Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2017-7685 |
|
Vulnerability in apache (CVE-2017-7685)
vulnerability in apache (CVE-2017-7685). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-7688 |
|
Apache OpenMeetings 1.0.0 updates user password in insecure manner.
Apache OpenMeetings 1.0.0 updates user password in insecure manner.
|
| CVE-2017-7663 |
|
Both global and Room chat are vulnerable to XSS attack in Apache OpenMeetings 3.2.0.
Both global and Room chat are vulnerable to XSS attack in Apache OpenMeetings 3.2.0.
|
| CVE-2017-7664 |
|
Uploaded XML documents were not correctly validated in Apache OpenMeetings 3.1.0.
Uploaded XML documents were not correctly validated in Apache OpenMeetings 3.1.0.
|
| CVE-2017-7666 |
|
Cross-Site Scripting (XSS) in apache (CVE-2017-7666)
cross-site scripting in apache (CVE-2017-7666). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7673 |
|
Vulnerability in apache (CVE-2017-7673)
vulnerability in apache (CVE-2017-7673). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7680 |
|
Vulnerability in apache (CVE-2017-7680)
vulnerability in apache (CVE-2017-7680). Data can be tampered with by attackers.
|
| CVE-2017-7681 |
|
SQL Injection in apache (CVE-2017-7681)
SQL injection in apache (CVE-2017-7681). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7682 |
|
Vulnerability in apache (CVE-2017-7682)
vulnerability in apache (CVE-2017-7682). Data can be tampered with by attackers.
|
| CVE-2017-7683 |
|
Information Disclosure in apache (CVE-2017-7683)
vulnerability in apache (CVE-2017-7683). Confidential information can be exposed externally.
|
| CVE-2017-7684 |
|
Vulnerability in apache (CVE-2017-7684)
vulnerability in apache (CVE-2017-7684). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-6312 |
|
Vulnerability in apache (CVE-2016-6312)
vulnerability in apache (CVE-2016-6312). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-6793 |
|
Unsafe Deserialization in apache (CVE-2016-6793)
vulnerability in apache (CVE-2016-6793). Data can be tampered with by attackers.
|
| CVE-2015-0249 |
|
Code Injection in apache (CVE-2015-0249)
code injection in apache (CVE-2015-0249). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9788 |
|
Vulnerability in apache (CVE-2017-9788)
vulnerability in apache (CVE-2017-9788). Confidential information can be exposed externally. Exploitable via `Authorization header`.
|
| CVE-2017-9789 |
|
Use-After-Free in apache (CVE-2017-9789)
vulnerability in apache (CVE-2017-9789). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-7672 |
|
Vulnerability in apache (CVE-2017-7672)
vulnerability in apache (CVE-2017-7672). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9787 |
|
Vulnerability in apache (CVE-2017-9787)
vulnerability in apache (CVE-2017-9787). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-7678 |
|
Cross-Site Scripting (XSS) in apache (CVE-2017-7678)
cross-site scripting in apache (CVE-2017-7678). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-5640 |
|
Authentication Bypass in apache (CVE-2017-5640)
authentication bypass in apache (CVE-2017-5640). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5652 |
|
Vulnerability in apache (CVE-2017-5652)
vulnerability in apache (CVE-2017-5652). Confidential information can be exposed externally.
|
| CVE-2017-7670 |
|
Vulnerability in apache (CVE-2017-7670)
vulnerability in apache (CVE-2017-7670). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-7660 |
|
Authentication Bypass in apache (CVE-2017-7660)
authentication bypass in apache (CVE-2017-7660). Data can be tampered with by attackers.
|
| CVE-2017-6711 |
|
Authentication Bypass in apache (CVE-2017-6711)
authentication bypass in apache (CVE-2017-6711). Confidential information can be exposed externally.
|
| CVE-2017-7686 |
|
Information Disclosure in apache (CVE-2017-7686)
vulnerability in apache (CVE-2017-7686). Confidential information can be exposed externally.
