imPC@ndo EN

CVE Tracker

56.413 CVE

CVE-2023-46263
Critica 9.8

An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.4.1 and below that could allow an attacker to achieve a remote code execution.

ivanti avalanche
0.82EPSS
CVE-2024-9464
Media 6.5

An OS command injection vulnerability in Palo Alto Networks Expedition allows an authenticated attacker to run arbitrary OS commands as root in Expedition, resulting in disclosure of usernames, cleartext passwords, device configurations, and device API keys of…

paloaltonetworks expedition
0.82EPSS
CVE-2022-45402
Media 6.1

In Apache Airflow versions prior to 2.4.3, there was an open redirect in the webserver's `/login` endpoint.

apache airflow
0.82EPSS
CVE-2020-26258
Media 6.3

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.15, a Server-Side Forgery Request vulnerability can be activated when unmarshalling. The vulnerability may allow a remote attacker to request data from internal…

apache struts · debian debian_linux · fedoraproject fedora · xstream xstream
0.82EPSS
CVE-2023-36744
Alta 8.0

Microsoft Exchange Server Remote Code Execution Vulnerability

microsoft exchange_server
0.82EPSS
CVE-2010-3971
Alta 9.3

Use-after-free vulnerability in the CSharedStyleSheet::Notify function in the Cascading Style Sheets (CSS) parser in mshtml.dll, as used in Microsoft Internet Explorer 6 through 8 and other products, allows remote attackers to execute arbitrary code or cause a…

microsoft internet_explorer
0.82EPSS
CVE-2019-9513
Alta 7.5

Some HTTP/2 implementations are vulnerable to resource loops, potentially leading to a denial of service. The attacker creates multiple request streams and continually shuffles the priority of the streams in a way that causes substantial churn to the priority …

apache traffic_server · apple swiftnio · canonical ubuntu_linux · debian debian_linux · e altri 16
0.82EPSS
CVE-2009-1185
Alta 7.2

udev before 1.4.1 does not verify whether a NETLINK message originates from kernel space, which allows local users to gain privileges by sending a NETLINK message from user space.

canonical ubuntu_linux · debian debian_linux · fedoraproject fedora · juniper ctpview · e altri 5
0.82EPSS
CVE-2007-0774
Alta 7.5

Stack-based buffer overflow in the map_uri_to_worker function (native/common/jk_uri_worker_map.c) in mod_jk.so for Apache Tomcat JK Web Server Connector 1.2.19 and 1.2.20, as used in Tomcat 4.1.34 and 5.5.20, allows remote attackers to execute arbitrary code v…

apache tomcat_jk_web_server_connector
0.82EPSS
CVE-2019-10092
Media 6.1

In Apache HTTP Server 2.4.0-2.4.39, a limited cross-site scripting issue was reported affecting the mod_proxy error page. An attacker could cause the link on the error page to be malformed and instead point to a page of their choice. This would only be exploit…

apache http_server · canonical ubuntu_linux · debian debian_linux · fedoraproject fedora · e altri 6
0.81EPSS
CVE-2023-32031
Alta 8.8

Microsoft Exchange Server Remote Code Execution Vulnerability

microsoft exchange_server
0.81EPSS
CVE-2003-0344
Alta 7.5

Buffer overflow in Microsoft Internet Explorer 5.01, 5.5, and 6.0 allows remote attackers to execute arbitrary code via / (slash) characters in the Type property of an Object tag in a web page.

microsoft ie · microsoft internet_explorer
0.81EPSS
CVE-2003-0822
Alta 7.5

Buffer overflow in the debug functionality in fp30reg.dll of Microsoft FrontPage Server Extensions (FPSE) 2000 and 2002 allows remote attackers to execute arbitrary code via a crafted chunked encoded request.

microsoft frontpage_server_extensions · microsoft sharepoint_team_services · microsoft windows_2000 · microsoft windows_xp
0.81EPSS
CVE-2023-36777
Media 5.7

Microsoft Exchange Server Information Disclosure Vulnerability

microsoft exchange_server
0.81EPSS
CVE-2003-0719
Alta 7.5

Buffer overflow in the Private Communications Transport (PCT) protocol implementation in the Microsoft SSL library, as used in Microsoft Windows NT 4.0 SP6a, 2000 SP2 through SP4, XP SP1, Server 2003, NetMeeting, Windows 98, and Windows ME, allows remote attac…

microsoft netmeeting · microsoft windows_2000 · microsoft windows_2003_server · microsoft windows_98 · e altri 3
0.81EPSS
CVE-2011-5034
Alta 7.8

Apache Geronimo 2.2.1 and earlier computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted parameters. …

apache geronimo
0.81EPSS
CVE-2021-4104
Alta 7.5

JMSAppender in Log4j 1.2 is vulnerable to deserialization of untrusted data when the attacker has write access to the Log4j configuration. The attacker can provide TopicBindingName and TopicConnectionFactoryBindingName configurations causing JMSAppender to per…

apache log4j · fedoraproject fedora · oracle advanced_supply_chain_planning · oracle business_intelligence · e altri 42
0.81EPSS
CVE-2023-36745
Alta 8.0

Microsoft Exchange Server Remote Code Execution Vulnerability

microsoft exchange_server
0.81EPSS
CVE-2021-30128
Critica 9.8

Apache OFBiz has unsafe deserialization prior to 17.12.07 version

apache ofbiz
0.81EPSS
CVE-2013-4212
Media 6.8

Certain getText methods in the ActionSupport controller in Apache Roller before 5.0.2 allow remote attackers to execute arbitrary OGNL expressions via the first or second parameter, as demonstrated by the pageTitle parameter in the !getPageTitle sub-URL to rol…

apache roller
0.81EPSS
CVE-2003-0812
Alta 7.5

Stack-based buffer overflow in a logging function for Windows Workstation Service (WKSSVC.DLL) allows remote attackers to execute arbitrary code via RPC calls that cause long entries to be written to a debug log file ("NetSetup.LOG"), as demonstrated using the…

microsoft windows_2000 · microsoft windows_xp
0.81EPSS
CVE-2022-34169
Alta 7.5

The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets. This can be used to corrupt Java class files generated by the internal XSLTC compiler and execute arbitrary Java bytecode. Users are rec…

apache xalan-java · azul zulu · debian debian_linux · fedoraproject fedora · e altri 12
0.81EPSS
CVE-2021-36749
Media 6.5

In the Druid ingestion system, the InputSource is used for reading data from a certain data source. However, the HTTP InputSource allows authenticated users to read data from other sources than intended, such as the local file system, with the privileges of th…

apache druid
0.81EPSS
CVE-2022-31704
Critica 9.8

The vRealize Log Insight contains a broken access control vulnerability. An unauthenticated malicious actor can remotely inject code into sensitive files of an impacted appliance which can result in remote code execution.

vmware vrealize_log_insight
0.81EPSS
CVE-2021-38540
Critica 9.8

The variable import endpoint was not protected by authentication in Airflow >=2.0.0, <2.1.3. This allowed unauthenticated users to hit that endpoint to add/modify Airflow variables used in DAGs, potentially resulting in a denial of service, information disclos…

apache airflow
0.81EPSS