Delegate
Delegate: vulnerabilidades y CVE
Delegate tiene 9 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE9
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2015-7556 | Alta (7.8) | 1.3% | — | 15 ene 2020 | DeleGate 9.9.13 allows local users to gain privileges as demonstrated by the dgcpnod setuid program. |
| CVE-2006-2072 | Media (5) | 2.9% | — | 27 abr 2006 | Multiple unspecified vulnerabilities in DeleGate 9.x before 9.0.6 and 8.x before 8.11.6 allow remote attackers to cause a denial of service via crafted DNS responses messages that cause (1) a buffer over-read or (2)… |
| CVE-2005-0036 | Media (5) | 2.7% | — | 31 dic 2005 | The DNS implementation in DeleGate 8.10.2 and earlier allows remote attackers to cause a denial of service via a compressed DNS packet with a label length byte with an incorrect offset, which could trigger an infinite… |
| CVE-2005-0861 | Alta (7.5) | 2.4% | — | 2 may 2005 | Multiple buffer overflows in DeleGate before 8.11.1 may allow attackers to cause a denial of service or execute arbitrary code, possibly due to "overflows on arrays." |
| CVE-2004-0789 | Media (5) | 2.8% | — | 31 dic 2004 | Multiple implementations of the DNS protocol, including (1) Poslib 1.0.2-1 and earlier as used by Posadis, (2) Axis Network products before firmware 3.13, and (3) Men & Mice Suite 2.2x before 2.2.3 and 3.5.x before… |
| CVE-2004-2003 | Alta (7.5) | 6.6% | — | 6 may 2004 | Buffer overflow in the ssl_prcert function in the SSLway filter (sslway.c) for DeleGate 8.9.2 and earlier allows remote attackers to execute arbitrary code via a certificate with a long (1) subject or (2) issuer name… |
| CVE-2002-1781 | Alta (7.5) | 3.2% | — | 31 dic 2002 | Multiple buffer overflows in DeleGate 7.7.0 through 7.8.1 allow remote attackers to execute arbitrary code, as demonstrated using a long USER command to the POP proxy. |
| CVE-2001-1202 | Alta (7.5) | 6.7% | — | 28 dic 2001 | Cross-site scripting vulnerability in DeleGate 7.7.0 and 7.7.1 does not quote scripting commands within a "403 Forbidden" error page, which allows remote attackers to execute arbitrary Javascript on other clients via a… |
| CVE-1999-1338 | Media (5) | 0.98% | — | 21 jul 1999 | Delegate proxy 5.9.3 and earlier creates files and directories in the DGROOT with world-writable permissions. |