imPC@ndo EN

Vulnerabilità Apache

3261 CVE

CVE-2024-36104
Critica 9.1

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Apache OFBiz. This issue affects Apache OFBiz: before 18.12.14. Users are recommended to upgrade to version 18.12.14, which fixes the issue.

apache ofbiz
0.87EPSS
CVE-2019-9515
Alta 7.5

Some HTTP/2 implementations are vulnerable to a settings flood, potentially leading to a denial of service. The attacker sends a stream of SETTINGS frames to the peer. Since the RFC requires that the peer reply with one acknowledgement per SETTINGS frame, an e…

apache traffic_server · apple swiftnio · canonical ubuntu_linux · debian debian_linux · e altri 18
0.87EPSS
CVE-2009-3555
Critica 9.8

The TLS protocol, and the SSL protocol 3.0 and possibly earlier, as used in Microsoft Internet Information Services (IIS) 7.0, mod_ssl in the Apache HTTP Server 2.2.14 and earlier, OpenSSL before 0.9.8l, GnuTLS 2.8.5 and earlier, Mozilla Network Security Servi…

apache http_server · canonical ubuntu_linux · debian debian_linux · f5 nginx · e altri 4
0.87EPSS
CVE-2017-12611
Critica 9.8

In Apache Struts 2.0.0 through 2.3.33 and 2.5 through 2.5.10.1, using an unintentional expression in a Freemarker tag instead of string literals can lead to a RCE attack.

apache struts
0.87EPSS
CVE-1999-0067
Alta 10.0

phf CGI program allows remote command execution through shell metacharacters.

apache http_server · ncsa ncsa_httpd
0.87EPSS
CVE-2020-13935
Alta 7.5

The payload length in a WebSocket frame was not correctly validated in Apache Tomcat 10.0.0-M1 to 10.0.0-M6, 9.0.0.M1 to 9.0.36, 8.5.0 to 8.5.56 and 7.0.27 to 7.0.104. Invalid payload lengths could trigger an infinite loop. Multiple requests with invalid paylo…

apache tomcat · canonical ubuntu_linux · debian debian_linux · mcafee epolicy_orchestrator · e altri 14
0.87EPSS
CVE-2021-27907
Media 5.4

Apache Superset up to and including 0.38.0 allowed the creation of a Markdown component on a Dashboard page for describing chart's related information. Abusing this functionality, a malicious user could inject javascript code executing unwanted action in the c…

apache superset
0.86EPSS
CVE-2003-0132
Media 5.0

A memory leak in Apache 2.0 through 2.0.44 allows remote attackers to cause a denial of service (memory consumption) via large chunks of linefeed characters, which causes Apache to allocate 80 bytes for each linefeed.

apache http_server
0.86EPSS
CVE-2021-45232
Critica 9.8

In Apache APISIX Dashboard before 2.10.1, the Manager API uses two frameworks and introduces framework `droplet` on the basis of framework `gin`, all APIs and authentication middleware are developed based on framework `droplet`, but some API directly use the i…

apache apisix_dashboard
0.86EPSS
CVE-2020-17523
Critica 9.8

Apache Shiro before 1.7.1, when using Apache Shiro with Spring, a specially crafted HTTP request may cause an authentication bypass.

apache shiro
0.86EPSS
CVE-2022-41678
Alta 8.8

Once an user is authenticated on Jolokia, he can potentially trigger arbitrary code execution.  In details, in ActiveMQ configurations, jetty allows org.jolokia.http.AgentServlet to handler request to /api/jolokia org.jolokia.http.HttpRequestHandler#handlePo…

apache activemq
0.86EPSS
CVE-2014-0226
Media 6.8

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted requ…

apache http_server · debian debian_linux · oracle enterprise_manager_ops_center · oracle http_server · e altri 2
0.86EPSS
CVE-2017-15715
Alta 8.1

In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are…

apache http_server · canonical ubuntu_linux · debian debian_linux · netapp clustered_data_ontap · e altri 4
0.86EPSS
CVE-2022-40127
Alta 8.8

