NetApp / Steelstore Cloud Integrated Storage
216 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2020-36179 | jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS | HIGH | 8.8 | Jan 6, 2021 |
| CVE-2020-36180 | jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS | HIGH | 8.8 | Jan 6, 2021 |
| CVE-2020-36182 | jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS | HIGH | 8.8 | Jan 6, 2021 |
| CVE-2020-36184 | jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource | HIGH | 8.8 | Jan 6, 2021 |
| CVE-2020-36181 | jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS | HIGH | 8.8 | Jan 6, 2021 |
| CVE-2020-14782 | OpenJDK: Certificate blacklist bypass via alternate certificate encodings (Libraries, 8237995) | LOW | 3.7 | Oct 21, 2020 |
| CVE-2020-8758 | Improper buffer restrictions in network subsystem in provisioned Intel(R) AMT and Intel(R) ISM versions before 11.8.79, 11.12.79, 11.22.79, 12.0.68 and 14.0.39… | CRITICAL | 9.8 | Sep 10, 2020 |
| CVE-2020-8624 | update-policy rules of type "subdomain" are enforced incorrectly | MEDIUM | 4.3 | Aug 21, 2020 |
| CVE-2020-8623 | A flaw in native PKCS#11 code can lead to a remotely triggerable assertion failure in pk11.c | HIGH | 7.5 | Aug 21, 2020 |
| CVE-2020-8622 | A truncated TSIG response can lead to an assertion failure | MEDIUM | 6.5 | Aug 21, 2020 |
| CVE-2020-8621 | Attempting QNAME minimization after forwarding can lead to an assertion failure in resolver.c | HIGH | 7.5 | Aug 21, 2020 |
| CVE-2020-8620 | bind: A specially crafted large TCP payload can trigger an assertion failure in tcpdns.c | HIGH | 7.5 | Aug 21, 2020 |
| CVE-2020-16166 | kernel: information exposure in drivers/char/random.c and kernel/time/timer.c | LOW | 3.7 | Jul 30, 2020 |
| CVE-2020-15778 | openssh: scp allows command injection when using backtick characters in the destination argument | HIGH | 7.8 | Jul 24, 2020 |
| CVE-2020-15852 | xen: Linux ioperm bitmap context switching issues | HIGH | 7.8 | Jul 20, 2020 |
| CVE-2020-14664 | JavaFX: Out-of-bounds write in HTML Rendering | HIGH | 8.3 | Jul 15, 2020 |
| CVE-2020-14621 | OpenJDK: XML validation manipulation due to incomplete application of the use-grammar-pool-only feature (JAXP, 8242136) | MEDIUM | 5.3 | Jul 15, 2020 |
| CVE-2020-14593 | OpenJDK: Incomplete bounds checks in Affine Transformations (2D, 8240119) | HIGH | 7.4 | Jul 15, 2020 |
| CVE-2020-14583 | OpenJDK: Bypass of boundary checks in nio.Buffer via concurrent access (Libraries, 8238920) | HIGH | 8.3 | Jul 15, 2020 |
| CVE-2020-14581 | OpenJDK: Information disclosure in color management (2D, 8238002) | LOW | 3.7 | Jul 15, 2020 |
| CVE-2020-14579 | OpenJDK: Unexpected exception raised by DerValue.equals() (Libraries, 8237736) | LOW | 3.7 | Jul 15, 2020 |
| CVE-2020-14578 | OpenJDK: Unexpected exception raised by DerInputStream (Libraries, 8237731) | LOW | 3.7 | Jul 15, 2020 |
| CVE-2020-14577 | OpenJDK: HostnameChecker does not ensure X.509 certificate names are in normalized form (JSSE, 8237592) | LOW | 3.7 | Jul 15, 2020 |
| CVE-2020-14556 | OpenJDK: Incorrect handling of access control context in ForkJoinPool (Libraries, 8237117) | MEDIUM | 4.8 | Jul 15, 2020 |
| CVE-2020-14145 | openssh: Observable discrepancy leading to an information leak in the algorithm negotiation | MEDIUM | 5.9 | Jun 29, 2020 |
Showing 1 to 25 of 216 CVEs