Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Suschman

#21692de 53,634
11CVSS total
Vulnerabilidades · 2
Baixa
1
Alta
1
PT-2019-6548
7.5
2019-11-12
Znc · Znc · CVE-2010-2488
**Name of the Vulnerable Software and Affected Versions** ZNC versions prior to 0.092 **Description** A NULL pointer dereference issue occurs due to traffic stats when there are unauthenticated connections. **Recommendations** For versions prior to 0.092, update to version 0.092 or later to resolve the issue.
PT-2010-4026
3.5
2010-07-12
Znc · Znc · CVE-2010-2448
**Name of the Vulnerable Software and Affected Versions** ZNC versions prior to 0.092 **Description** The issue allows remote authenticated users to cause a denial of service by requesting traffic statistics when there is an active unauthenticated connection. This triggers a NULL pointer dereference, which can be demonstrated using a traffic link in the web administration pages or the traffic command in the /znc shell. **Recommendations** For versions prior to 0.092, update to version 0.092 or later to resolve the issue. As a temporary workaround, consider restricting access to traffic statistics when there are active unauthenticated connections to minimize the risk of exploitation.