imPC@ndo EN

CVE Tracker

56.413 CVE

CVE-2017-9798
Alta 7.5

Apache httpd allows remote attackers to read secret data from process memory if the Limit directive can be set in a user's .htaccess file, or if httpd.conf has certain misconfigurations, aka Optionsbleed. This affects the Apache HTTP Server through 2.2.34 and …

apache http_server · debian debian_linux
0.95EPSS
CVE-2006-3918
Media 4.3

http_protocol.c in (1) IBM HTTP Server 6.0 before 6.0.2.13 and 6.1 before 6.1.0.1, and (2) Apache HTTP Server 1.3 before 1.3.35, 2.0 before 2.0.58, and 2.2 before 2.2.2, does not sanitize the Expect header from an HTTP request when it is reflected back in an e…

apache http_server · canonical ubuntu_linux · debian debian_linux · redhat enterprise_linux_server · e altri 1
0.95EPSS
CVE-2019-11478
Media 5.3

Jonathan Looney discovered that the TCP retransmission queue implementation in tcp_fragment in the Linux kernel could be fragmented when handling certain TCP Selective Acknowledgment (SACK) sequences. A remote attacker could use this to cause a denial of servi…

canonical ubuntu_linux · f5 big-ip_access_policy_manager · f5 big-ip_advanced_firewall_manager · f5 big-ip_analytics · e altri 20
0.95EPSS
CVE-2023-24941
Critica 9.8

Windows Network File System Remote Code Execution Vulnerability

microsoft windows_server_2012 · microsoft windows_server_2016 · microsoft windows_server_2019 · microsoft windows_server_2022
0.95EPSS
CVE-2013-2248
Media 5.8

Multiple open redirect vulnerabilities in Apache Struts 2.0.0 through 2.3.15 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in a parameter using the (1) redirect: or (2) redirectAction: prefix.

apache struts
0.95EPSS
CVE-2024-31309
Alta 7.5

HTTP/2 CONTINUATION DoS attack can cause Apache Traffic Server to consume more resources on the server.  Version from 8.0.0 through 8.1.9, from 9.0.0 through 9.2.3 are affected. Users can set a new setting (proxy.config.http2.max_continuation_frames_per_minut…

apache traffic_server · debian debian_linux · fedoraproject fedora
0.95EPSS
CVE-2014-0515
Alta 10.0

Buffer overflow in Adobe Flash Player before 11.7.700.279 and 11.8.x through 13.0.x before 13.0.0.206 on Windows and OS X, and before 11.2.202.356 on Linux, allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in …

adobe flash_player
0.95EPSS
CVE-2010-3972
Alta 10.0

Heap-based buffer overflow in the TELNET_STREAM_CONTEXT::OnSendData function in ftpsvc.dll in Microsoft FTP Service 7.0 and 7.5 for Internet Information Services (IIS) 7.0, and IIS 7.5, allows remote attackers to execute arbitrary code or cause a denial of ser…

microsoft internet_information_services
0.95EPSS
CVE-2018-11784
Media 4.3

When the default servlet in Apache Tomcat versions 9.0.0.M1 to 9.0.11, 8.5.0 to 8.5.33 and 7.0.23 to 7.0.90 returned a redirect to a directory (e.g. redirecting to '/foo/' when the user requested '/foo') a specially crafted URL could be used to cause the redir…

apache tomcat · canonical ubuntu_linux · debian debian_linux · netapp snap_creator_framework · e altri 11
0.94EPSS
CVE-2009-0580
Media 4.3

Apache Tomcat 4.1.0 through 4.1.39, 5.5.0 through 5.5.27, and 6.0.0 through 6.0.18, when FORM authentication is used, allows remote attackers to enumerate valid usernames via requests to /j_security_check with malformed URL encoding of passwords, related to im…

apache tomcat
0.94EPSS
CVE-2010-0425
Alta 10.0

modules/arch/win32/mod_isapi.c in mod_isapi in the Apache HTTP Server 2.0.37 through 2.0.63, 2.2.0 through 2.2.14, and 2.3.x before 2.3.7, when running on Windows, does not ensure that request processing is complete before calling isapi_unload for an ISAPI .dl…

apache http_server · broadcom vmware_ace_management_server · ibm http_server · ibm websphere_application_server · e altri 1
0.94EPSS
CVE-2018-1335
Alta 8.1

