cbcvebase.

Fedoraproject Fedora vulnerabilities

5,279 known vulnerabilities affecting fedoraproject/fedora.

Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173

Vulnerabilities

Page 8 of 264
CVE-2021-21345P1CRITICALCVSS 9.9PoCv33v34+1 more2021-03-23
CVE-2021-21345 [CRITICAL] CWE-94 CVE-2021-21345: XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4. XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker who has sufficient rights to execute commands of the host only by manipulating the processed input stream. No user is affected, who followed the recommendation to setup XStream's security
nvd
CVE-2020-8518P1CRITICALCVSS 9.8PoCv30v312020-02-17
CVE-2020-8518 [CRITICAL] CWE-94 CVE-2020-8518: Horde Groupware Webmail Edition 5.2.22 allows injection of arbitrary PHP code via CSV data, leading Horde Groupware Webmail Edition 5.2.22 allows injection of arbitrary PHP code via CSV data, leading to remote code execution.
nvd
CVE-2020-8794P2CRITICALCVSS 9.8PoCv31v322020-02-25
CVE-2020-8794 [CRITICAL] CWE-125 CVE-2020-8794: OpenSMTPD before 6.6.4 allows remote code execution because of an out-of-bounds read in mta_io in mt OpenSMTPD before 6.6.4 allows remote code execution because of an out-of-bounds read in mta_io in mta_session.c for multi-line replies. Although this vulnerability affects the client side of OpenSMTPD, it is possible to attack a server because the server code launches the client code during bounce handling.
nvd
CVE-2021-29505P1HIGHCVSS 8.8PoCv33v34+1 more2021-05-28
CVE-2021-29505 [HIGH] CWE-94 CVE-2021-29505: XStream is software for serializing Java objects to XML and back again. A vulnerability in XStream v XStream is software for serializing Java objects to XML and back again. A vulnerability in XStream versions prior to 1.4.17 may allow a remote attacker has sufficient rights to execute commands of the host only by manipulating the processed input stream. No user who followed the recommendation to setup XStream's security framework with a whitelist limi
nvd
CVE-2021-25282P2CRITICALCVSS 9.1PoCv32v33+1 more2021-02-27
CVE-2021-25282 [CRITICAL] CWE-22 CVE-2021-25282: An issue was discovered in through SaltStack Salt before 3002.5. The salt.wheel.pillar_roots.write m An issue was discovered in through SaltStack Salt before 3002.5. The salt.wheel.pillar_roots.write method is vulnerable to directory traversal.
nvd
CVE-2011-1752P2MEDIUMCVSS 5.0Exploitedv14v152011-06-06
CVE-2011-1752 [MEDIUM] CWE-476 CVE-2011-1752: The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.17 The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.17, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a request for a baselined WebDAV resource, as exploited in the wild in May 2011.
nvd
CVE-2019-9851P2CRITICALCVSS 9.8PoCv292019-08-15
CVE-2019-9851 [CRITICAL] CVE-2019-9851: LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from document event script handers, e.g. mouse over. However LibreOffice also has a separate fea
nvd
CVE-2022-4223P2HIGHCVSS 8.8PoCv372022-12-13
CVE-2022-4223 [HIGH] CWE-94 CVE-2022-4223: The pgAdmin server includes an HTTP API that is intended to be used to validate the path a user sele The pgAdmin server includes an HTTP API that is intended to be used to validate the path a user selects to external PostgreSQL utilities such as pg_dump and pg_restore. The utility is executed by the server to determine what PostgreSQL version it is from. Versions of pgAdmin prior to 6.17 failed to properly secure this API, which could allow an unauthent
nvd
CVE-2021-21351P2CRITICALCVSS 9.1PoCv33v34+1 more2021-03-23
CVE-2021-21351 [CRITICAL] CWE-434 CVE-2021-21351: XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4. XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability may allow a remote attacker to load and execute arbitrary code from a remote host only by manipulating the processed input stream. No user is affected, who followed the recommendation to setup XStream's security framewor
nvd
CVE-2021-21300P2HIGHCVSS 7.5PoCv32v33+1 more2021-03-09
CVE-2021-21300 [HIGH] CWE-59 CVE-2021-21300: Git is an open-source distributed revision control system. In affected versions of Git a specially c Git is an open-source distributed revision control system. In affected versions of Git a specially crafted repository that contains symbolic links as well as files using a clean/smudge filter such as Git LFS, may cause just-checked out script to be executed while cloning onto a case-insensitive file system such as NTFS, HFS+ or APFS (i.e. the default f
nvd
CVE-2020-26258P2HIGHCVSS 7.7PoCv33v34+1 more2020-12-16
