Known vulnerabilities in Amazon Linux AMI - page 139

Software CPE: cpe:2.3:o:amazon_web_services:amazon_linux_ami:*:*:*:*:*:*:*:*
Total vulnerabilities: 3943
Public exploits: 290
Known exploited (KEV): 53
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Amazon Linux AMI Amazon Linux AMI is affected by 3943 known vulnerabilities: 26 critical, 592 high, 1559 medium, 1766 low Critical High Medium Low

Vulnerabilities (3943)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU15451 - Exposure of sensitive information to an unauthorized actor
CVE-2018-3646
CWE-200 Low
No
No
- 22.10.2018 SB2018110509
SB2019011707
SB2018081720
and 21 more
#VU14437 - Improper input validation
CVE-2018-5391
CWE-20 Medium
No
No
- 15.08.2018 SB2018081620
SB2018081717
SB2018081718
and 22 more
#VU14412 - Exposure of sensitive information to an unauthorized actor
CVE-2018-3646
CWE-200 Low
No
No
- 15.08.2018 SB2018081502
SB2018081505
SB2018081508
and 36 more
#VU14411 - Exposure of sensitive information to an unauthorized actor
CVE-2018-3620
CWE-200 Low
No
No
- 15.08.2018 SB2018081502
SB2018081506
SB2018081508
and 35 more
#VU14410 - Exposure of sensitive information to an unauthorized actor
CVE-2018-3615
CWE-200 Low
No
No
- 14.08.2018 SB2018081502
SB2018081024
SB2022111022
and 1 more
#VU14322 - Permissions, Privileges, and Access Controls
CVE-2018-2952
CWE-264 Low
No
No
- 13.08.2018 SB2018080913
SB2018081307
SB2018082404
and 17 more
#VU14200 - Resource exhaustion
CVE-2018-5390
CWE-400 Medium
No
No
- 07.08.2018 SB2018080703
SB2018080704
SB2018080706
and 22 more
#VU14218 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-10897
CWE-22 Low
No
No
- 06.08.2018 SB2018080718
SB2018081001
SB2018090512
and 6 more
#VU13998 - Improper input validation
CVE-2018-10886
CWE-20 Low
No
No
- 25.07.2018 SB2018072601
SB2018072602
SB2018092707
and 4 more
#VU13993 - Exposure of sensitive information to an unauthorized actor
CVE-2018-8037
CWE-200 Low
No
No
- 24.07.2018 SB2018072404
SB2018081002
SB2018082907
and 8 more
#VU13853 - NULL Pointer Dereference
CVE-2018-13093
CWE-476 Low
No
No
- 13.07.2018 SB2018071209
SB2018080701
SB2019080809
and 5 more
#VU13852 - NULL Pointer Dereference
CVE-2018-13094
CWE-476 Low
No
No
- 13.07.2018 SB2018071209
SB2018080701
SB2019080809
and 5 more
#VU13992 - Permissions, Privileges, and Access Controls
CVE-2018-8034
CWE-264 Low
No
No
- 25.06.2018 SB2018072404
SB2018081002
SB2018081005
and 13 more
#VU13339 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2018-12232
CWE-476 Low
No
No
- 13.06.2018 SB2018061406
SB2018062901
SB2018061716
and 2 more
#VU13258 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2018-12020
CWE-451 Low
No
No
- 10.06.2018 SB2018061101
SB2018061102
SB2018061103
and 20 more
#VU13071 - Memory corruption
CVE-2018-11412
CWE-119 Low
No
No
- 30.05.2018 SB2018053104
SB2018072603
SB2019031324
and 1 more
#VU12853 - Improper input validation
CVE-2018-1120
CWE-20 Low
Available
No
- 20.05.2018 SB2018052205
SB2018052212
SB2018053102
and 12 more
#VU12798 - Exposure of sensitive information to an unauthorized actor
CVE-2018-8014
CWE-200 Low
No
No
- 17.05.2018 SB2018051706
SB2018081002
SB2018081005
and 12 more
#VU13986 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2018-1336
CWE-835 Medium
No
No
- 16.05.2018 SB2018051612
SB2018080607
SB2018080608
and 12 more
#VU12432 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2018-0494
CWE-74 Low
Available
No
- 08.05.2018 SB2018050804
SB2018051102
SB2018051107
and 10 more


Showing elements 2761 - 2780 out of 3943