Known vulnerabilities in evolution-data-server (Red Hat package)
Vendor:
Red Hat Inc.
Software:
evolution-data-server (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:evolution-data-server_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
3
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.4
Breakdown by Severity Chart
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU45886 - NULL Pointer Dereference CVE-2020-16117 |
CWE-476 | Medium | 3.28.5-15.el8 | 29.07.2020 |
SB2020072973 SB2021052039 SB2021031908 and 3 more |
||
| #VU34139 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') CVE-2020-14928 |
CWE-74 | Medium | 3.28.5-14.el8 | 17.07.2020 |
SB2020071733 SB2020110511 SB2020071815 and 6 more |
||
| #VU17667 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing) CVE-2018-15587 |
CWE-451 | Low | 3.28.5-13.el8 | 14.02.2019 |
SB2018092502 SB2019040204 SB2019032809 and 8 more |