CVE-2022-24810
- EPSS 0.16%
- Published 16.04.2024 20:15:09
- Last modified 11.02.2025 21:56:27
net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a user with read-write credentials can use a malformed OID in a SET to the nsVacmAccessTable to cause a NULL pointer dereference. Version 5.9....
CVE-2022-24809
- EPSS 0.14%
- Published 16.04.2024 20:15:09
- Last modified 17.01.2025 16:17:30
net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a user with read-only credentials can use a malformed OID in a `GET-NEXT` to the `nsVacmAccessTable` to cause a NULL pointer dereference. Vers...
CVE-2022-24808
- EPSS 0.2%
- Published 16.04.2024 20:15:08
- Last modified 17.01.2025 16:16:28
net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a user with read-write credentials can use a malformed OID in a `SET` request to `NET-SNMP-AGENT-MIB::nsLogTable` to cause a NULL pointer dere...
CVE-2022-24807
- EPSS 0.5%
- Published 16.04.2024 20:15:08
- Last modified 17.01.2025 16:15:01
net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a malformed OID in a SET request to `SNMP-VIEW-BASED-ACM-MIB::vacmAccessTable` can cause an out-of-bounds memory access. A user with read-writ...
CVE-2022-24806
- EPSS 0.14%
- Published 16.04.2024 20:15:08
- Last modified 17.01.2025 16:09:56
net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a user with read-write credentials can exploit an Improper Input Validation vulnerability when SETing malformed OIDs in master agent and subag...
CVE-2022-24805
- EPSS 0.48%
- Published 16.04.2024 20:15:07
- Last modified 17.01.2025 16:04:56
net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a buffer overflow in the handling of the `INDEX` of `NET-SNMP-VACM-MIB` can cause an out-of-bounds memory access. A user with read...
CVE-2022-44792
- EPSS 2.81%
- Published 07.11.2022 03:15:09
- Last modified 05.05.2025 16:15:22
handle_ipDefaultTTL in agent/mibgroup/ip-mib/ip_scalars.c in Net-SNMP 5.8 through 5.9.3 has a NULL Pointer Exception bug that can be used by a remote attacker (who has write access) to cause the instance to crash via a crafted UDP packet, resulting i...
CVE-2022-44793
- EPSS 2.09%
- Published 07.11.2022 03:15:09
- Last modified 05.05.2025 16:15:22
handle_ipv6IpForwarding in agent/mibgroup/ip-mib/ip_scalars.c in Net-SNMP 5.4.3 through 5.9.3 has a NULL Pointer Exception bug that can be used by a remote attacker to cause the instance to crash via a crafted UDP packet, resulting in Denial of Servi...
CVE-2020-15862
- EPSS 0.06%
- Published 20.08.2020 01:17:13
- Last modified 21.11.2024 05:06:19
Net-SNMP through 5.8 has Improper Privilege Management because SNMP WRITE access to the EXTEND MIB provides the ability to run arbitrary commands as root.
CVE-2020-15861
- EPSS 0.51%
- Published 20.08.2020 01:17:13
- Last modified 21.11.2024 05:06:19
Net-SNMP through 5.7.3 allows Escalation of Privileges because of UNIX symbolic link (symlink) following.