A vulnerability in Example Dags of Apache Airflow allows an attacker with UI access who can trigger DAGs, to execute arbitrary commands via manually provided run_id parameter. This issue affects Apache Airflow Apache Airflow versions prior to 2.4.0.

apache airflow
0.86EPSS
CVE-2021-31805
Critica 9.8

The fix issued for CVE-2020-17530 was incomplete. So from Apache Struts 2.0.0 to 2.5.29, still some of the tag’s attributes could perform a double evaluation if a developer applied forced OGNL evaluation by using the %{...} syntax. Using forced OGNL evaluation…

apache struts
0.85EPSS
CVE-2022-28730
Media 6.1

A carefully crafted request on AJAXPreview.jsp could trigger an XSS vulnerability on Apache JSPWiki, which could allow the attacker to execute javascript in the victim's browser and get some sensitive information about the victim. This vulnerability leverages …

apache jspwiki
0.85EPSS
CVE-2022-27166
Media 6.1

A carefully crafted request on XHRHtml2Markup.jsp could trigger an XSS vulnerability on Apache JSPWiki up to and including 2.11.2, which could allow the attacker to execute javascript in the victim's browser and get some sensitive information about the victim.…

apache jspwiki
0.85EPSS
CVE-1999-1053
Alta 7.5

guestbook.pl cleanses user-inserted SSI commands by removing text between "<!--" and "-->" separators, which allows remote attackers to execute arbitrary commands when guestbook.pl is run on Apache 1.3.9 and possibly other versions, since Apache allows other c…

apache http_server · matt_wright matt_wright_guestbook
0.85EPSS
CVE-2020-26217
Alta 8.0

XStream before version 1.4.14 is vulnerable to Remote Code Execution.The vulnerability may allow a remote attacker to run arbitrary shell commands only by manipulating the processed input stream. Only users who rely on blocklists are affected. Anyone using XSt…

apache activemq · debian debian_linux · netapp snapmanager · oracle banking_cash_management · e altri 11
0.85EPSS
CVE-2004-0493
Media 6.4

The ap_get_mime_headers_core function in Apache httpd 2.0.49 allows remote attackers to cause a denial of service (memory exhaustion), and possibly an integer signedness error leading to a heap-based buffer overflow on 64 bit systems, via long header lines wit…

apache http_server · avaya converged_communications_server · avaya s8300 · avaya s8500 · e altri 4
0.85EPSS
CVE-2022-24697
Critica 9.8

Kylin's cube designer function has a command injection vulnerability when overwriting system parameters in the configuration overwrites menu. RCE can be implemented by closing the single quotation marks around the parameter value of “-- conf=” to inject any op…

apache kylin
0.85EPSS
CVE-2021-38294
Critica 9.8

A Command Injection vulnerability exists in the getTopologyHistory service of the Apache Storm 2.x prior to 2.2.1 and Apache Storm 1.x prior to 1.2.4. A specially crafted thrift request to the Nimbus server allows Remote Code Execution (RCE) prior to authentic…

apache storm
0.84EPSS
CVE-2015-1830
Media 5.0

Directory traversal vulnerability in the fileserver upload/download functionality for blob messages in Apache ActiveMQ 5.x before 5.11.2 for Windows allows remote attackers to create JSP files in arbitrary directories via unspecified vectors.

apache activemq
0.84EPSS
CVE-2013-7285
Critica 9.8

Xstream API versions up to 1.4.6 and version 1.4.10, if the security framework has not been initialized, may allow a remote attacker to run arbitrary shell commands by manipulating the processed input stream when unmarshaling XML or any supported format. e.g. …

apache activemq · oracle endeca_information_discovery_studio · xstream xstream
0.84EPSS
CVE-2023-50386
Alta 8.8

Improper Control of Dynamically-Managed Code Resources, Unrestricted Upload of File with Dangerous Type, Inclusion of Functionality from Untrusted Control Sphere vulnerability in Apache Solr.This issue affects Apache Solr: from 6.0.0 through 8.11.2, from 9.0.0…

apache solr
0.84EPSS