Opennds

Opennds

7 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.14%
  • Veröffentlicht 26.02.2024 16:27:59
  • Zuletzt bearbeitet 14.04.2025 12:57:05

openNDS 10.2.0 is vulnerable to Use-After-Free via /openNDS/src/auth.c.

Exploit
  • EPSS 0.32%
  • Veröffentlicht 26.01.2024 05:15:12
  • Zuletzt bearbeitet 21.11.2024 08:13:19

An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the FAS key entry in the configuration file, allowing attackers that have direct or indirect access to this file to execute arbitrary OS commands.

Exploit
  • EPSS 0.32%
  • Veröffentlicht 26.01.2024 05:15:12
  • Zuletzt bearbeitet 29.05.2025 16:15:29

An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the status path script entry in the configuration file, allowing attackers that have direct or indirect access to this file to execute arbitrary OS commands.

Exploit
  • EPSS 0.32%
  • Veröffentlicht 26.01.2024 05:15:11
  • Zuletzt bearbeitet 03.06.2025 18:15:23

An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the network interface name entry in the configuration file, allowing attackers that have direct or indirect access to this file to execute arbitrary OS commands.

Exploit
  • EPSS 0.24%
  • Veröffentlicht 26.01.2024 05:15:11
  • Zuletzt bearbeitet 21.11.2024 08:13:19

An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the gateway FQDN entry in the configuration file, allowing attackers that have direct or indirect access to this file to execute arbitrary OS commands.

  • EPSS 5.44%
  • Veröffentlicht 17.11.2023 06:15:34
  • Zuletzt bearbeitet 21.11.2024 08:20:34

An issue was discovered in the captive portal in OpenNDS before version 10.1.3. get_query in http_microhttpd.c does not validate the length of the query string of GET requests. This leads to a stack-based buffer overflow in versions 9.x and earlier, ...

  • EPSS 0.09%
  • Veröffentlicht 17.11.2023 06:15:34
  • Zuletzt bearbeitet 21.11.2024 08:20:35

An issue was discovered in the captive portal in OpenNDS before version 10.1.3. It has multiple memory leaks due to not freeing up allocated memory. This may lead to a Denial-of-Service condition due to the consumption of all available memory. Affect...