Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Eyrie

First CVE: Feb 13, 2009Active for: 17 yearsTotal CVEs: 4

Eyrie develops authentication and access-control components for Unix and Linux systems, specifically PAM modules for Kerberos integration and a remote command execution tool. The observed vulnerability exposure centers on improper authentication handling and memory-safety issues in these infrastructure components, which operate in privileged contexts where flaws can directly affect system access control. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
4
Total CVEs
More Total CVEs than 79% of tracked vendors
1.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 12% of tracked vendors
5.8
Avg CVSS Score
Higher Avg CVSS Score than 25% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Eyrie over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 13, 2009
17 years ago
Most Recent CVE
Apr 3, 2018
3,034 days ago

Products(2 total)

Top CVEs

Signals from CVEs in this vendor scope (4 CVEs).

4 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2009-0360MEDIUM
Russ Allbery pam-krb5 before 3.13, when linked against MIT Kerberos, does not properly initialize the Kerberos libraries for setuid use, which allows local users to gain privileges
Feb 13, 20096.228NOYES
CVE-2018-0493HIGH
remctld in remctl before 3.14, when an attacker is authorized to execute a command that uses the sudo option, has a use-after-free that leads to a daemon crash, memory corruption,
Apr 3, 20187.223NONO
CVE-2009-1384MEDIUM
pam_krb5 2.2.14 through 2.3.4, as used in Red Hat Enterprise Linux (RHEL) 5, generates different password prompts depending on whether the user account exists, which allows remote
May 28, 20095.018NONO
CVE-2009-0361MEDIUM
Russ Allbery pam-krb5 before 3.13, as used by libpam-heimdal, su in Solaris 10, and other software, does not properly handle calls to pam_setcred when running setuid, which allows
Feb 13, 20094.616NONO
View all 4 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products4 CVEs
75%
25%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network1 (25.0%)
Unknown3 (75.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low1 (25.0%)
High0 (0.0%)
Unknown3 (75.0%)
User Interaction
None1 (25.0%)
Unknown3 (75.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High1 (25.0%)
None0 (0.0%)
Unknown3 (75.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (4 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
25.0% of CVEs· 78th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Eyrie.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Eyrie — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Eyrie's Products

View all 3 CNAs →

Top CWEs