From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted headers to tika-server that could be used to inject commands into the command line of the server running tika-server. This vulnerability only affects those running tika-server on a ser…

apache tika
0.94EPSS
CVE-2010-3964
Alta 7.5

Unrestricted file upload vulnerability in the Document Conversions Launcher Service in Microsoft Office SharePoint Server 2007 SP2, when the Document Conversions Load Balancer Service is enabled, allows remote attackers to execute arbitrary code via a crafted …

microsoft sharepoint_server
0.94EPSS
CVE-2021-41349
Media 6.5

Microsoft Exchange Server Spoofing Vulnerability

microsoft exchange_server
0.94EPSS
CVE-2021-27850
Critica 9.8

A critical unauthenticated remote code execution vulnerability was found all recent versions of Apache Tapestry. The affected versions include 5.4.5, 5.5.0, 5.6.2 and 5.7.0. The vulnerability I have found is a bypass of the fix for CVE-2019-0195. Recap: Before…

apache tapestry
0.94EPSS
CVE-2023-28302
Alta 7.5

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

microsoft windows_10_1607 · microsoft windows_10_1809 · microsoft windows_10_20h2 · microsoft windows_10_21h2 · e altri 8
0.94EPSS
CVE-2013-1965
Alta 9.3

Apache Struts Showcase App 2.0.0 through 2.3.13, as used in Struts 2 before 2.3.14.3, allows remote attackers to execute arbitrary OGNL code via a crafted parameter name that is not properly handled when invoking a redirect.

apache struts · apache struts2-showcase
0.93EPSS
CVE-2024-45507
Critica 9.8

Server-Side Request Forgery (SSRF), Improper Control of Generation of Code ('Code Injection') vulnerability in Apache OFBiz. This issue affects Apache OFBiz: before 18.12.16. Users are recommended to upgrade to version 18.12.16, which fixes the issue.

apache ofbiz
0.93EPSS
CVE-2023-48795
Media 5.9

The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client and server …

9bis kitty · apache sshd · apache sshj · apple macos · e altri 64
0.93EPSS
CVE-2026-43284
Alta 8.8

In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: avoid in-place decrypt on shared skb frags MSG_SPLICE_PAGES can attach pages from a pipe directly to an skb. TCP marks such skbs with SKBFL_SHARED_FRAG after skb_splice_from_iter(…

linux linux_kernel
0.93EPSS
CVE-2012-1425
Media 4.3

The TAR file parser in Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, Quick Heal (aka Cat QuickHeal) 11.00, Emsisoft Anti-Malware 5.1.0.1, Fortinet Antivirus 4.2.254.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Jiangmin Antivirus 13.0.900…

antiy avl_sdk · avira antivir · cat quick_heal · emsisoft anti-malware · e altri 12
0.93EPSS
CVE-2021-27905
Critica 9.8

The ReplicationHandler (normally registered at "/replication" under a Solr core) in Apache Solr has a "masterUrl" (also "leaderUrl" alias) parameter that is used to designate another ReplicationHandler on another Solr core to replicate index data into the loca…

apache solr
0.93EPSS
CVE-2005-1983
Alta 10.0

Stack-based buffer overflow in the Plug and Play (PnP) service for Microsoft Windows 2000 and Windows XP Service Pack 1 allows remote attackers to execute arbitrary code via a crafted packet, and local users to gain privileges via a malicious application, as e…

microsoft windows_2000 · microsoft windows_xp
0.93EPSS
CVE-2016-3081
Alta 8.1

Apache Struts 2.3.19 to 2.3.20.2, 2.3.21 to 2.3.24.1, and 2.3.25 to 2.3.28, when Dynamic Method Invocation is enabled, allow remote attackers to execute arbitrary code via method: prefix, related to chained expressions.

apache struts · oracle siebel_e-billing
0.93EPSS
CVE-2026-43500
Alta 7.8

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present The DATA-packet handler in rxrpc_input_call_event() and the RESPONSE handler in rxrpc_verify_response() copy the skb to…

linux linux_kernel
0.93EPSS