imPC@ndo EN

Vulnerabilità Apache

3268 CVE

CVE-2012-0256
Media 5.0

Apache Traffic Server 2.0.x and 3.0.x before 3.0.4 and 3.1.x before 3.1.3 does not properly allocate heap memory, which allows remote attackers to cause a denial of service (daemon crash) via a long HTTP Host header.

apache traffic_server
0.03EPSS
CVE-2015-5204
Media 4.3

CRLF injection vulnerability in the Apache Cordova File Transfer Plugin (cordova-plugin-file-transfer) for Android before 1.3.0 allows remote attackers to inject arbitrary headers via CRLF sequences in the filename of an uploaded file.

apache cordova_file_transfer
0.03EPSS
CVE-2018-1290
Critica 9.8

In Apache Fineract versions 1.0.0, 0.6.0-incubating, 0.5.0-incubating, 0.4.0-incubating, Using a single quotation escape with two continuous SQL parameters can cause a SQL injection. This could be done in Methods like retrieveAuditEntries of AuditsApiResource …

apache fineract
0.03EPSS
CVE-2018-8015
Alta 7.5

In Apache ORC 1.0.0 to 1.4.3 a malformed ORC file can trigger an endlessly recursive function call in the C++ or Java parser. The impact of this bug is most likely denial-of-service against software that uses the ORC file parser. With the C++ parser, the stack…

apache orc
0.03EPSS
CVE-2021-29621
Media 5.3

Flask-AppBuilder is a development framework, built on top of Flask. User enumeration in database authentication in Flask-AppBuilder <= 3.2.3. Allows for a non authenticated user to enumerate existing accounts by timing the response time from the server when yo…

apache airflow · dpgaspar flask-appbuilder
0.03EPSS
CVE-2020-17514
Alta 7.4

Apache Fineract prior to 1.5.0 disables HTTPS hostname verification in ProcessorHelper in the configureClient method. Under typical deployments, a man in the middle attack could be successful.

apache fineract
0.03EPSS
CVE-2021-30129
Media 6.5

A vulnerability in sshd-core of Apache Mina SSHD allows an attacker to overflow the server causing an OutOfMemory error. This issue affects the SFTP and port forwarding features of Apache Mina SSHD version 2.0.0 and later versions. It was addressed in Apache M…

apache sshd · oracle banking_payments · oracle banking_trade_finance · oracle banking_treasury_management · e altri 5
0.03EPSS
CVE-2019-10074
Critica 9.8

An RCE is possible by entering Freemarker markup in an Apache OFBiz Form Widget textarea field when encoding has been disabled on such a field. This was the case for the Customer Request "story" input in the Order Manager application. Encoding should not be di…

apache ofbiz
0.03EPSS
CVE-2017-7678
Media 6.1

In Apache Spark before 2.2.0, it is possible for an attacker to take advantage of a user's trust in the server to trick them into visiting a link that points to a shared Spark cluster and submits data including MHTML to the Spark master, or history server. Thi…

apache spark
0.03EPSS
CVE-2021-40439
Media 6.5

Apache OpenOffice has a dependency on expat software. Versions prior to 2.1.0 were subject to CVE-2013-0340 a "Billion Laughs" entity expansion denial of service attack and exploit via crafted XML files. ODF files consist of a set of XML files. All versions of…

apache openoffice
0.03EPSS
CVE-2018-1287
Critica 9.8

In Apache JMeter 2.X and 3.X, when using Distributed Test only (RMI based), jmeter server binds RMI Registry to wildcard host. This could allow an attacker to get Access to JMeterEngine and send unauthorized code.

apache jmeter
0.03EPSS
CVE-2022-31813
Critica 9.8

Apache HTTP Server 2.4.53 and earlier may not send the X-Forwarded-* headers to the origin server based on client side Connection header hop-by-hop mechanism. This may be used to bypass IP based authentication on the origin server/application.

apache http_server · fedoraproject fedora · netapp clustered_data_ontap
0.03EPSS
CVE-2021-27906
Media 5.5

