Known vulnerabilities in awstats (Ubuntu package)

Software CPE: cpe:2.3:o:canonical:awstats_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Total vulnerabilities: 5
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting awstats (Ubuntu package) awstats (Ubuntu package) is affected by 5 known vulnerabilities: 2 high, 2 medium, 1 low Critical High Medium Low

Vulnerabilities (5)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72633 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-46391
CWE-79 Low
No
No
Ubuntu Pro, 7.6+dfsg-2ubuntu0.18.04.2, 7.6+dfsg-2ubuntu0.20.04.2, 7.8-2ubuntu0.22.04.1, 7.8-2ubuntu0.22.10.1 28.02.2023 SB2023022867
SB2023022868
SB2023081652
and 4 more
#VU49005 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2020-35176
CWE-22 Medium
No
No
7.6+dfsg-2ubuntu0.18.04.1, 7.6+dfsg-2ubuntu0.20.04.1, 7.6+dfsg-2ubuntu0.20.10.1 12.12.2020 SB2020121528
SB2021032604
SB2021051323
and 4 more
#VU49006 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2020-29600
CWE-22 Medium
No
No
7.6+dfsg-2ubuntu0.18.04.1, 7.6+dfsg-2ubuntu0.20.04.1, 7.6+dfsg-2ubuntu0.20.10.1 07.12.2020 SB2020121528
SB2021032604
SB2021051323
and 1 more
#VU33506 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2017-1000501
CWE-22 High
No
No
7.6+dfsg-2ubuntu0.18.04.1, 7.6+dfsg-2ubuntu0.20.04.1, 7.6+dfsg-2ubuntu0.20.10.1 03.01.2018 SB2018010309
SB2018010542
SB2020072755
and 5 more
#VU33051 - Double Free
CVE-2017-12858
CWE-415 High
No
No
- 23.08.2017 SB2017082315
SB2017102508
SB2017110707
and 4 more