Known vulnerabilities in eap7-wildfly (Red Hat package) - page 3

Software CPE: cpe:2.3:o:red_hat:eap7-wildfly_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 107
Public exploits: 19
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting eap7-wildfly (Red Hat package) eap7-wildfly (Red Hat package) is affected by 107 known vulnerabilities: 2 critical, 20 high, 59 medium, 26 low Critical High Medium Low

Vulnerabilities (107)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU92251 - Server-Side Request Forgery (SSRF)
CVE-2024-1233
CWE-918 Medium
No
No
7.4.17-2.GA_redhat_00002.1.el7eap, 7.4.17-2.GA_redhat_00002.1.el8eap, 7.4.17-2.GA_redhat_00002.1.el9eap 19.06.2024 SB2024061932
SB2024061933
SB2024061934
and 4 more
#VU88156 - Resource exhaustion
CVE-2023-1973
CWE-400 Medium
No
No
7.4.16-4.GA_redhat_00002.1.el7eap, 7.4.16-4.GA_redhat_00002.1.el8eap, 7.4.16-4.GA_redhat_00002.1.el9eap 04.04.2024 SB2024040460
SB2024040537
SB2024040538
and 5 more
#VU88155 - Improper input validation
CVE-2023-4639
CWE-20 Medium
No
No
7.4.16-4.GA_redhat_00002.1.el7eap, 7.4.16-4.GA_redhat_00002.1.el8eap, 7.4.16-4.GA_redhat_00002.1.el9eap 04.04.2024 SB2024040460
SB2024040537
SB2024040538
and 5 more
#VU88154 - Resource exhaustion
CVE-2024-1635
CWE-400 Medium
No
No
7.4.16-4.GA_redhat_00002.1.el7eap, 7.4.16-4.GA_redhat_00002.1.el8eap, 7.4.16-4.GA_redhat_00002.1.el9eap 04.04.2024 SB2024040460
SB2024040537
SB2024040538
and 8 more
#VU88153 - Resource exhaustion
CVE-2024-27316
CWE-400 Medium
Available
No
7.4.18-1.GA_redhat_00001.1.el7eap, 7.4.18-1.GA_redhat_00001.1.el8eap, 7.4.18-1.GA_redhat_00001.1.el9eap 04.04.2024 SB2024040458
SB2024040502
SB2024040545
and 51 more
#VU87567 - Server-Side Request Forgery (SSRF)
CVE-2024-28752
CWE-918 Medium
No
No
7.1.8-2.GA_redhat_00002.1.ep7.el7, 7.3.11-4.GA_redhat_00002.1.el7eap, 7.4.17-2.GA_redhat_00002.1.el7eap, 7.4.17-2.GA_redhat_00002.1.el8eap, 7.4.17-2.GA_redhat_00002.1.el9eap 15.03.2024 SB2024031529
SB2024042254
SB2024052706
and 20 more
#VU84537 - Inadequate Encryption Strength
CVE-2023-48795
CWE-326 Low
Available
No
7.4.15-6.GA_redhat_00003.1.el7eap, 7.4.15-6.GA_redhat_00003.1.el8eap, 7.4.15-6.GA_redhat_00003.1.el9eap, 7.4.16-4.GA_redhat_00002.1.el7eap, 7.4.16-4.GA_redhat_00002.1.el8eap, 7.4.16-4.GA_redhat_00002.1.el9eap 19.12.2023 SB2023121903
SB2023121905
SB2023121906
and 343 more
#VU83849 - Improper Access Control
CVE-2023-4503
CWE-284 Medium
No
No
7.4.14-5.GA_redhat_00002.1.el7eap, 7.4.14-5.GA_redhat_00002.1.el8eap, 7.4.14-5.GA_redhat_00002.1.el9eap 04.12.2023 SB2023120447
SB2023120448
SB2023120449
and 4 more
#VU83241 - Information Exposure Through Log Files
CVE-2023-44483
CWE-532 Medium
No
No
7.4.15-2.GA_redhat_00002.1.el7eap, 7.4.15-2.GA_redhat_00002.1.el8eap, 7.4.15-2.GA_redhat_00002.1.el9eap 17.11.2023 SB2023111724
SB2023111747
SB2023120143
and 76 more
#VU83219 - Deserialization of Untrusted Data
CVE-2023-39410
CWE-502 Medium
No
