Known vulnerabilities in EasyApache 4 2017-11-29 - page 6

Software: EasyApache
Version: 4 2017-11-29
Software CPE: cpe:2.3:a:cpanel:easyapache:*:*:*:*:*:*:*:*
Total vulnerabilities: 155
Public exploits: 22
Known exploited (KEV): 4
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting EasyApache version 4 2017-11-29 EasyApache 4 2017-11-29 is affected by 155 vulnerabilities: 3 critical, 16 high, 106 medium, 30 low Critical High Medium Low

Vulnerabilities (155)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU64559 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-2068
CWE-78 Medium
No
No
4 2022-6-22 21.06.2022 SB2022062120
SB2022062125
SB2022062236
and 135 more
#VU62768 - Uncontrolled Memory Allocation
CVE-2022-1473
CWE-789 Low
No
No
4 2022-5-11 03.05.2022 SB2022050315
SB2022050436
SB2022050532
and 18 more
#VU62765 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-1292
CWE-78 Medium
Public exploit available
No
4 2022-5-11 03.05.2022 SB2022050315
SB2022050436
SB2022050503
and 141 more
#VU61391 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-0778
CWE-835 Medium
Public exploit available
No
4 2022-3-17, 4 2022-3-23, 4 2022-5-11 15.03.2022 SB2022031520
SB2022031522
SB2022031611
and 238 more
#VU61287 - Improper input validation
CVE-2022-22719
CWE-20 Medium
No
No
4 2022-3-16 14.03.2022 SB2022031416
SB2022031504
SB2022031724
and 32 more
#VU61286 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-22720
CWE-444 Medium
No
No
4 2022-3-16 14.03.2022 SB2022031416
SB2022031504
SB2022031724
and 56 more
#VU61285 - Integer overflow
CVE-2022-22721
CWE-190 High
No
No
4 2022-3-16 14.03.2022 SB2022031416
SB2022031504
SB2022031724
and 39 more
#VU61284 - Out-of-bounds write
CVE-2022-23943
CWE-787 High
No
No
4 2022-3-16 14.03.2022 SB2022031416
SB2022031504
SB2022031724
and 34 more
#VU60939 - Untrusted Search Path
CVE-2022-22943
CWE-426 Low
No
No
4 2022-3-16 02.03.2022 SB2022030202
SB2022032127
#VU60707 - Use After Free
CVE-2021-21708
CWE-416 Medium
Public exploit available
No
4 2022-2-23 18.02.2022 SB2022021804
SB2022021813
SB2022022118
and 19 more
#VU58331 - Improper input validation
CVE-2021-21707
CWE-20 Medium
No
No
4 2021-11-23 23.11.2021 SB2021112317
SB2021112318
SB2022011821
and 21 more
#VU57656 - Out-of-bounds write
CVE-2021-21703
CWE-787 Low
No
No
4 2021-20-27 26.10.2021 SB2021102621
SB2021102719
SB2022012745
and 20 more
#VU56905 - Absolute Path Traversal
CVE-2021-21706
CWE-36 Medium
No
No
4 2021-9-29 29.09.2021 SB2021092901
SB2021093001
SB2022111831
and 1 more
#VU56679 - Memory corruption
CVE-2021-39275
CWE-119 Medium
No
No
4 2021-9-22 17.09.2021 SB2021091706
SB2021091707
SB2021092301
and 44 more
#VU56678 - Server-Side Request Forgery (SSRF)
CVE-2021-40438
CWE-918 High
Public exploit available
Exploited
4 2021-9-22 17.09.2021 SB2021091706
SB2021091707
SB2021092301
and 42 more
#VU56615 - Insufficient Verification of Data Authenticity
CVE-2021-22947
CWE-345 Medium
No
No
4 2021-9-22 15.09.2021 SB2021091514
SB2021091601
SB2021091715
and 43 more
#VU56613 - Cleartext Transmission of Sensitive Information
CVE-2021-22946
CWE-319 Medium
No
No
4 2021-9-22 15.09.2021 SB2021091514
SB2021091601
SB2021091715
and 53 more
#VU56610 - Double Free
CVE-2021-22945
CWE-415 Low
No
No
4 2021-9-22 15.09.2021 SB2021091514
SB2021091601
SB2021091715
and 20 more
#VU52299 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-22720
CWE-22 Medium
No
No
4 2022-3-16 16.04.2021 SB2021041628
SB2022032127
#VU52297 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-22719
CWE-22 Medium
No
No
4 2022-3-16 16.04.2021 SB2021041628
SB2022032127


Showing elements 101 - 120 out of 155