Логотип exploitDog
source:"msrc"
Консоль
Логотип exploitDog

exploitDog

source:"msrc"

Количество 18 769

Количество 18 769

msrc логотип

CVE-2021-1637

около 5 лет назад

Windows DNS Query Information Disclosure Vulnerability

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-1636

около 5 лет назад

Microsoft SQL Elevation of Privilege Vulnerability

CVSS3: 8.8
EPSS: Низкий
msrc логотип

CVE-2021-1405

почти 5 лет назад

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-1404

почти 5 лет назад

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-1386

почти 5 лет назад

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-1252

почти 5 лет назад

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2020-9490

больше 5 лет назад

Apache HTTP Server versions 2.4.20 to 2.4.43. A specially crafted value for the 'Cache-Digest' header in a HTTP/2 request would result in a crash when the server actually tries to HTTP/2 PUSH a resource afterwards. Configuring the HTTP/2 feature via "H2Push off" will mitigate this vulnerability for unpatched servers.

CVSS3: 7.5
EPSS: Высокий
msrc логотип

CVE-2020-9383

больше 5 лет назад

An issue was discovered in the Linux kernel 3.16 through 5.5.6. set_fdc in drivers/block/floppy.c leads to a wait_til_ready out-of-bounds read because the FDC index is not checked for errors before assigning it aka CID-2e90ca68b0d2.

CVSS3: 7.1
EPSS: Низкий
msrc логотип

CVE-2020-9327

5 месяцев назад

In SQLite 3.31.1, isAuxiliaryVtabOperator allows attackers to trigger a NULL pointer dereference and segmentation fault because of generated column optimizations.

EPSS: Низкий
msrc логотип

CVE-2020-8992

больше 5 лет назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2020-8927

почти 4 года назад

Brotli Library Buffer Overflow Vulnerability

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2020-8910

5 месяцев назад

Auth Bypass in Google's Closure-Library

EPSS: Низкий
msrc логотип

CVE-2020-8908

почти 3 года назад

CVSS3: 3.3
EPSS: Низкий
msrc логотип

CVE-2020-8649

больше 5 лет назад

There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vgacon_invert_region function in drivers/video/console/vgacon.c.

CVSS3: 5.9
EPSS: Низкий
msrc логотип

CVE-2020-8648

больше 5 лет назад

There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the n_tty_receive_buf_common function in drivers/tty/n_tty.c.

CVSS3: 7.1
EPSS: Низкий
msrc логотип

CVE-2020-8647

больше 5 лет назад

There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vc_do_resize function in drivers/tty/vt/vt.c.

CVSS3: 6.1
EPSS: Низкий
msrc логотип

CVE-2020-8632

больше 5 лет назад

In cloud-init through 19.4 rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value which makes it easier for attackers to guess passwords.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2020-8631

больше 5 лет назад

cloud-init through 19.4 relies on Mersenne Twister for a random password which makes it easier for attackers to predict passwords because rand_str in cloudinit/util.py calls the random.choice function.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2020-8625

почти 5 лет назад

A vulnerability in BIND's GSSAPI security policy negotiation can be targeted by a buffer overflow attack

CVSS3: 8.1
EPSS: Средний
msrc логотип

CVE-2020-8624

больше 5 лет назад

update-policy rules of type "subdomain" are enforced incorrectly

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
msrc логотип
CVE-2021-1637

Windows DNS Query Information Disclosure Vulnerability

CVSS3: 5.5
0%
Низкий
около 5 лет назад
msrc логотип
CVE-2021-1636

Microsoft SQL Elevation of Privilege Vulnerability

CVSS3: 8.8
5%
Низкий
около 5 лет назад
msrc логотип
CVSS3: 7.5
1%
Низкий
почти 5 лет назад
msrc логотип
CVSS3: 7.5
0%
Низкий
почти 5 лет назад
msrc логотип
CVSS3: 7.8
0%
Низкий
почти 5 лет назад
msrc логотип
CVSS3: 7.5
1%
Низкий
почти 5 лет назад
msrc логотип
CVE-2020-9490

Apache HTTP Server versions 2.4.20 to 2.4.43. A specially crafted value for the 'Cache-Digest' header in a HTTP/2 request would result in a crash when the server actually tries to HTTP/2 PUSH a resource afterwards. Configuring the HTTP/2 feature via "H2Push off" will mitigate this vulnerability for unpatched servers.

CVSS3: 7.5
76%
Высокий
больше 5 лет назад
msrc логотип
CVE-2020-9383

An issue was discovered in the Linux kernel 3.16 through 5.5.6. set_fdc in drivers/block/floppy.c leads to a wait_til_ready out-of-bounds read because the FDC index is not checked for errors before assigning it aka CID-2e90ca68b0d2.

CVSS3: 7.1
0%
Низкий
больше 5 лет назад
msrc логотип
CVE-2020-9327

In SQLite 3.31.1, isAuxiliaryVtabOperator allows attackers to trigger a NULL pointer dereference and segmentation fault because of generated column optimizations.

1%
Низкий
5 месяцев назад
msrc логотип
CVSS3: 5.5
0%
Низкий
больше 5 лет назад
msrc логотип
CVE-2020-8927

Brotli Library Buffer Overflow Vulnerability

CVSS3: 6.5
0%
Низкий
почти 4 года назад
msrc логотип
CVE-2020-8910

Auth Bypass in Google's Closure-Library

0%
Низкий
5 месяцев назад
msrc логотип
CVSS3: 3.3
0%
Низкий
почти 3 года назад
msrc логотип
CVE-2020-8649

There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vgacon_invert_region function in drivers/video/console/vgacon.c.

CVSS3: 5.9
0%
Низкий
больше 5 лет назад
msrc логотип
CVE-2020-8648

There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the n_tty_receive_buf_common function in drivers/tty/n_tty.c.

CVSS3: 7.1
0%
Низкий
больше 5 лет назад
msrc логотип
CVE-2020-8647

There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vc_do_resize function in drivers/tty/vt/vt.c.

CVSS3: 6.1
0%
Низкий
больше 5 лет назад
msrc логотип
CVE-2020-8632

In cloud-init through 19.4 rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value which makes it easier for attackers to guess passwords.

CVSS3: 5.5
0%
Низкий
больше 5 лет назад
msrc логотип
CVE-2020-8631

cloud-init through 19.4 relies on Mersenne Twister for a random password which makes it easier for attackers to predict passwords because rand_str in cloudinit/util.py calls the random.choice function.

CVSS3: 5.5
0%
Низкий
больше 5 лет назад
msrc логотип
CVE-2020-8625

A vulnerability in BIND's GSSAPI security policy negotiation can be targeted by a buffer overflow attack

CVSS3: 8.1
11%
Средний
почти 5 лет назад
msrc логотип
CVE-2020-8624

update-policy rules of type "subdomain" are enforced incorrectly

CVSS3: 4.3
2%
Низкий
больше 5 лет назад

Уязвимостей на страницу