Known vulnerabilities in conmon (Red Hat package) - page 6

Software CPE: cpe:2.3:o:red_hat:conmon_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 108
Public exploits: 5
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting conmon (Red Hat package) conmon (Red Hat package) is affected by 108 known vulnerabilities: 5 high, 68 medium, 35 low Critical High Medium Low

Vulnerabilities (108)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU50020 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2021-21615
CWE-367 Medium
No
No
2.0.21-1.rhaos4.5.el7, 2.0.21-1.rhaos4.5.el8 26.01.2021 SB2021012623
SB2021021723
SB2021022601
and 1 more
#VU49525 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-21611
CWE-79 Low
No
No
2.0.21-1.rhaos4.5.el7, 2.0.21-1.rhaos4.5.el8 14.01.2021 SB2021011418
SB2021011453
SB2021012106
and 2 more
#VU49524 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-21610
CWE-79 Low
No
No
2.0.21-1.rhaos4.5.el7, 2.0.21-1.rhaos4.5.el8 14.01.2021 SB2021011418
SB2021011452
SB2021012106
and 2 more
#VU26393 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-2163
CWE-79 Low
No
No
2.0.17-1.rhaos4.3.el7, 2.0.17-1.rhaos4.3.el8, 2.0.17-1.rhaos4.4.el7, 2.0.17-1.rhaos4.4.el8 26.03.2020 SB2020032622
SB2020032668
SB2020061738
and 1 more
#VU26392 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-2162
CWE-79 Low
No
No
2.0.17-1.rhaos4.3.el7, 2.0.17-1.rhaos4.3.el8, 2.0.17-1.rhaos4.4.el7, 2.0.17-1.rhaos4.4.el8 26.03.2020 SB2020032622
SB2020032667
SB2020061738
and 1 more
#VU26391 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-2161
CWE-79 Low
No
No
2.0.17-1.rhaos4.3.el7, 2.0.17-1.rhaos4.3.el8, 2.0.17-1.rhaos4.4.el7, 2.0.17-1.rhaos4.4.el8 26.03.2020 SB2020032622
SB2020032662
SB2020061738
and 1 more
#VU26390 - Cross-Site Request Forgery (CSRF)
CVE-2020-2160
CWE-352 Low
No
No
2.0.17-1.rhaos4.3.el7, 2.0.17-1.rhaos4.3.el8, 2.0.17-1.rhaos4.4.el7, 2.0.17-1.rhaos4.4.el8 26.03.2020 SB2020032622
SB2020032661
SB2020061738
and 1 more
#VU25501 - Use After Free
CVE-2020-8945
CWE-416 High
No
No
2.0.8-3.rhaos4.3.el7, 2.0.9-3.rhaos4.3.el8 21.02.2020 SB2020022110
SB2020031116
SB2020031126
and 23 more


Showing elements 101 - 120 out of 108