A carefully crafted PDF file can trigger an OutOfMemory-Exception while loading the file. This issue affects Apache PDFBox version 2.0.22 and prior 2.0.x versions.

apache pdfbox · fedoraproject fedora · oracle banking_corporate_lending_process_management · oracle banking_credit_facilities_process_management · e altri 15
0.03EPSS
CVE-2012-4386
Media 6.8

The token check mechanism in Apache Struts 2.0.0 through 2.3.4 does not properly validate the token name configuration parameter, which allows remote attackers to perform cross-site request forgery (CSRF) attacks by setting the token name configuration paramet…

apache struts
0.03EPSS
CVE-2021-28131
Alta 7.5

Impala sessions use a 16 byte secret to verify that the session is not being hijacked by another user. However, these secrets appear in the Impala logs, therefore Impala users with access to the logs can use another authenticated user's sessions with specially…

apache impala
0.03EPSS
CVE-2022-23942
Alta 7.5

Apache Doris, prior to 1.0.0, used a hardcoded key and IV to initialize the cipher used for ldap password, which may lead to information disclosure.

apache doris
0.03EPSS
CVE-2015-8796
Media 6.1

Cross-site scripting (XSS) vulnerability in webapp/web/js/scripts/schema-browser.js in the Admin UI in Apache Solr before 5.3 allows remote attackers to inject arbitrary web script or HTML via a crafted schema-browse URL.

apache solr
0.03EPSS
CVE-2015-8797
Media 6.1

Cross-site scripting (XSS) vulnerability in webapp/web/js/scripts/plugins.js in the stats page in the Admin UI in Apache Solr before 5.3.1 allows remote attackers to inject arbitrary web script or HTML via the entry parameter to a plugins/cache URI.

apache solr
0.03EPSS
CVE-2021-40369
Media 6.1

A carefully crafted plugin link invocation could trigger an XSS vulnerability on Apache JSPWiki, related to the Denounce plugin, which could allow the attacker to execute javascript in the victim's browser and get some sensitive information about the victim. A…

apache jspwiki
0.03EPSS
CVE-2024-38346
Critica 9.8

The CloudStack cluster service runs on unauthenticated port (default 9090) that can be misused to run arbitrary commands on targeted hypervisors and CloudStack management server hosts. Some of these commands were found to have command injection vulnerabilities…

apache cloudstack
0.03EPSS
CVE-2018-1296
Alta 7.5

In Apache Hadoop 3.0.0-alpha1 to 3.0.0, 2.9.0, 2.8.0 to 2.8.3, and 2.5.0 to 2.7.5, HDFS exposes extended attribute key/value pairs during listXAttrs, verifying only path-level search access to the directory rather than path-level read permission to the referen…

apache hadoop
0.03EPSS
CVE-2021-33580
Alta 7.5

User controlled `request.getHeader("Referer")`, `request.getRequestURL()` and `request.getQueryString()` are used to build and run a regex expression. The attacker doesn't have to use a browser and may send a specially crafted Referer header programmatically. …

apache roller
0.03EPSS
CVE-2007-3304
Media 4.7

Apache httpd 1.3.37, 2.0.59, and 2.2.4 with the Prefork MPM module, allows local users to cause a denial of service by modifying the worker_score and process_score arrays to reference an arbitrary process ID, which is sent a SIGUSR1 signal from the master proc…

apache http_server · canonical ubuntu_linux · fedoraproject fedora · redhat enterprise_linux_desktop · e altri 2
0.03EPSS
CVE-2017-15714
Critica 9.8

The BIRT plugin in Apache OFBiz 16.11.01 to 16.11.03 does not escape user input property passed. This allows for code injection by passing that code through the URL. For example by appending this code "__format=%27;alert(%27xss%27)" to the URL an alert window …

apache ofbiz
0.03EPSS
CVE-2007-2450
Bassa 3.5

Multiple cross-site scripting (XSS) vulnerabilities in the (1) Manager and (2) Host Manager web applications in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.36, 5.0.0 through 5.0.30, 5.5.0 through 5.5.24, and 6.0.0 through 6.0.13 allow remote authentic…

apache tomcat
0.03EPSS