Apache / Juddi
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2021-37578 | Remote code execution via RMI | CRITICAL | 9.8 | Jul 29, 2021 |
| CVE-2009-4267 | The console in Apache jUDDI 3.0.0 does not properly escape line feeds, which allows remote authenticated users to spoof log entries via the numRows parameter. | MEDIUM | 6.5 | Feb 19, 2018 |
| CVE-2018-1307 | juddi-client: XML Entity Expansion in WADL2Java or WSDL2Java classes | HIGH | 8.1 | Feb 9, 2018 |
| CVE-2009-1198 | Cross-site scripting (XSS) vulnerability in Apache jUDDI before 2.0 allows remote attackers to inject arbitrary web script or HTML via the dsname parameter to… | MEDIUM | 6.1 | Oct 30, 2017 |
| CVE-2009-1197 | Apache jUDDI before 2.0 allows attackers to spoof entries in log files via vectors related to error logging of keys from uddiget.jsp. | MEDIUM | 5.3 | Oct 30, 2017 |
| CVE-2015-5241 | juddi: Open redirect in the portlet based user interface | MEDIUM | 6.1 | May 19, 2017 |
Showing 1 to 6 of 6 CVEs