imPC@ndo IT

Apache vulnerabilities

3268 CVE

CVE-2017-5656
High 7.5

Apache CXF's STSClient before 3.1.11 and 3.0.13 uses a flawed way of caching tokens that are associated with delegation tokens, which means that an attacker could craft a token which would return an identifer corresponding to a cached token for another user.

apache cxf
0.07EPSS
CVE-2016-2167
Medium 6.8

The canonicalize_username function in svnserve/cyrus_auth.c in Apache Subversion before 1.8.16 and 1.9.x before 1.9.4, when Cyrus SASL authentication is used, allows remote attackers to authenticate and bypass intended access restrictions via a realm string th…

apache subversion
0.07EPSS
CVE-2004-0811
High 7.5

Unknown vulnerability in Apache 2.0.51 prevents "the merging of the Satisfy directive," which could allow attackers to obtain access to restricted resources contrary to the specified authentication configuration.

apache http_server
0.07EPSS
CVE-2020-11985
Medium 5.3

IP address spoofing when proxying using mod_remoteip and mod_rewrite For configurations using proxying with mod_remoteip and certain mod_rewrite rules, an attacker could spoof their IP address for logging and PHP scripts. Note this issue was fixed in Apache HT…

apache http_server
0.07EPSS
CVE-2013-1880
Medium 4.3

Cross-site scripting (XSS) vulnerability in the Portfolio publisher servlet in the demo web application in Apache ActiveMQ before 5.9.0 allows remote attackers to inject arbitrary web script or HTML via the refresh parameter to demo/portfolioPublish, a differe…

apache activemq
0.07EPSS
CVE-2018-8018
Critical 9.8

In Apache Ignite before 2.4.8 and 2.5.x before 2.5.3, the serialization mechanism does not have a list of classes allowed for serialization/deserialization, which makes it possible to run arbitrary code when 3-rd party vulnerable classes are present in Ignite …

apache ignite
0.07EPSS
CVE-2016-2099
Critical 9.8

Use-after-free vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerces C++ 3.1.3 and earlier allows context-dependent attackers to have unspecified impact via an invalid character in an XML document.

apache xerces-c\+\+ · opensuse opensuse
0.07EPSS
CVE-2020-13949
High 7.5

In Apache Thrift 0.9.3 to 0.13.0, malicious RPC clients could send short messages which would result in a large memory allocation, potentially leading to denial of service.

apache hive · apache thrift · oracle communications_cloud_native_core_network_slice_selection_function · oracle communications_cloud_native_core_policy
0.07EPSS
CVE-2001-0729
Medium 5.0

Apache 1.3.20 on Windows servers allows remote attackers to bypass the default index page and list directory contents via a URL with a large number of / (slash) characters.

apache http_server
0.07EPSS
CVE-2011-1783
Medium 4.3

The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion 1.5.x and 1.6.x before 1.6.17, when the SVNPathAuthz short_circuit option is enabled, allows remote attackers to cause a denial of service (infinite loop and memory consumpt…

apache subversion · apple mac_os_x · canonical ubuntu_linux · debian debian_linux · and 1 more
0.07EPSS
CVE-2013-1846
Medium 4.0

The mod_dav_svn Apache HTTPD server module in Subversion 1.6.x before 1.6.21 and 1.7.0 through 1.7.8 allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) via a LOCK on an activity URL.

apache subversion · opensuse opensuse
0.07EPSS
CVE-2011-3375
Medium 5.0

Apache Tomcat 6.0.30 through 6.0.33 and 7.x before 7.0.22 does not properly perform certain caching and recycling operations involving request objects, which allows remote attackers to obtain unintended read access to IP address and HTTP header information in …

apache tomcat
0.07EPSS
CVE-2011-1498
Medium 4.3

Apache HttpClient 4.x before 4.1.1 in Apache HttpComponents, when used with an authenticating proxy server, sends the Proxy-Authorization header to the origin server, which allows remote web servers to obtain sensitive information by logging this header.

apache httpclient
0.07EPSS
CVE-2007-0451
Medium 4.3

Apache SpamAssassin before 3.1.8 allows remote attackers to cause a denial of service via long URLs in malformed HTML, which triggers "massive memory usage."

apache spamassassin
0.07EPSS
CVE-2020-11988
High 8.2

Apache XmlGraphics Commons 2.4 and earlier is vulnerable to server-side request forgery, caused by improper input validation by the XMPParser. By using a specially-crafted argument, an attacker could exploit this vulnerability to cause the underlying server to…

apache xmlgraphics_commons · fedoraproject fedora
0.07EPSS
CVE-2015-0225
High 7.5

The default configuration in Apache Cassandra 1.2.0 through 1.2.19, 2.0.0 through 2.0.13, and 2.1.0 through 2.1.3 binds an unauthenticated JMX/RMI interface to all network interfaces, which allows remote attackers to execute arbitrary Java code via an RMI requ…

apache cassandra
0.07EPSS
CVE-2011-5063
Medium 4.3

The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 does not check realm values, which might allow remote attackers to bypass intended access restrictions by leveraging the availab…

apache tomcat
0.07EPSS
CVE-2015-0223
Medium 5.0

Unspecified vulnerability in Apache Qpid 0.30 and earlier allows remote attackers to bypass access restrictions on qpidd via unknown vectors, related to 0-10 connection handling.

apache qpid
0.07EPSS
CVE-2021-22696
High 7.5

CXF supports (via JwtRequestCodeFilter) passing OAuth 2 parameters via a JWT token as opposed to query parameters (see: The OAuth 2.0 Authorization Framework: JWT Secured Authorization Request (JAR)). Instead of sending a JWT token as a "request" parameter, th…

apache cxf · oracle business_intelligence · oracle communications_diameter_intelligence_hub · oracle communications_element_manager · and 2 more
0.07EPSS
CVE-2013-1879
Medium 4.3

Cross-site scripting (XSS) vulnerability in scheduled.jsp in Apache ActiveMQ 5.8.0 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors involving the "cron of a message."

apache activemq
0.07EPSS
CVE-2020-11973
Critical 9.8

Apache Camel Netty enables Java deserialization by default. Apache Camel 2.22.x, 2.23.x, 2.24.x, 2.25.0, 3.0.0 up to 3.1.0 are affected. 2.x users should upgrade to 2.25.1, 3.x users should upgrade to 3.2.0.

apache camel · oracle communications_diameter_signaling_router · oracle enterprise_manager_base_platform · oracle flexcube_private_banking
0.07EPSS
CVE-2003-1418
Medium 4.3

Apache HTTP Server 1.3.22 through 1.3.27 on OpenBSD allows remote attackers to obtain sensitive information via (1) the ETag header, which reveals the inode number, or (2) multipart MIME boundary, which reveals child process IDs (PID).

apache http_server
0.07EPSS
CVE-2011-5064
Medium 4.3

DigestAuthenticator.java in the HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 uses Catalina as the hard-coded server secret (aka private key), which makes it easier for remote at…

apache tomcat
0.07EPSS
CVE-2021-37579
Critical 9.8

The Dubbo Provider will check the incoming request and the corresponding serialization type of this request meet the configuration set by the server. But there's an exception that the attacker can use to skip the security check (when enabled) and reaching a de…

apache dubbo
0.07EPSS
CVE-2021-30638
High 7.5

Information Exposure vulnerability in context asset handling of Apache Tapestry allows an attacker to download files inside WEB-INF if using a specially-constructed URL. This was caused by an incomplete fix for CVE-2020-13953. This issue affects Apache Tapestr…

apache tapestry
0.07EPSS