imPC@ndo IT

CVE Tracker

56.413 CVE

CVE-2023-46263
Critical 9.8

An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.4.1 and below that could allow an attacker to achieve a remote code execution.

ivanti avalanche
0.82EPSS
CVE-2024-9464
Medium 6.5

An OS command injection vulnerability in Palo Alto Networks Expedition allows an authenticated attacker to run arbitrary OS commands as root in Expedition, resulting in disclosure of usernames, cleartext passwords, device configurations, and device API keys of…

paloaltonetworks expedition
0.82EPSS
CVE-2022-45402
Medium 6.1

In Apache Airflow versions prior to 2.4.3, there was an open redirect in the webserver's `/login` endpoint.

apache airflow
0.82EPSS
CVE-2020-26258
Medium 6.3

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.15, a Server-Side Forgery Request vulnerability can be activated when unmarshalling. The vulnerability may allow a remote attacker to request data from internal…

apache struts · debian debian_linux · fedoraproject fedora · xstream xstream
0.82EPSS
CVE-2023-36744
High 8.0

Microsoft Exchange Server Remote Code Execution Vulnerability

microsoft exchange_server
0.82EPSS
CVE-2010-3971
High 9.3

Use-after-free vulnerability in the CSharedStyleSheet::Notify function in the Cascading Style Sheets (CSS) parser in mshtml.dll, as used in Microsoft Internet Explorer 6 through 8 and other products, allows remote attackers to execute arbitrary code or cause a…

microsoft internet_explorer
0.82EPSS
CVE-2019-9513
High 7.5

Some HTTP/2 implementations are vulnerable to resource loops, potentially leading to a denial of service. The attacker creates multiple request streams and continually shuffles the priority of the streams in a way that causes substantial churn to the priority …

apache traffic_server · apple swiftnio · canonical ubuntu_linux · debian debian_linux · and 16 more
0.82EPSS
CVE-2009-1185
High 7.2

udev before 1.4.1 does not verify whether a NETLINK message originates from kernel space, which allows local users to gain privileges by sending a NETLINK message from user space.

canonical ubuntu_linux · debian debian_linux · fedoraproject fedora · juniper ctpview · and 5 more
0.82EPSS
CVE-2007-0774
High 7.5

Stack-based buffer overflow in the map_uri_to_worker function (native/common/jk_uri_worker_map.c) in mod_jk.so for Apache Tomcat JK Web Server Connector 1.2.19 and 1.2.20, as used in Tomcat 4.1.34 and 5.5.20, allows remote attackers to execute arbitrary code v…

apache tomcat_jk_web_server_connector
0.82EPSS
CVE-2019-10092
Medium 6.1

In Apache HTTP Server 2.4.0-2.4.39, a limited cross-site scripting issue was reported affecting the mod_proxy error page. An attacker could cause the link on the error page to be malformed and instead point to a page of their choice. This would only be exploit…

apache http_server · canonical ubuntu_linux · debian debian_linux · fedoraproject fedora · and 6 more
0.81EPSS
CVE-2023-32031
High 8.8

Microsoft Exchange Server Remote Code Execution Vulnerability

microsoft exchange_server
0.81EPSS
CVE-2003-0344
High 7.5

Buffer overflow in Microsoft Internet Explorer 5.01, 5.5, and 6.0 allows remote attackers to execute arbitrary code via / (slash) characters in the Type property of an Object tag in a web page.

microsoft ie · microsoft internet_explorer
0.81EPSS
CVE-2003-0822
High 7.5

Buffer overflow in the debug functionality in fp30reg.dll of Microsoft FrontPage Server Extensions (FPSE) 2000 and 2002 allows remote attackers to execute arbitrary code via a crafted chunked encoded request.

microsoft frontpage_server_extensions · microsoft sharepoint_team_services · microsoft windows_2000 · microsoft windows_xp
0.81EPSS
CVE-2023-36777
Medium 5.7

Microsoft Exchange Server Information Disclosure Vulnerability

microsoft exchange_server
0.81EPSS
CVE-2003-0719
High 7.5

Buffer overflow in the Private Communications Transport (PCT) protocol implementation in the Microsoft SSL library, as used in Microsoft Windows NT 4.0 SP6a, 2000 SP2 through SP4, XP SP1, Server 2003, NetMeeting, Windows 98, and Windows ME, allows remote attac…

microsoft netmeeting · microsoft windows_2000 · microsoft windows_2003_server · microsoft windows_98 · and 3 more
0.81EPSS
CVE-2011-5034
High 7.8

Apache Geronimo 2.2.1 and earlier computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted parameters. …

apache geronimo
0.81EPSS
CVE-2021-4104
High 7.5

JMSAppender in Log4j 1.2 is vulnerable to deserialization of untrusted data when the attacker has write access to the Log4j configuration. The attacker can provide TopicBindingName and TopicConnectionFactoryBindingName configurations causing JMSAppender to per…

apache log4j · fedoraproject fedora · oracle advanced_supply_chain_planning · oracle business_intelligence · and 42 more
0.81EPSS
CVE-2023-36745
High 8.0

Microsoft Exchange Server Remote Code Execution Vulnerability

microsoft exchange_server
0.81EPSS
CVE-2021-30128
Critical 9.8

Apache OFBiz has unsafe deserialization prior to 17.12.07 version

apache ofbiz
0.81EPSS
CVE-2013-4212
Medium 6.8

Certain getText methods in the ActionSupport controller in Apache Roller before 5.0.2 allow remote attackers to execute arbitrary OGNL expressions via the first or second parameter, as demonstrated by the pageTitle parameter in the !getPageTitle sub-URL to rol…

apache roller
0.81EPSS
CVE-2003-0812
High 7.5

Stack-based buffer overflow in a logging function for Windows Workstation Service (WKSSVC.DLL) allows remote attackers to execute arbitrary code via RPC calls that cause long entries to be written to a debug log file ("NetSetup.LOG"), as demonstrated using the…

microsoft windows_2000 · microsoft windows_xp
0.81EPSS
CVE-2022-34169
High 7.5

The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets. This can be used to corrupt Java class files generated by the internal XSLTC compiler and execute arbitrary Java bytecode. Users are rec…

apache xalan-java · azul zulu · debian debian_linux · fedoraproject fedora · and 12 more
0.81EPSS
CVE-2021-36749
Medium 6.5

In the Druid ingestion system, the InputSource is used for reading data from a certain data source. However, the HTTP InputSource allows authenticated users to read data from other sources than intended, such as the local file system, with the privileges of th…

apache druid
0.81EPSS
CVE-2022-31704
Critical 9.8

The vRealize Log Insight contains a broken access control vulnerability. An unauthenticated malicious actor can remotely inject code into sensitive files of an impacted appliance which can result in remote code execution.

vmware vrealize_log_insight
0.81EPSS
CVE-2021-38540
Critical 9.8

The variable import endpoint was not protected by authentication in Airflow >=2.0.0, <2.1.3. This allowed unauthenticated users to hit that endpoint to add/modify Airflow variables used in DAGs, potentially resulting in a denial of service, information disclos…

apache airflow
0.81EPSS