Vulnerability index

Browse CVEs

8 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Incorrect Default PermissionsCWE-276 × clear
Activemq HIGH 8.8
CVE-2026-49157

Incorrect Default Permissions vulnerability in Apache ActiveMQ. This issue affects Apache ActiveMQ: before 5.19.7, from 6.0.0 before 6.2.6. The def…

Fix: 5.19.7 / 6.2.6+
Fix from $1,950 2026-06-01
Dolphinscheduler CRITICAL 9.8
CVE-2024-43166

Incorrect Default Permissions vulnerability in Apache DolphinScheduler. This issue affects Apache DolphinScheduler: before 3.2.2. Users are recomme…

Fix: 3.2.2+
Fix from $2,300 2025-09-03
Tomcat Connectors MEDIUM 5.9
CVE-2024-46544

Incorrect Default Permissions vulnerability in Apache Tomcat Connectors allows local users to view and modify shared memory containing mod_jk configu…

Fix: 1.2.50+
Fix from $1,600 2024-09-23
Jspwiki CRITICAL 9.1
CVE-2021-44140EPSS 6%

Remote attackers may delete arbitrary files in a system hosting a JSPWiki instance, versions up to 2.11.0.M8, by using a carefuly crafted http reques…

Fix: 2.11.0+
Fix from $2,300 2021-11-24
Dolphinscheduler MEDIUM 6.5
CVE-2020-13922

Versions of Apache DolphinScheduler prior to 1.3.2 allowed an ordinary user under any tenant to override another users password through the API inter…

Mitigation only
Fix from $1,600 2021-01-11
Tomcat HIGH 7.8
CVE-2020-8022

A Incorrect Default Permissions vulnerability in the packaging of tomcat on SUSE Enterprise Storage 5, SUSE Linux Enterprise Server 12-SP2-BCL, SUSE …

Fix: 8.0.53-29.32.1 / 9.0.35-3.39.1+
Fix from $1,950 2020-06-29
Ambari CRITICAL 9.8
CVE-2017-5642

During installation of Ambari 2.4.0 through 2.4.2, Ambari Server artifacts are not created with proper ACLs.

Mitigation only
Fix from $2,300 2017-04-03
Tomcat HIGH 7.8
CVE-2016-5425

The Tomcat package on Red Hat Enterprise Linux (RHEL) 7, Fedora, CentOS, Oracle Linux, and possibly other Linux distributions uses weak permissions f…

No fix yet
Fix from $1,950 2016-10-13