Cygnus maintains a focused portfolio of network security products, including its Network Security and KerbNet offerings, with a niche but recurring presence in vulnerability disclosures. The vendor's reported weaknesses center on classification placeholders rather than a clearly defined technical pattern, though public exploit code has been developed for some of its vulnerabilities. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Cygnus over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2000-0389HIGH Buffer overflow in krb_rd_req function in Kerberos 4 and 5 allows remote attackers to gain root privileges. | May 16, 2000 | 10.0 | 43 | NO | YES |
CVE-2000-0390HIGH Buffer overflow in krb425_conv_principal function in Kerberos 5 allows remote attackers to gain root privileges. | May 16, 2000 | 10.0 | 26 | NO | NO |
CVE-2000-0391HIGH Buffer overflow in krshd in Kerberos 5 allows remote attackers to gain root privileges. | May 16, 2000 | 10.0 | 26 | NO | NO |
CVE-2000-0392HIGH Buffer overflow in ksu in Kerberos 5 allows local users to gain root privileges. | May 16, 2000 | 7.2 | 18 | NO | NO |
CVE-2000-0549MEDIUM Kerberos 4 KDC program does not properly check for null termination of AUTH_MSG_KDC_REQUEST requests, which allows remote attackers to cause a denial of service via a malformed req | Jun 9, 2000 | 5.0 | 15 | NO | NO |
CVE-2000-0550MEDIUM Kerberos 4 KDC program improperly frees memory twice (aka "double-free"), which allows remote attackers to cause a denial of service. | Jun 9, 2000 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Cygnus.
Media articles that mention a CVE ID that affects a product developed by Cygnus — matched by CVE ID, not by vendor name.