Vulnerabilities (CVE)

Filtered by vendor Cipherdyne Subscribe
Filtered by product Fwknop
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2012-4434 1 Cipherdyne 1 Fwknop 2024-02-04 6.5 MEDIUM 8.8 HIGH
fwknop before 2.0.3 allow remote authenticated users to cause a denial of service (server crash) or possibly execute arbitrary code.
CVE-2012-4435 1 Cipherdyne 1 Fwknop 2024-02-04 4.0 MEDIUM N/A
fwknop before 2.0.3 does not properly validate IP addresses, which allows remote authenticated users to cause a denial of service (server crash) via a long IP address.
CVE-2012-4436 1 Cipherdyne 1 Fwknop 2024-02-04 4.4 MEDIUM N/A
Buffer overflow in the run_last_args function in client/fwknop.c in fwknop before 2.0.3, when processing --last, might allow local users to cause a denial of service (client crash) and possibly execute arbitrary code via many .fwknop.run arguments.