imPC@ndo EN

Vulnerabilità Apache

3261 CVE

CVE-2018-1312
Critica 9.8

In Apache httpd 2.2.0 to 2.4.29, when generating an HTTP Digest authentication challenge, the nonce sent to prevent reply attacks was not correctly generated using a pseudo-random seed. In a cluster of servers using a common Digest authentication configuration…

apache http_server · canonical ubuntu_linux · debian debian_linux · netapp cloud_backup · e altri 9
0.16EPSS
CVE-2020-1948
Critica 9.8

This vulnerability can affect all Dubbo users stay on version 2.7.6 or lower. An attacker can send RPC requests with unrecognized service name or method name along with some malicious parameter payloads. When the malicious parameter is deserialized, it will ex…

apache dubbo
0.16EPSS
CVE-2004-0173
Media 5.0

Directory traversal vulnerability in Apache 1.3.29 and earlier, and Apache 2.0.48 and earlier, when running on Cygwin, allows remote attackers to read arbitrary files via a URL containing "..%5C" (dot dot encoded backslash) sequences.

apache http_server
0.16EPSS
CVE-2004-0809
Media 5.0

The mod_dav module in Apache 2.0.50 and earlier allows remote attackers to cause a denial of service (child process crash) via a certain sequence of LOCK requests for a location that allows WebDAV authoring access.

apache http_server · debian debian_linux · gentoo linux · hp hp-ux · e altri 8
0.15EPSS
CVE-2016-1546
Media 5.9

The Apache HTTP Server 2.4.17 and 2.4.18, when mod_http2 is enabled, does not limit the number of simultaneous stream workers for a single HTTP/2 connection, which allows remote attackers to cause a denial of service (stream-processing outage) via modified flo…

apache http_server
0.15EPSS
CVE-2018-1301
Media 5.9

A specially crafted request could have crashed the Apache HTTP Server prior to version 2.4.30, due to an out of bound access after a size limit is reached by reading the HTTP header. This vulnerability is considered very hard if not impossible to trigger in no…

apache http_server · canonical ubuntu_linux · debian debian_linux · netapp clustered_data_ontap · e altri 4
0.15EPSS
CVE-2018-2799
Media 5.3

Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JAXP). Supported versions that are affected are Java SE: 7u171, 8u162 and 10; Java SE Embedded: 8u161; JRockit: R28.3.17. Easily exploitable vulnerability allows…

apache xerces-j · canonical ubuntu_linux · debian debian_linux · hp xp7_command_view · e altri 11
0.15EPSS
CVE-2021-21350
Media 5.3

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to execute arbitrary code only by manipulating the processed input stream. No user is affected, w…

apache activemq · apache jmeter · debian debian_linux · fedoraproject fedora · e altri 12
0.15EPSS
CVE-2011-3190
Alta 7.5

Certain AJP protocol connector implementations in Apache Tomcat 7.0.0 through 7.0.20, 6.0.0 through 6.0.33, 5.5.0 through 5.5.33, and possibly other versions allow remote attackers to spoof AJP requests, bypass authentication, and obtain sensitive information …

apache tomcat
0.15EPSS
CVE-2015-0224
Alta 7.5

qpidd in Apache Qpid 0.30 and earlier allows remote attackers to cause a denial of service (daemon crash) via a crafted protocol sequence set. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-0203.

apache qpid
0.15EPSS
CVE-2025-47411
Alta 8.1

A user with a legitimate non-administrator account can exploit a vulnerability in the user ID creation mechanism in Apache StreamPipes that allows them to swap the username of an existing user with that of an administrator.  This vulnerability allows an attac…

apache streampipes
0.15EPSS
CVE-2025-54466
Critica 9.8

Improper Control of Generation of Code ('Code Injection') vulnerability leading to a possible RCE in Apache OFBiz scrum plugin. This issue affects Apache OFBiz: before 24.09.02 only when the scrum plugin is used. Even unauthenticated attackers can exploit th…

apache ofbiz
0.15EPSS
CVE-2002-1156
Media 5.0

Apache 2.0.42 allows remote attackers to view the source code of a CGI script via a POST request to a directory with both WebDAV and CGI enabled.

