VYPR

Vendor CVEs

Emqx

All CVEs

55 total · sorted by risk
  • CVE-2024-10964MedNov 7, 2024
    risk 0.00cvss 6.3epss 0.01

    A vulnerability classified as critical has been found in emqx neuron up to 2.10.0. Affected is the function handle_add_plugin in the library cmd.library of the file plugins/restful/plugin_handle.c. The manipulation leads to buffer overflow. It is possible to launch the attack…

  • CVE-2023-33657HigJun 8, 2023
    risk 0.00cvss 7.5epss 0.01

    A use-after-free vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function nni_mqtt_msg_get_publish_property() in the file mqtt_msg.c. This vulnerability is caused by improper data tracing, and an attacker could exploit it to cause a…

  • CVE-2023-33660HigJun 8, 2023
    risk 0.00cvss 7.5epss 0.01

    A heap buffer overflow vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function copyn_str() in the file mqtt_parser.c. An attacker could exploit this vulnerability to cause a denial of service attack.

  • CVE-2023-33658HigJun 8, 2023
    risk 0.00cvss 7.5epss 0.01

    A heap buffer overflow vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function nni_msg_get_pub_pid() in the file message.c. An attacker could exploit this vulnerability to cause a denial of service attack.

  • CVE-2023-33659HigJun 6, 2023
    risk 0.00cvss 7.5epss 0.01

    A heap buffer overflow vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function nmq_subinfo_decode() in the file mqtt_parser.c. An attacker could exploit this vulnerability to cause a denial of service attack.

Page 2 of 2