Known vulnerabilities in rh-eclipse-jetty (Red Hat package)
Vendor:
Red Hat Inc.
Software:
rh-eclipse-jetty (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:rh-eclipse-jetty_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
4
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.2
Breakdown by Severity Chart
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU51878 - Exposure of sensitive information to an unauthorized actor CVE-2021-28163 |
CWE-200 | Medium | 9.4.40-1.1.el7_9 | 01.04.2021 |
SB2021040179 SB2021050704 SB2021051321 and 27 more |
||
| #VU51877 - Improper input validation CVE-2021-28164 |
CWE-20 | Medium | 9.4.40-1.1.el7_9 | 01.04.2021 |
SB2021040179 SB2021050704 SB2021051321 and 22 more |
||
| #VU51876 - Resource exhaustion CVE-2021-28165 |
CWE-400 | Medium | 9.4.40-1.1.el7_9 | 01.04.2021 |
SB2021040179 SB2021042208 SB2021050704 and 56 more |
||
| #VU51016 - Missing Authentication for Critical Function CVE-2020-27225 |
CWE-306 | High | 9.4.38-1.1.el7_9 | 02.03.2021 |
SB2021030202 SB2021110203 SB2022072222 |