CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1

CVE-2010-2306 MEDIUM

The default installation of Sourcefire 3D Sensor 1000, 2000, and 9900; and Defense Center 1000; uses the same static, private SSL keys for multiple devices and…

CVSS 4.3 EPSS 1.46% Jun 16, 2010
CVE-2009-2344 HIGH

The web-based management interfaces in Sourcefire Defense Center (DC) and 3D Sensor before 4.8.2 allow remote authenticated users to gain privileges via a $adm…

CVSS 9.0 EPSS 9.25% Jul 7, 2009
CVE-2006-5276 HIGH

Stack-based buffer overflow in the DCE/RPC preprocessor in Snort before 2.6.1.3, and 2.7 before beta 2; and Sourcefire Intrusion Sensor; allows remote attacker…

CVSS 10.0 EPSS 79.44% Feb 20, 2007
CVE-2006-2769 MEDIUM

The HTTP Inspect preprocessor (http_inspect) in Snort 2.4.0 through 2.4.4 allows remote attackers to bypass "uricontent" rules via a carriage return (\r) after…

CVSS 5.0 EPSS 10.81% Jun 2, 2006
CVE-2006-0839 MEDIUM

The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options, which allows remote attackers to evad…

CVSS 5.0 EPSS 1.41% Feb 22, 2006
CVE-2004-2652 HIGH

The DecodeTCPOptions function in decode.c in Snort before 2.3.0, when printing TCP/IP options using FAST output or verbose mode, allows remote attackers to cau…

CVSS 7.8 EPSS 11.19% Dec 18, 2005
CVE-2005-3252 HIGH

Stack-based buffer overflow in the Back Orifice (BO) preprocessor for Snort before 2.4.3 allows remote attackers to execute arbitrary code via a crafted UDP pa…

CVSS 7.5 EPSS 83.62% Oct 18, 2005
CVE-2003-0209 HIGH

Integer overflow in the TCP stream reassembly module (stream4) for Snort 2.0 and earlier allows remote attackers to execute arbitrary code via large sequence n…

CVSS 10.0 EPSS 38.63% Apr 16, 2003

Showing 1 to 8 CVEs · page 1