Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 998

Количество 998

debian логотип

CVE-2018-1060

около 8 лет назад

python before versions 2.7.15, 3.4.9, 3.5.6rc1, 3.6.5rc1 and 3.7.0 is ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2017-9233

около 9 лет назад

XML External Entity vulnerability in libexpat 2.2.0 and earlier (Expat XML Parser Library) allows attackers to put the parser in an infinite loop using a malformed external entity definition from an external DTD.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2017-9233

около 9 лет назад

XML External Entity vulnerability in libexpat 2.2.0 and earlier (Expat XML Parser Library) allows attackers to put the parser in an infinite loop using a malformed external entity definition from an external DTD.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2017-9233

около 9 лет назад

XML External Entity vulnerability in libexpat 2.2.0 and earlier (Expat XML Parser Library) allows attackers to put the parser in an infinite loop using a malformed external entity definition from an external DTD.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2017-9233

около 9 лет назад

XML External Entity vulnerability in libexpat 2.2.0 and earlier (Expat ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2016-9063

около 8 лет назад

An integer overflow during the parsing of XML using the Expat library. This vulnerability affects Firefox < 50.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2016-9063

больше 9 лет назад

An integer overflow during the parsing of XML using the Expat library. This vulnerability affects Firefox < 50.

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2016-9063

около 8 лет назад

An integer overflow during the parsing of XML using the Expat library. This vulnerability affects Firefox < 50.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2016-9063

около 8 лет назад

An integer overflow during the parsing of XML using the Expat library. ...

CVSS3: 9.8
EPSS: Низкий
ubuntu логотип

CVE-2016-3189

около 10 лет назад

Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2 file, related to block ends set to before the start of the block.

CVSS3: 6.5
EPSS: Средний
redhat логотип

CVE-2016-3189

около 10 лет назад

Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2 file, related to block ends set to before the start of the block.

CVSS2: 4.3
EPSS: Средний
nvd логотип

CVE-2016-3189

около 10 лет назад

Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2 file, related to block ends set to before the start of the block.

CVSS3: 6.5
EPSS: Средний
debian логотип

CVE-2016-3189

около 10 лет назад

Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows rem ...

CVSS3: 6.5
EPSS: Средний
ubuntu логотип

CVE-2014-4650

больше 6 лет назад

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.

CVSS3: 9.8
EPSS: Средний
redhat логотип

CVE-2014-4650

около 12 лет назад

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2014-4650

больше 6 лет назад

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.

CVSS3: 9.8
EPSS: Средний
debian логотип

CVE-2014-4650

больше 6 лет назад

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly h ...

CVSS3: 9.8
EPSS: Средний
ubuntu логотип

CVE-2014-4616

почти 9 лет назад

Array index error in the scanstring function in the _json module in Python 2.7 through 3.5 and simplejson before 2.6.1 allows context-dependent attackers to read arbitrary process memory via a negative index value in the idx argument to the raw_decode function.

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2014-4616

около 12 лет назад

Array index error in the scanstring function in the _json module in Python 2.7 through 3.5 and simplejson before 2.6.1 allows context-dependent attackers to read arbitrary process memory via a negative index value in the idx argument to the raw_decode function.

CVSS2: 4
EPSS: Низкий
nvd логотип

CVE-2014-4616

почти 9 лет назад

Array index error in the scanstring function in the _json module in Python 2.7 through 3.5 and simplejson before 2.6.1 allows context-dependent attackers to read arbitrary process memory via a negative index value in the idx argument to the raw_decode function.

CVSS3: 5.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
debian логотип
CVE-2018-1060

python before versions 2.7.15, 3.4.9, 3.5.6rc1, 3.6.5rc1 and 3.7.0 is ...

CVSS3: 7.5
5%
Низкий
около 8 лет назад
ubuntu логотип
CVE-2017-9233

XML External Entity vulnerability in libexpat 2.2.0 and earlier (Expat XML Parser Library) allows attackers to put the parser in an infinite loop using a malformed external entity definition from an external DTD.

CVSS3: 7.5
9%
Низкий
около 9 лет назад
redhat логотип
CVE-2017-9233

XML External Entity vulnerability in libexpat 2.2.0 and earlier (Expat XML Parser Library) allows attackers to put the parser in an infinite loop using a malformed external entity definition from an external DTD.

CVSS3: 7.5
9%
Низкий
около 9 лет назад
nvd логотип
CVE-2017-9233

XML External Entity vulnerability in libexpat 2.2.0 and earlier (Expat XML Parser Library) allows attackers to put the parser in an infinite loop using a malformed external entity definition from an external DTD.

CVSS3: 7.5
9%
Низкий
около 9 лет назад
debian логотип
CVE-2017-9233

XML External Entity vulnerability in libexpat 2.2.0 and earlier (Expat ...

CVSS3: 7.5
9%
Низкий
около 9 лет назад
ubuntu логотип
CVE-2016-9063

An integer overflow during the parsing of XML using the Expat library. This vulnerability affects Firefox < 50.

CVSS3: 9.8
6%
Низкий
около 8 лет назад
redhat логотип
CVE-2016-9063

An integer overflow during the parsing of XML using the Expat library. This vulnerability affects Firefox < 50.

CVSS3: 9.8
6%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-9063

An integer overflow during the parsing of XML using the Expat library. This vulnerability affects Firefox < 50.

CVSS3: 9.8
6%
Низкий
около 8 лет назад
debian логотип
CVE-2016-9063

An integer overflow during the parsing of XML using the Expat library. ...

CVSS3: 9.8
6%
Низкий
около 8 лет назад
ubuntu логотип
CVE-2016-3189

Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2 file, related to block ends set to before the start of the block.

CVSS3: 6.5
16%
Средний
около 10 лет назад
redhat логотип
CVE-2016-3189

Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2 file, related to block ends set to before the start of the block.

CVSS2: 4.3
16%
Средний
около 10 лет назад
nvd логотип
CVE-2016-3189

Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2 file, related to block ends set to before the start of the block.

CVSS3: 6.5
16%
Средний
около 10 лет назад
debian логотип
CVE-2016-3189

Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows rem ...

CVSS3: 6.5
16%
Средний
около 10 лет назад
ubuntu логотип
CVE-2014-4650

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.

CVSS3: 9.8
25%
Средний
больше 6 лет назад
redhat логотип
CVE-2014-4650

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.

CVSS2: 5
25%
Средний
около 12 лет назад
nvd логотип
CVE-2014-4650

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.

CVSS3: 9.8
25%
Средний
больше 6 лет назад
debian логотип
CVE-2014-4650

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly h ...

CVSS3: 9.8
25%
Средний
больше 6 лет назад
ubuntu логотип
CVE-2014-4616

Array index error in the scanstring function in the _json module in Python 2.7 through 3.5 and simplejson before 2.6.1 allows context-dependent attackers to read arbitrary process memory via a negative index value in the idx argument to the raw_decode function.

CVSS3: 5.9
8%
Низкий
почти 9 лет назад
redhat логотип
CVE-2014-4616

Array index error in the scanstring function in the _json module in Python 2.7 through 3.5 and simplejson before 2.6.1 allows context-dependent attackers to read arbitrary process memory via a negative index value in the idx argument to the raw_decode function.

CVSS2: 4
8%
Низкий
около 12 лет назад
nvd логотип
CVE-2014-4616

Array index error in the scanstring function in the _json module in Python 2.7 through 3.5 and simplejson before 2.6.1 allows context-dependent attackers to read arbitrary process memory via a negative index value in the idx argument to the raw_decode function.

CVSS3: 5.9
8%
Низкий
почти 9 лет назад

Уязвимостей на страницу