Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2015-5621

EPSS 17.70% · P95
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2015-5621

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The snmp_pdu_parse function in snmp_api.c in net-snmp 5.7.2 and earlier does not remove the varBind variable in a netsnmp_variable_list item when parsing of the SNMP PDU fails, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted packet.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Net-SNMP‘snmp_api.c’远程拒绝服务漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Net-SNMP是一套开源的简单网络管理协议(Simple Network Management Protocol)软件。该软件用于监控网络设备、电脑设备、UPS设备等。 Net-SNMP 5.7.2及之前版本的snmp_api.c文件中的‘snmp_pdu_parse’函数存在安全漏洞,该漏洞源于程序解析SNMP PDU文件时,没有删除netsnmp_variable_list项中的‘varBind’变量。远程攻击者可通过发送特制的数据包利用该漏洞造成拒绝服务(崩溃),并执行任意代码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2015-5621

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2015-5621

登录查看更多情报信息。

Same Patch Batch · n/a · 2015-08-19 · 19 CVEs total

CVE-2015-4322Cisco Content Security Management Appliance 安全漏洞
CVE-2015-2502Microsoft Internet Explorer 缓冲区溢出漏洞
CVE-2015-4302Cisco FireSIGHT System Software 安全漏洞
CVE-2015-4297Cisco WebEx Node for MCS 开放重定向漏洞
CVE-2015-6523WordPress Portfolio插件跨站请求伪造漏洞
CVE-2015-6522WordPress WP Symposium插件SQL注入漏洞
CVE-2015-6255Cisco Unified Web和E-mail Interaction Manager 跨站脚本漏洞
CVE-2015-5163OpenStack 信息泄露漏洞
CVE-2015-4324Cisco NX-OS 缓冲区溢出漏洞
CVE-2015-4296Cisco Nexus 3000 Series Switches Nexus Data Broker 拒绝服务漏洞
CVE-2015-4308Cisco Edge 340 Series Digital Media Player 安全漏洞
CVE-2015-4301Cisco Nexus 9000 Series Software 拒绝服务漏洞
CVE-2015-4299Cisco Unified Web和E-mail Interaction Manager 安全漏洞
CVE-2015-4298Cisco Unified Web和E-mail Interaction Manager 安全漏洞
CVE-2015-1830Apache ActiveMQ 路径遍历漏洞
CVE-2015-4277Cisco ASR 9000设备拒绝服务漏洞
CVE-2015-4323多款Cisco Nexus产品缓冲区溢出漏洞
CVE-2015-4310Cisco Finesse 跨站脚本漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2015-5621

No comments yet


Leave a comment