Known vulnerabilities in EasyApache 4 2022-9-29 - page 5

Software: EasyApache
Version: 4 2022-9-29
Software CPE: cpe:2.3:a:cpanel:easyapache:*:*:*:*:*:*:*:*
Total vulnerabilities: 95
Public exploits: 15
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting EasyApache version 4 2022-9-29 EasyApache 4 2022-9-29 is affected by 95 vulnerabilities: 3 critical, 10 high, 59 medium, 23 low Critical High Medium Low

Vulnerabilities (95)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU93883 - Improper input validation
CVE-2024-37372
CWE-20 Low
No
No
4 2024-7-10 09.07.2024 SB2024070937
SB20240717120
SB2024072232
and 7 more
#VU93881 - Permissions, Privileges, and Access Controls
CVE-2024-36137
CWE-264 Low
No
No
4 2024-7-10 09.07.2024 SB2024070937
SB20240717120
SB2024072232
and 23 more
#VU93729 - Exposure of sensitive information to an unauthorized actor
CVE-2024-39884
CWE-200 Medium
No
No
4 2024-7-10 03.07.2024 SB2024070342
SB2024070401
SB2024070890
and 21 more
#VU93539 - Server-Side Request Forgery (SSRF)
CVE-2024-38472
CWE-918 Medium
Public exploit available
No
4 2024-7-10 01.07.2024 SB2024070155
SB20240702144
SB2024081362
and 11 more
#VU93538 - NULL Pointer Dereference
CVE-2024-36387
CWE-476 Medium
No
No
4 2024-7-10 01.07.2024 SB2024070155
SB20240702144
SB2024070890
and 18 more
#VU91109 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2024-5585
CWE-78 Medium
No
No
4 2024-6-10 05.06.2024 SB2024060501
SB2024060502
SB2024060503
and 8 more
#VU91107 - Improper input validation
CVE-2024-5458
CWE-20 Medium
No
No
4 2024-6-10 05.06.2024 SB2024060501
SB2024060502
SB2024060503
and 18 more
#VU88482 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2024-1874
CWE-78 Medium
Public exploit available
No
4 2024-6-10 11.04.2024 SB2024041173
SB2024041175
SB2024041176
and 7 more
#VU82070 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-39333
CWE-94 Low
No
No
4 2023-10-18 17.10.2023 SB2023101703
SB2023101801
SB2023101802
and 28 more
#VU82069 - Improper Validation of Integrity Check Value
CVE-2023-38552
CWE-354 Medium
No
No
4 2023-10-18 17.10.2023 SB2023101703
SB2023101801
SB2023101802
and 34 more
#VU82068 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-39332
CWE-22 Medium
No
No
4 2023-10-18 17.10.2023 SB2023101703
SB2023101804
SB2023101805
and 13 more
#VU82067 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-39331
CWE-22 Medium
No
No
4 2023-10-18 17.10.2023 SB2023101703
SB2023101804
SB2023101805
and 12 more
#VU82066 - Exposure of sensitive information to an unauthorized actor
CVE-2023-45143
CWE-200 Medium
No
No
4 2023-10-18 17.10.2023 SB2023101702
SB2023101703
SB2023101801
and 31 more
#VU81728 - Resource exhaustion
CVE-2023-44487
CWE-400 High
Public exploit available
Exploited
4 2023-10-12, 4 2023-10-18 10.10.2023 SB2023101023
SB2023101024
SB2023101037
and 650 more
#VU4201 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2012-1823
CWE-78 Critical
Public exploit available
Exploited
4 2024-6-10 11.01.2017 SB2012050301
SB2015050401
SB2012050901
and 11 more


Showing elements 81 - 100 out of 95