyin | CVE-2003-1000İstismar yok | xchat 2.0.6 allows remote attackers to cause a denial of service (crash) via a passive DCC request with an invalid ID number, which causes axchat · xchat · CWE-476 | Yüksek7,5 | — | %2,6 | 5 Oca 2004 |
31İzleyin | CVE-2002-0382İstismar yok | XChat IRC client allows remote attackers to execute arbitrary commands via a /dns command on a host whose DNS reverse lookup contains shell xchat · xchat | Yüksek7,5 | — | %2,4 | 25 Haz 2002 |
27İzleyin | CVE-2009-0315İstismar yok | Untrusted search path vulnerability in the Python module in xchat allows local users to execute arbitrary code via a Trojan horse Python filxchat · xchat | Orta6,9 | — | %0,4 | 28 Oca 2009 |
26İzleyin | CVE-2013-7449İstismar yok | The ssl_do_connect function in common/server.c in HexChat before 2.10.2, XChat, and XChat-GNOME does not verify that the server hostname matxchat · xchat · CWE-310 | Orta6,5 | — | %0,8 | 21 Nis 2016 |
22İzleyin | CVE-2011-5129Kavram kanıtı | Heap-based buffer overflow in XChat 2.8.9 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbixchat · xchat · CWE-119 | Orta5,0 | — | %7,7 | 30 Ağu 2012 |
22İzleyin | CVE-2006-4455Kavram kanıtı | Unspecified vulnerability in Xchat 2.6.7 and earlier allows remote attackers to cause a denial of service (crash) via unspecified vectors inxchat · xchat | Orta5,0 | — | %5,1 | 30 Ağu 2006 |
- CVE-2012-082840Planlayın
Heap-based buffer overflow in Xchat-WDK before 1499-4 (2012-01-18) xchat 2.8.6 on Maemo architecture could allow remote attackers to cause a
KritikCVSS 9,8İstismar yokEPSS %4xchat · xchat21 Şub 2020
- CVE-2000-078733İzleyin
IRC Xchat client versions 1.4.2 and earlier allows remote attackers to execute arbitrary commands by encoding shell metacharacters into a UR
YüksekCVSS 7,5Kavram kanıtıEPSS %9xchat · xchat20 Eki 2000
- CVE-2004-040933İzleyin
Stack-based buffer overflow in the Socks-5 proxy code for XChat 1.8.0 to 2.0.8, with socks5 traversal enabled, allows remote attackers to ex
YüksekCVSS 7,5Kavram kanıtıEPSS %9xchat · xchat1 Haz 2004
- CVE-2008-284132İzleyin
Argument injection vulnerability in XChat 2.8.7b and earlier on Windows, when Internet Explorer is used, allows remote attackers to execute
OrtaCVSS 6,8Kavram kanıtıEPSS %15xchat · xchat24 Haz 2008
- CVE-2002-000632İzleyin
XChat 1.8.7 and earlier, including default configurations of 1.4.2 and 1.4.3, allows remote attackers to execute arbitrary IRC commands as o
YüksekCVSS 7,5Kavram kanıtıEPSS %8xchat · xchat25 Haz 2002
- CVE-2001-079231İzleyin
Format string vulnerability in XChat 1.2.x allows remote attackers to execute arbitrary code via a malformed nickname.
YüksekCVSS 7,5İstismar yokEPSS %3xchat · xchat18 Eki 2001
- CVE-2003-100031İzleyin
xchat 2.0.6 allows remote attackers to cause a denial of service (crash) via a passive DCC request with an invalid ID number, which causes a
YüksekCVSS 7,5İstismar yokEPSS %3xchat · xchat5 Oca 2004
- CVE-2002-038231İzleyin
XChat IRC client allows remote attackers to execute arbitrary commands via a /dns command on a host whose DNS reverse lookup contains shell
YüksekCVSS 7,5İstismar yokEPSS %2xchat · xchat25 Haz 2002
- CVE-2009-031527İzleyin
Untrusted search path vulnerability in the Python module in xchat allows local users to execute arbitrary code via a Trojan horse Python fil
OrtaCVSS 6,9İstismar yokEPSS %0xchat · xchat28 Oca 2009
- CVE-2013-744926İzleyin
The ssl_do_connect function in common/server.c in HexChat before 2.10.2, XChat, and XChat-GNOME does not verify that the server hostname mat
OrtaCVSS 6,5İstismar yokEPSS %1xchat · xchat21 Nis 2016
- CVE-2011-512922İzleyin
Heap-based buffer overflow in XChat 2.8.9 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbi
OrtaCVSS 5,0Kavram kanıtıEPSS %8xchat · xchat30 Ağu 2012
- CVE-2006-445522İzleyin
Unspecified vulnerability in Xchat 2.6.7 and earlier allows remote attackers to cause a denial of service (crash) via unspecified vectors in
OrtaCVSS 5,0Kavram kanıtıEPSS %5xchat · xchat30 Ağu 2006