Known vulnerabilities in httpd-filesystem - page 3

Vendor: OpenAnolis
Software CPE: cpe:2.3:o:openanolis:httpd-filesystem:*:*:*:*:*:anolis_os:*:*
Total vulnerabilities: 67
Public exploits: 14
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting httpd-filesystem httpd-filesystem is affected by 67 known vulnerabilities: 2 critical, 11 high, 41 medium, 13 low Critical High Medium Low

Vulnerabilities (67)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU93545 - Server-Side Request Forgery (SSRF)
CVE-2024-39573
CWE-918 Medium
No
No
2.4.37-65.0.1, 2.4.62-1 01.07.2024 SB2024070155
SB20240702144
SB2024070402
and 46 more
#VU93544 - Improper input validation
CVE-2024-38477
CWE-20 Medium
No
No
2.4.37-65.0.1, 2.4.62-1 01.07.2024 SB2024070155
SB20240702144
SB2024070402
and 58 more
#VU93543 - Server-Side Request Forgery (SSRF)
CVE-2024-38476
CWE-918 High
No
No
2.4.37-65.0.1, 2.4.62-1 01.07.2024 SB2024070155
SB20240702144
SB2024070402
and 61 more
#VU88153 - Resource exhaustion
CVE-2024-27316
CWE-400 Medium
Available
No
2.4.37-62.0.3 04.04.2024 SB2024040458
SB2024040502
SB2024040545
and 51 more
#VU88151 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2023-38709
CWE-113 Medium
No
No
2.4.37-65.0.1, 2.4.37-655.0.1, 2.4.62-3 04.04.2024 SB2024040458
SB2024040502
SB2024040903
and 65 more
#VU82248 - Out-of-bounds read
CVE-2023-31122
CWE-125 Medium
No
No
2.4.37-64.0.1, 2.4.58-1 19.10.2023 SB2023101942
SB2023101960
SB2023102101
and 43 more
#VU82247 - Resource Management Errors
CVE-2023-43622
CWE-399 Medium
Available
No
2.4.58-1 19.10.2023 SB2023101942
SB2023101960
SB2023102647
and 11 more
#VU82245 - Resource Management Errors
CVE-2023-45802
CWE-399 Medium
No
No
2.4.37-64.0.1, 2.4.58-1 19.10.2023 SB2023101942
SB2023101960
SB2023102104
and 37 more
#VU81728 - Resource exhaustion
CVE-2023-44487
CWE-400 High
Available
Exploited
2.4.37-64.0.1, 2.4.58-1 10.10.2023 SB2023101023
SB2023101024
SB2023101037
and 652 more
#VU73107 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2023-25690
CWE-113 Medium
Available
No
2.4.37-51.0.1 07.03.2023 SB2023030731
SB2023030862
SB2023030942
and 54 more
#VU73106 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2023-27522
CWE-113 Medium
No
No
2.4.37-51.0.2 07.03.2023 SB2023030731
SB2023030862
SB2023030942
and 33 more
#VU71243 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2022-37436
CWE-113 Medium
No
No
2.4.37-51.0.1 17.01.2023 SB2023011740
SB2023011805
SB2023012728
and 33 more
#VU71242 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-36760
CWE-444 Medium
No
No
2.4.37-51.0.1 17.01.2023 SB2023011740
SB2023011805
SB2023012728
and 33 more
#VU71241 - Memory corruption
CVE-2006-20001
CWE-119 Medium
No
No
2.4.37-51.0.2 17.01.2023 SB2023011740
SB2023011805
SB2023012728
and 28 more
#VU64285 - Exposure of sensitive information to an unauthorized actor
CVE-2022-30184
CWE-200 Medium
No
No
2.4.37-47.0.1 14.06.2022 SB2022061428
SB2022061640
SB2022061641
and 11 more
#VU64086 - Resource exhaustion
CVE-2022-30522
CWE-400 Medium
No
No
2.4.37-51.0.1 08.06.2022 SB2022060817
SB2022060901
SB2022061723
and 31 more
#VU64083 - Out-of-bounds read
CVE-2022-28615
CWE-125 Low
No
No
2.4.37-51.0.1 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 41 more
#VU59057 - Server-Side Request Forgery (SSRF)
CVE-2021-44224
CWE-918 Medium
No
No
2.4.37-47.0.1 20.12.2021 SB2021122005
SB2021122021
SB2021122709
and 33 more
#VU56680 - Out-of-bounds read
CVE-2021-36160
CWE-125 Medium
No
No
2.4.37-47.0.1 17.09.2021 SB2021091706
SB2021091707
SB2021092301
and 22 more
#VU56474 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2021-33193
CWE-444 Medium
No
No
2.4.37-47.0.1 13.09.2021 SB2021091317
SB2021091707
SB2021092301
and 24 more


Showing elements 41 - 60 out of 67