CVE-2020-26258 [HIGH] CWE-918 CVE-2020-26258: XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4. XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.15, a Server-Side Forgery Request vulnerability can be activated when unmarshalling. The vulnerability may allow a remote attacker to request data from internal resources that are not publicly available only by manipulating the processed input stream. I
nvd
CVE-2020-26935P2CRITICALCVSS 9.8PoCv31v32+1 more2020-10-10
CVE-2020-26935 [CRITICAL] CWE-89 CVE-2020-26935: An issue was discovered in SearchController in phpMyAdmin before 4.9.6 and 5.x before 5.0.3. A SQL i An issue was discovered in SearchController in phpMyAdmin before 4.9.6 and 5.x before 5.0.3. A SQL injection vulnerability was discovered in how phpMyAdmin processes SQL statements in the search feature. An attacker could use this flaw to inject malicious SQL in to a query.
nvd
CVE-2019-14287P2HIGHCVSS 8.8PoCv29v30+1 more2019-10-17
CVE-2019-14287 [HIGH] CWE-755 CVE-2019-14287: In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain poli In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and session PAM modules, and can cause incorrect logging, by invoking sudo with a crafted user ID. For example, this allows bypass of !root configuration, and USER= logging, for a "sudo -u \#$((0xffffffff))" command.
nvd
CVE-2012-3363P2CRITICALCVSS 9.1PoCv17v182013-02-13
CVE-2012-3363 [CRITICAL] CWE-611 CVE-2012-3363: Zend_XmlRpc in Zend Framework 1.x before 1.11.12 and 1.12.x before 1.12.0 does not properly handle S Zend_XmlRpc in Zend Framework 1.x before 1.11.12 and 1.12.x before 1.12.0 does not properly handle SimpleXMLElement classes, which allows remote attackers to read arbitrary files or create TCP connections via an external entity reference in a DOCTYPE element in an XML-RPC request, aka an XML external entity (XXE) injection attack.
nvd
CVE-2024-25641P2HIGHCVSS 7.2PoCv392024-05-14
CVE-2024-25641 [HIGH] CWE-20 CVE-2024-25641: Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, an Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, an arbitrary file write vulnerability, exploitable through the "Package Import" feature, allows authenticated users having the "Import Templates" permission to execute arbitrary PHP code on the web server. The vulnerability is located within the `import_pa
nvd
CVE-2013-2028P2HIGHCVSS 7.5PoCv192013-07-20
CVE-2013-2028 [HIGH] CWE-787 CVE-2013-2028: The ngx_http_parse_chunked function in http/ngx_http_parse.c in nginx 1.3.9 through 1.4.0 allows rem The ngx_http_parse_chunked function in http/ngx_http_parse.c in nginx 1.3.9 through 1.4.0 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a chunked Transfer-Encoding request with a large chunk size, which triggers an integer signedness error and a stack-based buffer overflow.
nvd
CVE-2023-39362P2HIGHCVSS 7.2PoCv37v382023-09-05
CVE-2023-39362 [HIGH] CWE-78 CVE-2023-39362: Cacti is an open source operational monitoring and fault management framework. In Cacti 1.2.24, unde Cacti is an open source operational monitoring and fault management framework. In Cacti 1.2.24, under certain conditions, an authenticated privileged user, can use a malicious string in the SNMP options of a Device, performing command injection and obtaining remote code execution on the underlying server. The `lib/snmp.php` file has a set of functions,
nvd
CVE-2019-9848P2CRITICALCVSS 9.8PoCv29v302019-07-17
CVE-2019-9848 [CRITICAL] CWE-94 CVE-2019-9848: LibreOffice has a feature where documents can specify that pre-installed scripts can be executed on LibreOffice has a feature where documents can specify that pre-installed scripts can be executed on various document events such as mouse-over, etc. LibreOffice is typically also bundled with LibreLogo, a programmable turtle vector graphics script, which can be manipulated into executing arbitrary python commands. By using the document event feature t
nvd
CVE-2022-25765P2CRITICALCVSS 9.8PoCv35v36+1 more2022-09-09
CVE-2022-25765 [CRITICAL] CVE-2022-25765: The package pdfkit from 0.0.0 are vulnerable to Command Injection where the URL is not properly sani The package pdfkit from 0.0.0 are vulnerable to Command Injection where the URL is not properly sanitized.
nvd
CVE-2009-2629P2HIGHCVSS 7.5PoCv10v11+1 more2009-09-15
CVE-2009-2629 [HIGH] CWE-787 CVE-2009-2629: Buffer underflow in src/http/ngx_http_parse.c in nginx 0.1.0 through 0.5.37, 0.6.x before 0.6.39, 0. Buffer underflow in src/http/ngx_http_parse.c in nginx 0.1.0 through 0.5.37, 0.6.x before 0.6.39, 0.7.x before 0.7.62, and 0.8.x before 0.8.15 allows remote attackers to execute arbitrary code via crafted HTTP requests.
nvd
Fedoraproject Fedora vulnerabilities | cvebase