Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
Envoy: Embedded NUL in TLS DNS SAN Truncation in the Default TLS Certificate Validator. (Auth Bypass)
jq: Embedded NUL in jq import paths causes local redaction-policy bypass and preserves sensitive fields in published artifacts
jq: Embedded NUL truncates top-level jq programs loaded with -f
mutt before 2.3.2 does not check for '\0' in url_pct_decode
mutt before 2.3.2 sometimes uses strfcpy instead of memcpy for the IMAP auth_cram MD5 digest
free5GC UDM vulnerable to null byte injection in URL path parameters causing 500 Internal Server Error
Heap-buffer-over-read in _mongoc_http_send via strstr on non-null-terminated buffer
Out-of-bounds character read vulnerability in Bluetooth
PhastPress <= 3.7 - Unauthenticated Arbitrary File Read via Null Byte Injection
Unauthenticated Arbitrary File Read via Null Byte Injection
ssh in OpenSSH before 10.1 allows the '\0' character in an ssh:// URI, potentially leading to code execution when a ProxyCommand is used
Denial of Service in CivetWeb
BMC Control-M/Agent unescaped NULL byte in access control list checks
In Wing FTP Server before 7.4.4
Improper neutralization of null bytes may lead to buffer over-reads in MongoDB Server
PHP-FPM logs from children may be altered
Xorg-x11-server: selinux unlabeled glx pbuffer
Red Lion Crimson Improper Neutralization of Null Byte or NUL Character
Dell BIOS versions contain an Improper Neutralization of Null Byte vulnerability
Cisco Expressway Series and Cisco TelePresence Video Communication Server Vulnerabilities
Showing 1 - 20 of 1,000+ results