apache http_server
0.15EPSS
CVE-2016-5003
Critica 9.8

The Apache XML-RPC (aka ws-xmlrpc) library 3.1.3, as used in Apache Archiva, allows remote attackers to execute arbitrary code via a crafted serialized Java object in an <ex:serializable> element.

apache ws-xmlrpc
0.15EPSS
CVE-2019-0195
Critica 9.8

Manipulating classpath asset file URLs, an attacker could guess the path to a known file in the classpath and have it downloaded. If the attacker found the file with the value of the tapestry.hmac-passphrase configuration symbol, most probably the webapp's App…

apache tapestry
0.15EPSS
CVE-2015-0253
Media 5.0

The read_request_line function in server/protocol.c in the Apache HTTP Server 2.4.12 does not initialize the protocol structure member, which allows remote attackers to cause a denial of service (NULL pointer dereference and process crash) by sending a request…

apache http_server · apple mac_os_x · apple mac_os_x_server · oracle linux · e altri 1
0.15EPSS
CVE-2003-0189
Media 5.0

The authentication module for Apache 2.0.40 through 2.0.45 on Unix does not properly handle threads safely when using the crypt_r or crypt functions, which allows remote attackers to cause a denial of service (failed Basic authentication with valid usernames a…

apache http_server
0.15EPSS
CVE-2008-0005
Media 4.3

mod_proxy_ftp in Apache 2.2.x before 2.2.7-dev, 2.0.x before 2.0.62-dev, and 1.3.x before 1.3.40-dev does not define a charset, which allows remote attackers to conduct cross-site scripting (XSS) attacks using UTF-7 encoding.

apache http_server · canonical ubuntu_linux · fedoraproject fedora
0.15EPSS
CVE-2014-3524
Alta 9.3

Apache OpenOffice before 4.1.1 allows remote attackers to execute arbitrary commands and possibly have other unspecified impact via a crafted Calc spreadsheet.

apache openoffice · libreoffice libreoffice
0.15EPSS
CVE-2021-43557
Alta 7.5

The uri-block plugin in Apache APISIX before 2.10.2 uses $request_uri without verification. The $request_uri is the full original request URI without normalization. This makes it possible to construct a URI to bypass the block list on some occasions. For insta…

apache apisix
0.15EPSS
CVE-2019-10081
Alta 7.5

HTTP/2 (2.4.20 through 2.4.39) very early pushes, for example configured with "H2PushResource", could lead to an overwrite of memory in the pushing request's pool, leading to crashes. The memory copied is that of the configured push link header values, not dat…

apache http_server · debian debian_linux
0.15EPSS
CVE-2018-1305
Media 6.5

Security constraints defined by annotations of Servlets in Apache Tomcat 9.0.0.M1 to 9.0.4, 8.5.0 to 8.5.27, 8.0.0.RC1 to 8.0.49 and 7.0.0 to 7.0.84 were only applied once a Servlet had been loaded. Because security constraints defined in this way apply to the…

apache tomcat · canonical ubuntu_linux · debian debian_linux · oracle fusion_middleware · e altri 2
0.14EPSS
CVE-2023-47248
Critica 9.8

Deserialization of untrusted data in IPC and Parquet readers in PyArrow versions 0.14.0 to 14.0.0 allows arbitrary code execution. An application is vulnerable if it reads Arrow IPC, Feather or Parquet data from untrusted sources (for example user-supplied inp…

apache pyarrow
0.14EPSS
CVE-2015-3188
Critica 9.8

The UI daemon in Apache Storm 0.10.0 before 0.10.0-beta1 allows remote attackers to execute arbitrary code via unspecified vectors.

apache storm
0.14EPSS
CVE-2021-28359
Media 6.1

The "origin" parameter passed to some of the endpoints like '/trigger' was vulnerable to XSS exploit. This issue affects Apache Airflow versions <1.10.15 in 1.x series and affects 2.0.0 and 2.0.1 and 2.x series. This is the same as CVE-2020-13944 & CVE-2020-17…

apache airflow
0.14EPSS