Vulnerabilities
381,276
with PoCs
37,250
CISA KEV
1,665
Ransomware
606
with Nuclei
4,342

Showing 5 vulnerabilities on this page

Signals CISA KEV Ransomware Nuclei
Vulnerability search results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Generated title:GNU inetutils telnet Information Disclosure via NEW_ENVIRON SEND USERVAR

telnet in GNU inetutils through 2.7 allows servers to read arbitrary environment variables from clients via NEW_ENVIRON SEND USERVAR.

CWE-669Mar 13, 2026
CVSS3.4v3.1EPSS0.187%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

telnetd 2.7 - Buffer Overflow

telnetd in GNU inetutils through 2.7 allows an out-of-bounds write in the LINEMODE SLC (Set Local Characters) suboption handler because add_slc does not check whether the buffer is full.

CWE-120Mar 13, 2026
CVSS9.8v3.1EPSS23.7%PoCs9SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Generated title:GNU inetutils telnetd Privilege Escalation via CREDENTIALS_DIRECTORY Environment Variable

telnetd in GNU inetutils through 2.7 allows privilege escalation that can be exploited by abusing systemd service credentials support added to the login(1) implementation of util-linux in release 2.40. This is related to client control over the CREDENTIALS_DIRECTORY environment variable, and requires an unprivileged local user to create a login.noauth file.

CWE-829Feb 27, 2026
CVSS7.4v3.1EPSS0.373%PoCs6SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

GNU InetUtils Argument Injection Vulnerability

telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment variable.

CWE-88Jan 21, 20261 related artifact
CVSS9.8v3.1EPSS97.9%PoCs79SignalsListed in CISA KEVKnown ransomware use1 Nuclei templateSTIX

GNU inetutils Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and earlier, Heimdal 1.5.1 and earlier, GNU inetutils, and possibly other products allows remote attackers to execute arbitrary code via a long encryption key, as exploited in the wild in December 2011.

CWE-120Dec 25, 2011
CVSS10.0v2.0EPSS95%PoCs9SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX