Transmissionbt

Transmission

10 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 2.38%
  • Veröffentlicht 15.05.2020 16:15:11
  • Zuletzt bearbeitet 21.11.2024 03:41:59

Use-after-free in libtransmission/variant.c in Transmission before 3.00 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted torrent file.

Exploit
  • EPSS 0.86%
  • Veröffentlicht 30.10.2019 23:15:10
  • Zuletzt bearbeitet 21.11.2024 01:12:52

Transmission before 1.92 allows an attacker to cause a denial of service (crash) or possibly have other unspecified impact via a large number of tr arguments in a magnet link.

  • EPSS 0.73%
  • Veröffentlicht 30.10.2019 23:15:10
  • Zuletzt bearbeitet 21.11.2024 01:12:52

Transmission before 1.92 allows attackers to prevent download of a file by corrupted data during the endgame.

Exploit
  • EPSS 28.96%
  • Veröffentlicht 15.01.2018 16:29:00
  • Zuletzt bearbeitet 21.11.2024 04:09:12

Transmission through 2.92 relies on X-Transmission-Session-Id (which is not a forbidden header for Fetch) for access control, which allows remote attackers to execute arbitrary RPC commands, and consequently write to arbitrary files, via POST request...

Exploit
  • EPSS 9.19%
  • Veröffentlicht 29.07.2014 14:55:07
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Integer overflow in the tr_bitfieldEnsureNthBitAlloced function in bitfield.c in Transmission before 2.84 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted peer message, which triggers an out-of-bo...

Exploit
  • EPSS 2.68%
  • Veröffentlicht 03.04.2013 00:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Stack-based buffer overflow in utp.cpp in libutp, as used in Transmission before 2.74 and possibly other products, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted "micro transport protocol ...

Exploit
  • EPSS 0.55%
  • Veröffentlicht 15.08.2012 20:55:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple cross-site scripting (XSS) vulnerabilities in the web client in Transmission before 2.61 allow remote attackers to inject arbitrary web script or HTML via the (1) comment, (2) created by, or (3) name field in a torrent file.

  • EPSS 3.01%
  • Veröffentlicht 07.05.2010 20:30:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple stack-based buffer overflows in the tr_magnetParse function in libtransmission/magnet.c in Transmission 1.91 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted magnet URL with a large...

  • EPSS 0.3%
  • Veröffentlicht 08.01.2010 17:30:02
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Directory traversal vulnerability in libtransmission/metainfo.c in Transmission 1.22, 1.34, 1.75, and 1.76 allows remote attackers to overwrite arbitrary files via a .. (dot dot) in a pathname within a .torrent file.

  • EPSS 0.12%
  • Veröffentlicht 22.05.2009 11:52:40
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Cross-site request forgery (CSRF) vulnerability in Transmission 1.5 before 1.53 and 1.6 before 1.61 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.