📦

snort

Vendor: sourcefire

Actively Exploited 0 CISA KEV List
PoC / Exploits 4 Code Available
Total RCEs 0 Remote Access
Total CVEs 10 Total Indexed
Avg. EPSS 29.13% Exploit Prob.
Latest CVE CVE-2006-2769 Jun 02

Security Vulnerability Index

Page 1 / 1
5.0 CVSS
CVE-2006-2769
Exploit Found

The HTTP Inspect preprocessor (http_inspect) in Snort 2.4.0 through 2.4.4 allows remote attackers to bypass "uricontent" rules via a carriage return (\r) after the URL and before the HTTP declaration.

EPSS: 10.81%
5.0 CVSS

The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options, which allows remote attackers to evade detection of certain attacks, possibly related to IP option lengths.

EPSS: 1.41%
7.5 CVSS
CVE-2005-3252
Exploit Found

Stack-based buffer overflow in the Back Orifice (BO) preprocessor for Snort before 2.4.3 allows remote attackers to execute arbitrary code via a crafted UDP packet.

EPSS: 83.62%
7.8 CVSS
CVE-2004-2652
Exploit Found

The DecodeTCPOptions function in decode.c in Snort before 2.3.0, when printing TCP/IP options using FAST output or verbose mode, allows remote attackers to cause a denial of service (crash) via packets with invalid TCP/IP options, which trigger a null dereference.

EPSS: 11.19%
10.0 CVSS
CVE-2003-0209
Exploit Found

Integer overflow in the TCP stream reassembly module (stream4) for Snort 2.0 and earlier allows remote attackers to execute arbitrary code via large sequence numbers in packets, which enable a heap-based buffer overflow.

EPSS: 38.62%