No
7.1.8-2.GA_redhat_00002.1.ep7.el7, 7.3.11-4.GA_redhat_00002.1.el7eap, 7.4.14-5.GA_redhat_00002.1.el7eap, 7.4.14-5.GA_redhat_00002.1.el8eap, 7.4.14-5.GA_redhat_00002.1.el9eap 16.11.2023 SB2023111614
SB2023112014
SB2023112410
and 43 more
#VU82197 - Resource exhaustion
CVE-2023-3171
CWE-400 Medium
No
No
7.1.8-2.GA_redhat_00002.1.ep7.el7, 7.3.11-4.GA_redhat_00002.1.el7eap, 7.4.13-8.GA_redhat_00001.1.el7eap, 7.4.13-8.GA_redhat_00001.1.el8eap, 7.4.13-8.GA_redhat_00001.1.el9eap 18.10.2023 SB2023101833
SB2023101834
SB2023101835
and 4 more
#VU81948 - Improper Link Resolution Before File Access ('Link Following')
CVE-2023-4759
CWE-59 Medium
No
No
7.4.15-2.GA_redhat_00002.1.el7eap, 7.4.15-2.GA_redhat_00002.1.el8eap, 7.4.15-2.GA_redhat_00002.1.el9eap 12.10.2023 SB2023101242
SB2023101243
SB2023103012
and 21 more
#VU81930 - Permissions, Privileges, and Access Controls
CVE-2023-4061
CWE-264 Low
No
No
7.4.13-8.GA_redhat_00001.1.el7eap, 7.4.13-8.GA_redhat_00001.1.el8eap, 7.4.13-8.GA_redhat_00001.1.el9eap 11.10.2023 SB2023101243
SB2023101833
SB2023101834
and 3 more
#VU81728 - Resource exhaustion
CVE-2023-44487
CWE-400 High
Available
Exploited
7.4.13-10.GA_redhat_00002.1.el7eap, 7.4.13-10.GA_redhat_00002.1.el8eap, 7.4.13-10.GA_redhat_00002.1.el9eap, 7.4.14-5.GA_redhat_00002.1.el7eap, 7.4.14-5.GA_redhat_00002.1.el8eap, 7.4.14-5.GA_redhat_00002.1.el9eap 10.10.2023 SB2023101023
SB2023101024
SB2023101037
and 650 more
#VU81427 - UNIX Symbolic Link (Symlink) Following
CVE-2023-35887
CWE-61 Low
No
No
7.4.14-5.GA_redhat_00002.1.el7eap, 7.4.14-5.GA_redhat_00002.1.el8eap, 7.4.14-5.GA_redhat_00002.1.el9eap 03.10.2023 SB2023100336
SB2023100337
SB2023100453
and 21 more
#VU78932 - Incorrect Regular Expression
CVE-2022-25883
CWE-185 Medium
No
No
7.4.13-8.GA_redhat_00001.1.el7eap, 7.4.13-8.GA_redhat_00001.1.el8eap, 7.4.13-8.GA_redhat_00001.1.el9eap 03.08.2023 SB2023080361
SB2023080362
SB2023081514
and 73 more
#VU77107 - Incorrect Default Permissions
CVE-2023-2976
CWE-276 Low
No
No
7.4.14-5.GA_redhat_00002.1.el7eap, 7.4.14-5.GA_redhat_00002.1.el8eap, 7.4.14-5.GA_redhat_00002.1.el9eap 08.06.2023 SB2023060849
SB2023071712
SB2023072512
and 157 more
#VU75218 - Resource exhaustion
CVE-2023-26048
CWE-400 Medium
No
No
7.4.14-5.GA_redhat_00002.1.el7eap, 7.4.14-5.GA_redhat_00002.1.el8eap, 7.4.14-5.GA_redhat_00002.1.el9eap 18.04.2023 SB2023041842
SB2023051753
SB2023060701
and 55 more
#VU75217 - Improper input validation
CVE-2023-26049
CWE-20 Low
No
No
7.4.14-5.GA_redhat_00002.1.el7eap, 7.4.14-5.GA_redhat_00002.1.el8eap, 7.4.14-5.GA_redhat_00002.1.el9eap 18.04.2023 SB2023041842
SB2023051821
SB2023060836
and 78 more
#VU60621 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-23445
CWE-79 Low
No
No
7.4.17-2.GA_redhat_00002.1.el7eap, 7.4.17-2.GA_redhat_00002.1.el8eap, 7.4.17-2.GA_redhat_00002.1.el9eap 15.02.2022 SB2021092717
SB2022021511
SB2022080802
and 11 more


Showing elements 41 - 60 out of 107