Known vulnerabilities in Red Hat Gluster Storage Server for On-premise 3

Version: 3
Software CPE: cpe:2.3:a:red_hat:red_hat_gluster_storage_server_for_on-premise:*:*:*:*:*:*:*:*
Total vulnerabilities: 42
Public exploits: 4
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Red Hat Gluster Storage Server for On-premise version 3 Red Hat Gluster Storage Server for On-premise 3 is affected by 42 vulnerabilities: 4 high, 15 medium, 23 low Critical High Medium Low

Vulnerabilities (42)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU20809 - Permissions, Privileges, and Access Controls
CVE-2019-10197
CWE-264 Medium
No
No
- 03.09.2019 SB2019090302
SB2019090424
SB2019090308
and 13 more
#VU18879 - Improper Access Control
CVE-2019-10161
CWE-284 Low
No
No
- 23.06.2019 SB2019062004
SB2019072014
SB2019070117
and 8 more
#VU18596 - Permissions, Privileges, and Access Controls
CVE-2019-10132
CWE-264 Low
No
No
- 24.05.2019 SB2019052403
SB2019061912
SB2019052312
and 5 more
#VU18154 - NULL Pointer Dereference
CVE-2019-3840
CWE-476 Medium
No
No
- 09.04.2019 SB2019040903
SB2019042905
SB2019042907
and 3 more
#VU18149 - UNIX Symbolic Link (Symlink) Following
CVE-2019-3880
CWE-61 Low
No
No
- 08.04.2019 SB2019040801
SB2019040805
SB2019040807
and 14 more
#VU14602 - Session Fixation
CVE-2018-1127
CWE-384 Low
No
No
- 04.09.2018 SB2018090502
#VU14575 - Improper Authentication
CVE-2018-15727
CWE-287 High
Public exploit available
No
- 30.08.2018 SB2018083101
SB2018121805
SB2019010406
#VU14336 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2018-1139
CWE-327 Low
No
No
- 14.08.2018 SB2018081404
SB2018081713
SB2018090405
and 7 more
#VU14333 - Heap-based Buffer Overflow
CVE-2018-10858
CWE-122 High
No
No
- 14.08.2018 SB2018081404
SB2018081405
SB2018081710
and 10 more
#VU14175 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2018-14574
CWE-601 Low
No
No
- 01.08.2018 SB2018080209
SB2018080301
SB2018080401
and 12 more
#VU13886 - Memory corruption
CVE-2018-10841
CWE-119 Low
No
No
- 16.07.2018 SB2018052427
SB2018062022
SB2018062023
and 1 more
#VU12911 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2018-3639
CWE-362 Low
No
No
- 22.05.2018 SB2018052201
SB2018052207
SB2018052208
and 142 more
#VU11476 - Resource exhaustion
CVE-2018-7537
CWE-400 Low
No
No
- 03.04.2018 SB2018030608
SB2018030609
SB2018040302
and 9 more
#VU11465 - Resource exhaustion
CVE-2018-5748
CWE-400 Low
No
No
- 02.04.2018 SB2018031521
SB2018032910
SB2018040902
and 4 more
#VU11450 - Resource exhaustion
CVE-2018-1064
CWE-400 Low
No
No
- 02.04.2018 SB2018030114
SB2018031521
SB2018032910
and 5 more
#VU10952 - Improper input validation
CVE-2018-7536
CWE-20 Low
No
No
- 13.03.2018 SB2018030605
SB2018030608
SB2018030609
and 12 more
#VU10949 - Improper input validation
CVE-2018-1050
CWE-20 Low
No
No
- 13.03.2018 SB2018031301
SB2018031302
SB2018031319
and 10 more
#VU10793 - Permissions, Privileges, and Access Controls
CVE-2018-6764
CWE-264 Low
No
No
- 01.03.2018 SB2018020616
SB2018031521
SB2018040306
and 5 more
#VU10565 - Double Free
CVE-2017-16820
CWE-415 Low
No
No
- 14.02.2018 SB2018010420
SB2018021414
SB2018032103
and 9 more
#VU6706 - Resource Management Errors
CVE-2017-7401
CWE-399 Low
No
No
- 24.05.2017 SB2017052420
SB2017021301
SB2017051809
and 8 more


Showing elements 1 - 20 out of 42