Ekg

Vendor:

First CVE: Jul 6, 2005 · Active for 21 years

10
Total CVEs
Bottom 1%
5.0
Avg CVEs / Year
Bottom 1%
6.5
Avg CVSS
Higher Avg CVSS than 17% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Ekg over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jul 6, 2005
21 years ago
Most Recent CVE
Jun 27, 2007
6,971 days ago

CVE Severity & Scoring

Ekg10 CVEs
All CVEs353,173 CVEs
MediumHigh
Attack Vector
Local1 (10.0%)
Network0 (0.0%)
Unknown9 (90.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low1 (10.0%)
High0 (0.0%)
Unknown9 (90.0%)
User Interaction
None1 (10.0%)
Unknown9 (90.0%)
Required0 (0.0%)
Privileges Required
Low1 (10.0%)
High0 (0.0%)
None0 (0.0%)
Unknown9 (90.0%)

Top CVEs

Signals from CVEs in this product scope (10 CVEs).

10 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Certain contributed scripts for ekg Gadu Gadu client 1.5 and earlier create temporary files insecurely, with unknown impact and attack vectors, a different vulnerability than CVE-2
Jul 19, 200510.025NONO
A certain contributed script for ekg Gadu Gadu client 1.5 and earlier allows attackers to execute shell commands via unknown attack vectors.
Jul 19, 200510.025NONO
Multiple integer overflows in libgadu, as used in Kopete in KDE 3.2.3 to 3.4.1, ekg before 1.6rc3, GNU Gadu, CenterICQ, Kadu, and other packages, allows remote attackers to cause a
Jul 26, 20057.521NONO
Multiple integer signedness errors in libgadu, as used in ekg before 1.6rc2 and other packages, may allow remote attackers to cause a denial of service or execute arbitrary code.
Jul 26, 20057.520NONO
linki.py in ekg 2005-06-05 and earlier allows local users to overwrite or create arbitrary files via a symlink attack on temporary files.
Jul 6, 20055.517NONO
Memory leak in the image message functionality in ekg before 1:1.7~rc2-1etch1 on Debian GNU/Linux Etch allows remote attackers to cause a denial of service.
Jun 27, 20075.015NONO
ekg before 1:1.7~rc2-1etch1 on Debian GNU/Linux Etch allows remote attackers to cause a denial of service (NULL pointer dereference) via a vector related to the token OCR functiona
Jun 27, 20075.015NONO
Memory leak in the token OCR functionality in ekg before 1:1.7~rc2-1etch1 on Debian GNU/Linux Etch allows remote attackers to cause a denial of service.
Jun 27, 20075.015NONO
Multiple "endianness errors" in libgadu in ekg before 1.6rc2 allow remote attackers to cause a denial of service (invalid behavior in applications) on big-endian systems.
Aug 3, 20055.015NONO
Multiple "memory alignment errors" in libgadu, as used in ekg before 1.6rc2, Gaim before 1.5.0, and other packages, allows remote attackers to cause a denial of service (bus error)
Jul 26, 20055.015NONO

Exploit Exposure

Signals from CVEs in this product scope (10 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (10 CVEs).

Media Mentions

Signals from CVEs in this product scope (10 CVEs).

Top CNAs Publishing CVEs For Ekg

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
2005-06-0535.82.5%00
2005-04-1165.42.4%00
1.6_rc135.82.5%00
1.5_rc239.22.6%00
1.5_rc139.22.6%00
1.567.52.5%00
1.467.52.5%00
1.367.52.5%00
1.1_rc239.22.6%00
1.1_rc139.22.6%00
1.167.52.5%00
1.0_rc339.22.6%00
1.0_rc239.22.6%00
1.039.22.6%00