xfce kayıtları
xfce üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 3
- Düzeltme kaydı olan
- %50
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-125 Out-of-bounds Read1
- CWE-134 Use of Externally-Controlled Format String1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-88 Improper Neutralization of Argument Delimiters in a Command ('Argument Injection')1
- CWE-913 Improper Control of Dynamically-Managed Code Resources1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2007-6532İstismar yok | Double free vulnerability in the Widget Library (libxfcegui4) in Xfce before 4.4.2 might allow remote attackers to execute arbitrary code vixfce · xfce · CWE-119 | Kritik10,0 | — | %4,0 | 9 Oca 2008 |
40Planlayın | CVE-2021-32563İstismar yok | An issue was discovered in Thunar before 4.16.7 and 4.17.x before 4.17.2.xfce · thunar · CWE-913 | Kritik9,8 | — | %3,0 | 11 May 2021 |
39İzleyin | CVE-2022-45062İstismar yok | In Xfce xfce4-settings before 4.16.4 and 4.17.x before 4.17.1, there is an argument injection vulnerability in xfce4-mime-helper.xfce · xfce4-settings · CWE-88 | Kritik9,8 | — | %1,5 | 9 Kas 2022 |
36İzleyin | CVE-2022-32278İstismar yok | XFCE 4.16 allows attackers to execute arbitrary code because xdg-open can execute a .desktop file on an attacker-controlled FTP server.xfce · exo | Yüksek8,8 | — | %1,7 | 13 Haz 2022 |
31İzleyin | CVE-2011-1588İstismar yok | Thunar before 1.3.1 could crash when copy and pasting a file name with % format characters due to a format string error.xfce · thunar · CWE-134 | Yüksek7,8 | — | %1,1 | 13 Kas 2019 |
28İzleyin | CVE-2009-4996İstismar yok | Xfce4-session 4.5.91 in Xfce does not lock the screen when the suspend or hibernate button is pressed, which might make it easier for physicxfce · xfce · CWE-264 | Yüksek7,2 | — | %0,3 | 7 Eyl 2010 |
21İzleyin | CVE-2007-6531İstismar yok | Stack-based buffer overflow in the Panel (xfce4-panel) component in Xfce before 4.4.2 might allow remote attackers to execute arbitrary codexfce · xfce · CWE-119 | Orta5,0 | — | %2,9 | 9 Oca 2008 |
18İzleyin | CVE-2018-18398İstismar yok | Xfce Thunar 1.6.15, when Xfce 4.12 is used, mishandles the IBus-Unikey input method for file searches within File Manager, leading to an outxfce · thunar · CWE-125 | Orta4,7 | — | %0,3 | 19 Eki 2018 |
- CVE-2007-653241Planlayın
Double free vulnerability in the Widget Library (libxfcegui4) in Xfce before 4.4.2 might allow remote attackers to execute arbitrary code vi
KritikCVSS 10,0İstismar yokEPSS %4xfce · xfce9 Oca 2008
- CVE-2021-3256340Planlayın
An issue was discovered in Thunar before 4.16.7 and 4.17.x before 4.17.2.
KritikCVSS 9,8İstismar yokEPSS %3xfce · thunar11 May 2021
- CVE-2022-4506239İzleyin
In Xfce xfce4-settings before 4.16.4 and 4.17.x before 4.17.1, there is an argument injection vulnerability in xfce4-mime-helper.
KritikCVSS 9,8İstismar yokEPSS %1xfce · xfce4-settings9 Kas 2022
- CVE-2022-3227836İzleyin
XFCE 4.16 allows attackers to execute arbitrary code because xdg-open can execute a .desktop file on an attacker-controlled FTP server.
YüksekCVSS 8,8İstismar yokEPSS %2xfce · exo13 Haz 2022
- CVE-2011-158831İzleyin
Thunar before 1.3.1 could crash when copy and pasting a file name with % format characters due to a format string error.
YüksekCVSS 7,8İstismar yokEPSS %1xfce · thunar13 Kas 2019
- CVE-2009-499628İzleyin
Xfce4-session 4.5.91 in Xfce does not lock the screen when the suspend or hibernate button is pressed, which might make it easier for physic
YüksekCVSS 7,2İstismar yokEPSS %0xfce · xfce7 Eyl 2010
- CVE-2007-653121İzleyin
Stack-based buffer overflow in the Panel (xfce4-panel) component in Xfce before 4.4.2 might allow remote attackers to execute arbitrary code
OrtaCVSS 5,0İstismar yokEPSS %3xfce · xfce9 Oca 2008
- CVE-2018-1839818İzleyin
Xfce Thunar 1.6.15, when Xfce 4.12 is used, mishandles the IBus-Unikey input method for file searches within File Manager, leading to an out
OrtaCVSS 4,7İstismar yokEPSS %0xfce · thunar19 Eki 2018