Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
k2 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2022-48070
Phicomm K2 v22.6.534.263 exists to contain a command injection vulnerability via the autoUpTime parameter in the automatic upgrade function.
Phicomm K2 Firmware 22.6.534.263
614
VMScore
CVE-2010-3156
Untrusted search path vulnerability in K2 K2Editor prior to 1.5.9 allows local users to gain privileges via a Trojan horse executable file in the current working directory.
K2top K2editor
445
VMScore
CVE-2005-1247
webadmin.exe in Novell Nsure Audit 1.0.1 allows remote malicious users to cause a denial of service via malformed ASN.1 packets in corrupt client certificates to an SSL server, as demonstrated using an exploit for the OpenSSL ASN.1 parsing vulnerability.
Novell Nsure Audit 1.0.1
505
VMScore
CVE-2003-0543
Integer overflow in OpenSSL 0.9.6 and 0.9.7 allows remote malicious users to cause a denial of service (crash) via an SSL client certificate with certain ASN.1 tag values.
Openssl Openssl 0.9.6
Openssl Openssl 0.9.7
1 EDB exploit
445
VMScore
CVE-2003-0544
OpenSSL 0.9.6 and 0.9.7 does not properly track the number of characters in certain ASN.1 inputs, which allows remote malicious users to cause a denial of service (crash) via an SSL client certificate that causes OpenSSL to read past the end of a buffer when the long form is used...
Openssl Openssl 0.9.6
Openssl Openssl 0.9.7
890
VMScore
CVE-2003-0545
Double free vulnerability in OpenSSL 0.9.7 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via an SSL client certificate with a certain invalid ASN.1 encoding.
Openssl Openssl 0.9.6
Openssl Openssl 0.9.7
828
VMScore
CVE-2022-25218
The use of the RSA algorithm without OAEP, or any other padding scheme, in telnetd_startup, allows an unauthenticated attacker on the local area network to achieve a significant degree of control over the "plaintext" to which an arbitrary blob of ciphertext will be decr...
Phicomm K2 Firmware
Phicomm K3 Firmware
Phicomm K3c Firmware
Phicomm K2g Firmware
Phicomm K2p Firmware
641
VMScore
CVE-2022-25217
Use of a hard-coded cryptographic key pair by the telnetd_startup service allows an attacker on the local area network to obtain a root shell on the device over telnet. The builds of telnetd_startup included in the version 22.5.9.163 of the K2 firmware, and version 32.1.15.93 of ...
Phicomm K2 Firmware
Phicomm K3c Firmware
445
VMScore
CVE-2003-0851
OpenSSL 0.9.6k allows remote malicious users to cause a denial of service (crash via large recursion) via malformed ASN.1 sequences.
Cisco Ios 12.1\\(11\\)e
Cisco Ios 12.2sy
Cisco Ios 12.1\\(11b\\)e
Cisco Ios 12.2sx
Cisco Css11000 Content Services Switch
Cisco Pix Firewall 6.2.2 .111
Openssl Openssl 0.9.6f
Openssl Openssl 0.9.6g
Cisco Pix Firewall Software 6.0
Cisco Pix Firewall Software 6.0\\(1\\)
Cisco Pix Firewall Software 6.1\\(2\\)
Cisco Pix Firewall Software 6.1\\(3\\)
Cisco Pix Firewall Software 6.3\\(1\\)
Cisco Pix Firewall Software 6.3\\(3.102\\)
Openssl Openssl 0.9.6
Openssl Openssl 0.9.6a
Openssl Openssl 0.9.6h
Openssl Openssl 0.9.6i
Cisco Pix Firewall Software 6.0\\(2\\)
Cisco Pix Firewall Software 6.0\\(3\\)
Cisco Pix Firewall Software 6.1\\(4\\)
Cisco Pix Firewall Software 6.1\\(5\\)
445
VMScore
CVE-2004-0112
The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote malicious users to cause a denial of service (crash) via a crafted SSL/TLS handshak...
Cisco Firewall Services Module
Symantec Clientless Vpn Gateway 4400 5.0
Hp Apache-based Web Server 2.0.43.00
Cisco Firewall Services Module 1.1.3
Cisco Firewall Services Module 1.1.2
Hp Aaa Server
Cisco Firewall Services Module 1.1 \\(3.005\\)
Hp Apache-based Web Server 2.0.43.04
Cisco Firewall Services Module 2.1 \\(0.208\\)
Avaya Sg203 4.4
Hp Hp-ux 11.11
Redhat Enterprise Linux Desktop 3.0
Hp Hp-ux 11.23
Cisco Ciscoworks Common Management Foundation 2.1
Freebsd Freebsd 5.1
Avaya Sg208 4.4
Redhat Enterprise Linux 3.0
Avaya Sg200 4.4
Avaya Sg5 4.4
Redhat Linux 7.2
Cisco Ciscoworks Common Services 2.2
Openbsd Openbsd 3.3
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
SSTI
CVE-2024-35863
CVE-2024-35910
man-in-the-middle
CVE-2024-35912
CVE-2024-25742
LFI
CVE-2024-32002
CVE-2024-22120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »