Vulnerabilities
Vulnerable Software
Nec:  Security Vulnerabilities
The FTP server in the NEC MultiWriter 1700C allows remote attackers to redirect traffic to other sites (aka FTP bounce) via the PORT command, a variant of CVE-1999-0017.
CVSS Score
7.8
EPSS Score
0.007
Published
2007-01-23
The Internet Key Exchange version 1 (IKEv1) implementation in NEC UNIVERGE IX1000, IX2000, and IX3000 allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of details in the advisory, it is unclear which of CVE-2005-3666, CVE-2005-3667, and/or CVE-2005-3668 this issue applies to.
CVSS Score
7.5
EPSS Score
0.02
Published
2005-12-22
Multiple buffer overflows in NEC SOCKS5 1.0 r11 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via a long username to (1) the GetString function in proxy.c for the SOCKS5 module or (2) the HandleS4Connection function in proxy.c for the SOCKS4 module.
CVSS Score
10.0
EPSS Score
0.167
Published
2002-12-31
IPSEC implementations including (1) FreeS/WAN and (2) KAME do not properly calculate the length of authentication data, which allows remote attackers to cause a denial of service (kernel panic) via spoofed, short Encapsulating Security Payload (ESP) packets, which result in integer signedness errors.
CVSS Score
5.0
EPSS Score
0.007
Published
2002-11-04
Buffer overflow in socks5 server on Linux allows attackers to execute arbitrary commands via a long connection request.
CVSS Score
7.2
EPSS Score
0.001
Published
2001-01-09
Buffer overflow in libsocks5 library of Socks 5 (socks5) 1.0r5 allows local users to gain privileges via long environmental variables.
CVSS Score
7.2
EPSS Score
0.001
Published
1998-07-10
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
CVSS Score
10.0
EPSS Score
0.805
Published
1998-04-08
Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages.
CVSS Score
5.0
EPSS Score
0.02
Published
1998-04-08
Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer.
CVSS Score
5.4
EPSS Score
0.11
Published
1998-04-08
DNS cache poisoning via BIND, by predictable query IDs.
CVSS Score
5.0
EPSS Score
0.028
Published
1997-08-13


Contact Us

Shodan ® - All rights reserved