Skip to content

トピトピニュース

Header Image
Category

HIGH

381 Posts

Featured

Posted byGitHub
[phpxmlrpc/phpxmlrpc] code injection in phpxmlrpc/phpxmlrpc
Posted byGitHub
[ghost] ghost vulnerable to unauthorized newsletter modification via improper access controls
Posted byGitHub
[microweber/microweber] Account Takeover Through Password Reset Poisoning
Posted byGitHub
[apache-airflow] OS Command Injection in Apache Airflow

[org.apache.struts:struts2-core] Arbitrary code execution in Apache Struts 2

  • Posted inHIGH
  • Posted byGitHub
  • 05/14/202211/04/2022

Apache Struts 2 before 2.3.14.3 allows remote attackers to execute arbitrary OGNL code via a request with a crafted value that contains both “${}” and “%{}” sequences, which causes the OGNL code to be evaluated twice.
References

https://nvd.nist.gov/v…

[org.apache.solr:solr-core] Apache Solr insecure inter-node communication

  • Posted inHIGH
  • Posted byGitHub
  • 05/14/202211/09/2022

Apache Solr uses a PKI based mechanism to secure inter-node communication when security is enabled. It is possible to create a specially crafted node name that does not exist as part of the cluster and point it to a malicious node. This can trick the n…

[org.apache.struts:struts2-core] Code injection due to conversion error

  • Posted inHIGH
  • Posted byGitHub
  • 05/14/202211/04/2022

Apache Struts 2 before 2.2.3.1 evaluates a string as an OGNL expression during the handling of a conversion error, which allows remote attackers to modify run-time data values, and consequently execute arbitrary code, via invalid input to a field.
Refe…

[org.eclipse.rdf4j:rdf4j] RDF4J vulnerable to zip slip

  • Posted inHIGH
  • Posted byGitHub
  • 05/14/202211/09/2022

RDF4J prior to 2.5.0 allows Directory Traversal via ../ in an entry in a ZIP archive.
References

https://nvd.nist.gov/vuln/detail/CVE-2018-20227
https://github.com/eclipse/rdf4j/issues/1210
https://github.com/eclipse/rdf4j/pull/1211/commits/df15a4d7a8…

[org.apache.portals.pluto:pluto-container] Exposure of Sensitive Information in Apache Pluto

  • Posted inHIGH
  • Posted byGitHub
  • 05/14/202211/04/2022

The PortletV3AnnotatedDemo Multipart Portlet war file code provided in Apache Pluto version 3.0.0 could allow a remote attacker to obtain sensitive information, caused by the failure to restrict path information provided during a file upload. An attack…

[org.apache.solr:solr-core] Apache Solr Kerberos delegation token functionality flaws

  • Posted inHIGH
  • Posted byGitHub
  • 05/14/202211/08/2022

Apache Solr’s Kerberos plugin can be configured to use delegation tokens, which allows an application to reuse the authentication of an end-user or another application. There are two issues with this functionality (when using SecurityAwareZkACLProvider…

[org.jboss.resteasy:resteasy-jaxrs] Denial of service in JBoss resteasy

  • Posted inHIGH
  • Posted byGitHub
  • 05/14/202211/02/2022

RESTEasy enables GZIPInterceptor, which allows remote attackers to cause a denial of service via unspecified vectors.
References

https://nvd.nist.gov/vuln/detail/CVE-2016-6346
https://bugzilla.redhat.com/show_bug.cgi?id=1372120
http://www.securityfocu…

[org.jvnet.hudson.plugins:favorite] Jenkins Favorite Plugin vulnerable to Cross-Site Request Forgery

  • Posted inHIGH
  • Posted byGitHub
  • 05/14/202211/23/2022

Jenkins Favorite Plugin version 2.2.0 and older is vulnerable to CSRF resulting in data modification.
References

https://nvd.nist.gov/vuln/detail/CVE-2017-1000244
https://jenkins.io/security/advisory/2017-06-06/
https://github.com/advisories/GHSA-jqwh…

[org.apache.geode:geode-core] Apache Geode OQL method invocation vulnerability

  • Posted inHIGH
  • Posted byGitHub
  • 05/14/202211/08/2022

When an Apache Geode cluster before v1.3.0 is operating in secure mode, a user with read access to specific regions within a Geode cluster may execute OQL queries that allow read and write access to objects within unauthorized regions. In addition a us…

[org.apache.struts:struts2-core] ClassLoader manipulation in Apache Struts

  • Posted inHIGH
  • Posted byGitHub
  • 05/14/202211/04/2022

ParametersInterceptor in Apache Struts before 2.3.20 does not properly restrict access to the getClass method, which allows remote attackers to “manipulate” the ClassLoader and execute arbitrary code via a crafted request. NOTE: this vulnerability exis…

Posts navigation

Previous Posts 1 … 30 31 32 33 34 … 39 Next Posts
トピトピニュース
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close