目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1000 CNY

100.0%

FirebirdSQL 厂商漏洞列表 / CVE 中文分析 12

FirebirdSQL 厂商相关 12 条 CVE 漏洞,含 AI 中文分析、POC、CVSS 评分与受影响产品。

FirebirdSQL 是一款开源关系型数据库管理系统,广泛应用于企业级应用和嵌入式系统。历史上,其漏洞主要涉及缓冲区溢出、SQL 注入和权限绕过等问题。尽管已记录 12 条 CVE,多数漏洞已被及时修复。该数据库支持事务处理、多版本并发控制等特性,安全性相对较高,但仍需定期更新以防范潜在风险。其跨平台兼容性和轻量级设计使其在资源受限环境中备受青睐。

12 件の結果 / 12フィルターをクリア
上位製品 FirebirdSQL: firebird
CVE IDタイトルCVSS深刻度公開日
CVE-2026-40342 Firebird: Path Traversal + Arbitrary File Write Leads to Remote Code Execution — firebirdCWE-22 10.0 Critical2026-04-17
CVE-2026-35215 Firebird: DoS via malicious slice descriptor in slice packet — firebirdCWE-369 7.5 High2026-04-17
CVE-2026-34232 Firebird: DoS via `op_response` packet from client — firebirdCWE-228 7.5 High2026-04-17
CVE-2026-33337 Firebird has a buffer overflow when parsing corrupted slice packets — firebirdCWE-120 7.5 High2026-04-17
CVE-2026-28224 Firebird Null Pointer Dereference via CryptCallback causes DOS — firebirdCWE-476 8.2 High2026-04-17
CVE-2026-28214 Firebird server hangs when using specific clumplet on batch creation — firebirdCWE-190 6.5AIMediumAI2026-04-17
CVE-2026-27890 Firebird has Pre-Auth DOS when Processing Out of Order CNCT_specific_data Segments — firebirdCWE-119 8.2 High2026-04-17
CVE-2026-28212 Firebird has potential server crash via null pointer dereference when processing op_slice packet — firebirdCWE-476 7.5 High2026-04-17
CVE-2025-65104 Firebird: Information leak vulnerability in firebird3 client when used with newer server — firebirdCWE-200 7.9 High2026-04-17
CVE-2025-24975 Firebird Non-Authorized Access to Encrypted Database Using Execute Statement on External — firebirdCWE-754 7.1 High2025-08-15
CVE-2025-54989 Firebird XDR Message Parsing NULL Pointer Dereference Denial-of-Service Vulnerability — firebirdCWE-476 5.3 Medium2025-08-15
CVE-2023-41038 Server crash when using specific form of SET BIND statement — firebirdCWE-770 7.5 High2024-03-20

本页汇总了 FirebirdSQL 厂商截至目前公开的全部 12 条 CVE 漏洞。每条漏洞均包含 CVSS 评分、CWE 弱点分类、受影响产品与参考链接,并附带 AI 生成的中文分析以便快速判断风险。