CVE-2019-10939
- EPSS 0.44%
- Veröffentlicht 14.04.2020 20:15:14
- Zuletzt bearbeitet 21.11.2024 04:20:11
A vulnerability has been identified in TIM 3V-IE (incl. SIPLUS NET variants) (All versions < V2.8), TIM 3V-IE Advanced (incl. SIPLUS NET variants) (All versions < V2.8), TIM 3V-IE DNP3 (incl. SIPLUS NET variants) (All versions < V3.3), TIM 4R-IE (inc...
CVE-2015-7705
- EPSS 25%
- Veröffentlicht 07.08.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The rate limiting feature in NTP 4.x before 4.2.8p4 and 4.3.x before 4.3.77 allows remote attackers to have unspecified impact via a large number of crafted requests.
CVE-2015-7855
- EPSS 60.88%
- Veröffentlicht 07.08.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The decodenetnum function in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service (assertion failure) via a 6 or mode 7 packet containing a long data value.
CVE-2015-7973
- EPSS 4.59%
- Veröffentlicht 30.01.2017 21:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
NTP before 4.2.8p6 and 4.3.x before 4.3.90, when configured in broadcast mode, allows man-in-the-middle attackers to conduct replay attacks by sniffing the network.
CVE-2015-7977
- EPSS 9.71%
- Veröffentlicht 30.01.2017 21:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
ntpd in NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (NULL pointer dereference) via a ntpdc reslist command.
CVE-2016-4954
- EPSS 2.18%
- Veröffentlicht 05.07.2016 01:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
The process_packet function in ntp_proto.c in ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (peer-variable modification) by sending spoofed packets from many source IP addresses in a certain scenario, as demonstr...
CVE-2016-4953
- EPSS 12.64%
- Veröffentlicht 05.07.2016 01:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (ephemeral-association demobilization) by sending a spoofed crypto-NAK packet with incorrect authentication data at a certain time.
CVE-2015-7974
- EPSS 3.67%
- Veröffentlicht 26.01.2016 19:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
NTP 4.x before 4.2.8p6 and 4.3.x before 4.3.90 do not verify peer associations of symmetric keys when authenticating packets, which might allow remote attackers to conduct impersonation attacks via an arbitrary trusted key, aka a "skeleton key."