Known vulnerabilities in JBoss Enterprise Application Platform expansion pack (EAP XP)
Vendor:
Red Hat Inc.
Software CPE:
cpe:2.3:a:red_hat:jboss_eap_xp:*:*:*:*:*:*:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
7
Public exploits:
1
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (7)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU97683 - Allocation of Resources Without Limits or Throttling CVE-2024-8391 |
CWE-770 | Medium | 5.0 Update 1.0 | 24.09.2024 |
SB2024092475 SB2024092527 SB2024100250 and 2 more |
||
| #VU81728 - Resource exhaustion CVE-2023-44487 |
CWE-400 | High | 7.4.13 | 10.10.2023 |
SB2023101023 SB2023101024 SB2023101037 and 652 more |
||
| #VU80783 - Incorrect Conversion between Numeric Types CVE-2023-3635 |
CWE-681 | Medium | 4.0.2.GA | 14.09.2023 |
SB2023091430 SB2023091528 SB2023100937 and 47 more |
||
| #VU75218 - Resource exhaustion CVE-2023-26048 |
CWE-400 | Medium | 4.0.2.GA | 18.04.2023 |
SB2023041842 SB2023051753 SB2023060701 and 55 more |
||
| #VU75217 - Improper input validation CVE-2023-26049 |
CWE-20 | Low | 4.0.2.GA | 18.04.2023 |
SB2023041842 SB2023051821 SB2023060836 and 78 more |
||
| #VU72323 - Improper Certificate Validation CVE-2021-0341 |
CWE-295 | Medium | 4.0.0 | 16.02.2023 |
SB2023021628 SB2023051043 SB2023051044 and 14 more |
||
| #VU70474 - Integer overflow CVE-2022-47629 |
CWE-190 | High | 4.0.0 | 22.12.2022 |
SB2022122202 SB2022122204 SB2022122205 and 98 more |