← Back

Nmap

nmap

6 CVEs • 2 products

Products (2)

Click to collapse
Toggle
Nmap
nmap
Npcap
npcap

CVEs (6)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Nmap
1Nmap
Jun 30, 2026
Jun 28, 2026
6.9 MEDIUM· v4
6.5 MEDIUM· v3
N/A· v2
Nmap through 7.99 does not keep the IPv6 extension-header walk within the captured packet in ipv6_get_data_primitive (libnetutil/netutil.cc), so the pointer advances past the buffer and the remaining-length computation u...Show more
Nmap through 7.99 does not keep the IPv6 extension-header walk within the captured packet in ipv6_get_data_primitive (libnetutil/netutil.cc), so the pointer advances past the buffer and the remaining-length computation underflows to a large value. A scanned target or on-path attacker returning a crafted IPv6 response with a truncated extension header can trigger out-of-bounds reads and a crash during raw IPv6 scans.Show less
1Nmap
1Nmap
Nov 21, 2024
Aug 29, 2019
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
nse_libssh2.cc in Nmap 7.70 is subject to a denial of service condition due to a double free when an SSH connection fails, as demonstrated by a leading \n character to ssh-brute.nse or ssh-auth-methods.nse.
1Nmap
1Npcap
Jun 17, 2026
Apr 24, 2019
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
An issue was discovered in Npcap 0.992. Sending a malformed .pcap file with the loopback adapter using either pcap_sendqueue_queue() or pcap_sendqueue_transmit() results in kernel pool corruption. This could lead to arbi...Show more
An issue was discovered in Npcap 0.992. Sending a malformed .pcap file with the loopback adapter using either pcap_sendqueue_queue() or pcap_sendqueue_transmit() results in kernel pool corruption. This could lead to arbitrary code executing inside the Windows kernel and allow escalation of privileges.Show less
1Nmap
1Nmap
Nov 21, 2024
Aug 8, 2018
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Nmap through 7.70, when the -sV option is used, allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted TCP-based service.
1Nmap
1Nmap
Nov 21, 2024
Apr 18, 2018
N/A· v4
5.7 MEDIUM· v3
3.5 LOW· v2
nmap version 6.49BETA6 through 7.60, up to and including SVN revision 37147 contains a Directory Traversal vulnerability in NSE script http-fetch that can result in file overwrite as the user is running it. This attack a...Show more
nmap version 6.49BETA6 through 7.60, up to and including SVN revision 37147 contains a Directory Traversal vulnerability in NSE script http-fetch that can result in file overwrite as the user is running it. This attack appears to be exploitable via a victim that runs NSE script http-fetch against a malicious web site. This vulnerability appears to have been fixed in 7.7.Show less
2Nmap
Opensuse
2Nmap
Opensuse
Apr 29, 2026
Oct 26, 2013
N/A· v4
N/A· v3
6.8 MEDIUM· v2
The http-domino-enum-passwords.nse script in NMap before 6.40, when domino-enum-passwords.idpath is set, allows remote servers to upload "arbitrarily named" files via a crafted FullName parameter in a response, as demons...Show more
The http-domino-enum-passwords.nse script in NMap before 6.40, when domino-enum-passwords.idpath is set, allows remote servers to upload "arbitrarily named" files via a crafted FullName parameter in a response, as demonstrated using directory traversal sequences.Show less