Mrg Realtime
Vendor:
First CVE: Oct 22, 2009 · Active for 16 years
9
Total CVEs
More Total CVEs than 88% of tracked products
2.3
Avg CVEs / Year
Higher CVE frequency than 76% of tracked products
7.1
Avg CVSS
Higher Avg CVSS than 45% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Mrg Realtime over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 22, 2009
16 years ago
Most Recent CVE
Aug 14, 2019
2,540 days ago
CVE Severity & Scoring
Mrg Realtime9 CVEs
33%
56%
11%
All CVEs353,173 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local5 (55.6%)
Network2 (22.2%)
Unknown1 (11.1%)
Physical0 (0.0%)
Adjacent Network1 (11.1%)
Attack Complexity
Low7 (77.8%)
High1 (11.1%)
Unknown1 (11.1%)
User Interaction
None8 (88.9%)
Unknown1 (11.1%)
Required0 (0.0%)
Privileges Required
Low5 (55.6%)
High0 (0.0%)
None3 (33.3%)
Unknown1 (11.1%)
Top CVEs
Signals from CVEs in this product scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-3639MEDIUM Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior memory writes are known may allow unauthori | May 22, 2018 | 5.5 | 65 | NO | YES |
CVE-2017-18017CRITICAL The tcpmss_mangle_packet function in net/netfilter/xt_TCPMSS.c in the Linux kernel before 4.11, and 4.9.x before 4.9.36, allows remote attackers to cause a denial of service (use-a | Jan 3, 2018 | 9.8 | 60 | NO | NO |
CVE-2018-13405HIGH The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory | Jul 6, 2018 | 7.8 | 36 | NO | YES |
CVE-2009-3547HIGH Multiple race conditions in fs/pipe.c in the Linux kernel before 2.6.32-rc6 allow local users to cause a denial of service (NULL pointer dereference and system crash) or gain privi | Nov 4, 2009 | 7.0 | 36 | NO | YES |
CVE-2018-16871HIGH A flaw was found in the Linux kernel's NFS implementation, all versions 3.x and all versions 4.x up to 4.20. An attacker, who is able to mount an exported NFS filesystem, is able t | Jul 30, 2019 | 7.5 | 26 | NO | NO |
CVE-2009-3620HIGH The ATI Rage 128 (aka r128) driver in the Linux kernel before 2.6.31-git11 does not properly verify Concurrent Command Engine (CCE) state initialization, which allows local users t | Oct 22, 2009 | 7.8 | 23 | NO | NO |
CVE-2017-18344MEDIUM The timer_create syscall implementation in kernel/time/posix-timers.c in the Linux kernel before 4.14.8 doesn't properly validate the sigevent->sigev_notify field, which leads to o | Jul 26, 2018 | 5.5 | 22 | NO | NO |
CVE-2019-9506HIGH The Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not prevent an attacker from influencing the key length n | Aug 14, 2019 | 8.1 | 21 | NO | NO |
CVE-2014-7283MEDIUM The xfs_da3_fixhashpath function in fs/xfs/xfs_da_btree.c in the xfs implementation in the Linux kernel before 3.14.2 does not properly compare btree hash values, which allows loca | Oct 13, 2014 | 4.9 | 15 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (9 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
3 CVEs
33.3% of CVEs· 88th percentile
Social Chatter
Signals from CVEs in this product scope (9 CVEs).
Media Mentions
Signals from CVEs in this product scope (9 CVEs).
Top CNAs Publishing CVEs For Mrg Realtime
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 2.0 | 7 | 7.0 | 17.6% | 0 | 2 |
| 1.0 | 2 | 7.4 | 2.7% | 0 | 1 |