Vulnerability index

Browse CVEs

12 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Numeric ErrorsCWE-189 × clear
Subversion HIGH 8.6
CVE-2015-5259EPSS 57%

Integer overflow in the read_string function in libsvn_ra_svn/marshal.c in Apache Subversion 1.9.x before 1.9.3 allows remote attackers to execute ar…

Mitigation only
Fix from $1,950 2016-01-08
Tomcat MEDIUM 5.0
CVE-2014-0075EPSS 20%

Integer overflow in the parseChunkHeader function in java/org/apache/coyote/http11/filters/ChunkedInputFilter.java in Apache Tomcat before 6.0.40, 7.…

Mitigation only
Fix from $1,600 2014-05-31
Qpid MEDIUM 5.0
CVE-2012-4458EPSS 7%

The AMQP type decoder in Apache Qpid 0.20 and earlier allows remote attackers to cause a denial of service (memory consumption and server crash) via …

Fix: after 0.20
Fix from $1,600 2013-03-14
Qpid MEDIUM 5.0
CVE-2012-4459EPSS 9%

Integer overflow in the qpid::framing::Buffer::checkAvailable function in Apache Qpid 0.20 and earlier allows remote attackers to cause a denial of s…

Fix: after 0.20
Fix from $1,600 2013-03-14
Openoffice.org MEDIUM 6.8
CVE-2012-2334EPSS 13%

Integer overflow in filter/source/msfilter/msdffimp.cxx in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, al…

Fix: after 3.5.2
Fix from $1,600 2012-06-19
Tomcat MEDIUM 5.0
CVE-2012-0022EPSS 11%

Apache Tomcat 5.5.x before 5.5.35, 6.x before 6.0.34, and 7.x before 7.0.23 uses an inefficient approach for handling parameters, which allows remote…

Mitigation only
Fix from $1,600 2012-01-19
Xml Security For C\+\+ MEDIUM 5.0
CVE-2011-2516EPSS 8%

Off-by-one error in the XML signature feature in Apache XML Security for C++ 1.6.0, as used in Shibboleth before 2.4.3 and possibly other products, a…

Fix: after 2.4.2
Fix from $1,600 2011-07-11
Mod Fcgid HIGH 7.5
CVE-2010-3872

A flaw was found in the mod_fcgid module of httpd. A malformed FastCGI response may result in a stack-based buffer overflow in the modules/fcgid/fcgi…

Fix: after 2.3.5
Fix from $1,950 2010-11-22
HTTP Server MEDIUM 6.8
CVE-2010-0010EPSS 43%

Integer overflow in the ap_proxy_send_fb function in proxy/proxy_util.c in mod_proxy in the Apache HTTP Server before 1.3.42 on 64-bit platforms allo…

Fix: after 1.3.41
Fix from $1,600 2010-02-02
Apr Util HIGH 10.0
CVE-2009-2412EPSS 14%

Multiple integer overflows in the Apache Portable Runtime (APR) library and the Apache Portable Utility library (aka APR-util) 0.9.x and 1.3.x allow …

Patch available
Fix from $1,950 2009-08-06
Apr Util MEDIUM 6.4
CVE-2009-1956EPSS 12%

Off-by-one error in the apr_brigade_vprintf function in Apache APR-util before 1.3.5 on big-endian platforms allows remote attackers to obtain sensit…

Fix: 2.2.12+
Fix from $1,600 2009-06-08
HTTP Server HIGH 7.6
CVE-2006-3747EPSS 96%

Off-by-one error in the ldap scheme handling in the Rewrite module (mod_rewrite) in Apache 1.3 from 1.3.28, 2.0.46 and other versions before 2.0.59, …

Fix: 1.3.37 / 2.0.59+
Fix from $1,950 2006-07-28