Known vulnerabilities in yaws (Debian package)
Vendor:
Debian
Software:
yaws (Debian package)
Software CPE:
cpe:2.3:o:debian:yaws_debian_package:*:*:*:*:*:debian_linux:*:*
Website:
https://www.debian.org/
Total vulnerabilities:
2
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
2.0.4+dfsg-1+deb9u1
2.0.6+dfsg-1+deb10u1
2.0.8+dfsg
2.0.8+dfsg-1
2.0.7+dfsg-2
1.84-1+b1
2.0.7+dfsg
2.0.6+dfsg
2.0.4+dfsg
1.98
2.0.7+dfsg-1
2.0.6+dfsg-3
1.65-3
1.65-4
1.65-4etch1
1.65-5
1.77-3+lenny1
1.88-2+squeeze1
2.0.6+dfsg-1
2.0.5+dfsg-1
2.0.4+dfsg-3
2.0.4+dfsg-2
1.98-4+deb8u1
1.96-2
1.96-3
1.96-4
1.97-1
1.97-2
1.98-1
1.98-2
1.98-3
1.98-4
1.98-5
1.99-1
1.99-2
2.0.2-1
2.0.2-2
2.0.3-1
2.0.3-2
2.0.3+dfsg-1
2.0.4+dfsg-1
2.0.4+dfsg-1~bpo8+1
1.54-1
1.55-1
1.55-2
1.56-1
1.57-1
1.58-1
1.58-1.1
1.63-1
1.63-2
1.64-1
1.64-2
1.65-1
1.65-2
1.66-1
1.66-2
1.68-1
1.68-2
1.68-3
1.68-4
1.68-5
1.70-1
1.72-1
1.73-1
1.73-2
1.74-1
1.74-2
1.75-1
1.76-1
1.76-2
1.76-3
1.76-4
1.77-1
1.77-2
1.77-3
1.80-1
1.81-1
1.81-2
1.82-1
1.82-2
1.84-1
1.84-2
1.85-1
1.86-1
1.86-2
1.87-1
1.88-1
1.88-2
1.89-1
1.90-1
1.90-2
1.91-1
1.91-2
1.91-3
1.92-1
1.92-2
1.92-3
1.92-4
1.93-1
1.93-2
1.94-1
1.95-1
1.96-1
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU47119 - Improper Restriction of XML External Entity Reference ('XXE') CVE-2020-24379 |
CWE-611 | Medium | 2.0.6+dfsg-1+deb10u1 | 09.09.2020 |
SB2020092709 SB2020092710 SB2020101710 and 1 more |
||
| #VU47120 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2020-24916 |
CWE-78 | High | 2.0.6+dfsg-1+deb10u1 | 09.09.2020 |
SB2020092709 SB2020092710 SB2020101710 and 1 more |