|
| CVE-2017-9830 |
|
Unsafe Deserialization in apache (CVE-2017-9830)
vulnerability in apache (CVE-2017-9830). Successful exploitation can lead to full system takeover.
|
| CVE-2017-3167 |
|
Authentication Bypass in apache (CVE-2017-3167)
authentication bypass in apache (CVE-2017-3167). Successful exploitation can lead to full system takeover.
|
| CVE-2017-3169 |
|
Vulnerability in apache (CVE-2017-3169)
vulnerability in apache (CVE-2017-3169). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7668 |
|
Vulnerability in apache (CVE-2017-7668)
vulnerability in apache (CVE-2017-7668). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-7679 |
|
Vulnerability in apache (CVE-2017-7679)
vulnerability in apache (CVE-2017-7679). Successful exploitation can lead to full system takeover.
|
| CVE-2015-3254 |
|
Vulnerability in apache (CVE-2015-3254)
vulnerability in apache (CVE-2015-3254). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-8746 |
|
Vulnerability in apache (CVE-2016-8746)
vulnerability in apache (CVE-2016-8746). Data can be tampered with by attackers.
|
| CVE-2016-8751 |
|
Cross-Site Scripting (XSS) in apache (CVE-2016-8751)
cross-site scripting in apache (CVE-2016-8751). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-7676 |
|
Vulnerability in apache (CVE-2017-7676)
vulnerability in apache (CVE-2017-7676). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7677 |
|
Vulnerability in apache (CVE-2017-7677)
vulnerability in apache (CVE-2017-7677). Data can be tampered with by attackers.
|
| CVE-2017-7665 |
|
Cross-Site Scripting (XSS) in apache (CVE-2017-7665)
cross-site scripting in apache (CVE-2017-7665). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-7667 |
|
Vulnerability in apache (CVE-2017-7667)
vulnerability in apache (CVE-2017-7667). Data can be tampered with by attackers.
|
| CVE-2015-5175 |
|
Vulnerability in apache (CVE-2015-5175)
vulnerability in apache (CVE-2015-5175). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-5004 |
|
Vulnerability in apache (CVE-2016-5004)
vulnerability in apache (CVE-2016-5004). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-5664 |
|
Vulnerability in apache (CVE-2017-5664)
vulnerability in apache (CVE-2017-5664). Data can be tampered with by attackers.
|
| CVE-2017-7669 |
|
Vulnerability in apache (CVE-2017-7669)
vulnerability in apache (CVE-2017-7669). Successful exploitation can lead to full system takeover.
|
| CVE-2016-3083 |
|
Vulnerability in apache (CVE-2016-3083)
vulnerability in apache (CVE-2016-3083). Data can be tampered with by attackers.
|
| CVE-2017-5646 |
|
Vulnerability in apache (CVE-2017-5646)
vulnerability in apache (CVE-2017-5646). Confidential information can be exposed externally.
|
| CVE-2017-6891 |
|
Out-of-Bounds Write in c (CVE-2017-6891)
out-of-bounds write in c (CVE-2017-6891). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5657 |
|
Cross-Site Request Forgery (CSRF) in apache (CVE-2017-5657)
vulnerability in apache (CVE-2017-5657). Successful exploitation can lead to full system takeover.
|
| CVE-2015-5241 |
|
Open Redirect in apache (CVE-2015-5241)
vulnerability in apache (CVE-2015-5241). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-7661 |
|
Cross-Site Request Forgery (CSRF) in apache (CVE-2017-7661)
vulnerability in apache (CVE-2017-7661). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7662 |
|
Cross-Site Request Forgery (CSRF) in apache (CVE-2017-7662)
vulnerability in apache (CVE-2017-7662). Successful exploitation can lead to full system takeover.
|
| CVE-2016-8741 |
|
Information Disclosure in apache (CVE-2016-8741)
vulnerability in apache (CVE-2016-8741). Confidential information can be exposed externally.
|
| CVE-2017-5655 |
|
Information Disclosure in apache (CVE-2017-5655)
vulnerability in apache (CVE-2017-5655). Confidential information can be exposed externally.
|