Maynard Johnson's vulnerability footprint centers on OProfile, a system-level profiling and performance-analysis tool, with the observed exposure clustering around code-injection risks, path-traversal conditions, and improper link resolution in file access. The profile reflects the tool's privileged instrumentation role and its interaction with the filesystem during dynamic analysis operations. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Maynard Johnson over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2011-1760HIGH utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to conduct eval injection attacks and gain privileges via shell metacharacters in the -e argument. | Jun 9, 2011 | 7.2 | 33 | NO | YES |
CVE-2011-2471HIGH utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to gain privileges via shell metacharacters in the (1) --vmlinux, (2) --session-dir, or (3) --xen argument, re | Jun 9, 2011 | 7.2 | 24 | NO | NO |
CVE-2011-2472MEDIUM Directory traversal vulnerability in utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to overwrite arbitrary files via a .. (dot dot) in the --save argument, r | Jun 9, 2011 | 6.3 | 21 | NO | NO |
CVE-2011-2473MEDIUM The do_dump_data function in utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to create or overwrite arbitrary files via a crafted --session-dir argument in co | Jun 9, 2011 | 6.3 | 20 | NO | NO |
CVE-2006-0576HIGH Untrusted search path vulnerability in opcontrol in OProfile 0.9.1 and earlier allows local users to execute arbitrary commands via a modified PATH that references malicious (1) wh | Feb 8, 2006 | 7.2 | 18 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Maynard Johnson.
Media articles that mention a CVE ID that affects a product developed by Maynard Johnson — matched by CVE ID, not by vendor name.