Oracle / Instantis Enterprisetrack
57 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2021-44224 | Possible NULL dereference or SSRF in forward proxy configurations in Apache HTTP Server 2.4.51 and earlier | HIGH | 8.2 | Dec 20, 2021 |
| CVE-2021-44790 | Possible buffer overflow when parsing multipart content in mod_lua of Apache HTTP Server 2.4.51 and earlier | CRITICAL | 9.8 | Dec 20, 2021 |
| CVE-2021-45105 | Apache Log4j2 does not always protect from infinite recursion in lookup evaluation | HIGH | 8.6 | Dec 18, 2021 |
| CVE-2021-42013 KEV | Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773) | CRITICAL | 9.8 | Oct 7, 2021 |
| CVE-2021-41773 KEV | Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49 | CRITICAL | 9.8 | Oct 5, 2021 |
| CVE-2021-41524 | null pointer dereference in h2 fuzzing | HIGH | 7.5 | Oct 5, 2021 |
| CVE-2021-40438 KEV | mod_proxy SSRF | CRITICAL | 9.0 | Sep 16, 2021 |
| CVE-2021-39275 | ap_escape_quotes buffer overflow | CRITICAL | 9.8 | Sep 16, 2021 |
| CVE-2021-36160 | mod_proxy_uwsgi out of bound read | HIGH | 7.5 | Sep 16, 2021 |
| CVE-2021-34798 | NULL pointer dereference in httpd core | HIGH | 7.5 | Sep 16, 2021 |
| CVE-2021-2351 | Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1 and 19c. Diffi… | HIGH | 8.3 | Jul 20, 2021 |
| CVE-2021-33037 | Incorrect Transfer-Encoding handling with HTTP/1.0 | MEDIUM | 5.3 | Jul 12, 2021 |
| CVE-2021-33503 | python-urllib3: ReDoS in the parsing of authority part of URL | HIGH | 8.7 | Jun 29, 2021 |
| CVE-2021-31618 | NULL pointer dereference on specially crafted HTTP/2 request | HIGH | 7.5 | Jun 15, 2021 |
| CVE-2021-30641 | Unexpected URL matching with 'MergeSlashes OFF' | MEDIUM | 5.9 | Jun 10, 2021 |
| CVE-2021-26691 | Apache HTTP Server mod_session response handling heap overflow | CRITICAL | 9.8 | Jun 10, 2021 |
| CVE-2021-26690 | mod_session NULL pointer dereference | HIGH | 7.5 | Jun 10, 2021 |
| CVE-2020-35452 | mod_auth_digest possible stack overflow by one nul byte | HIGH | 7.3 | Jun 10, 2021 |
| CVE-2020-13950 | mod_proxy_http NULL pointer dereference | HIGH | 7.5 | Jun 10, 2021 |
| CVE-2019-17567 | mod_proxy_wstunnel tunneling of non Upgraded connections | MEDIUM | 5.3 | Jun 10, 2021 |
| CVE-2021-22222 | wireshark: DVB-S2-BB dissector infinite loop | HIGH | 7.5 | Jun 7, 2021 |
| CVE-2021-25329 | Incomplete fix for CVE-2020-9484 | HIGH | 7.0 | Mar 1, 2021 |
| CVE-2021-25122 | Apache Tomcat h2c request mix-up | HIGH | 7.5 | Mar 1, 2021 |
| CVE-2020-11987 | batik: SSRF due to improper input validation by the NodePickerPanel | HIGH | 8.2 | Feb 24, 2021 |
| CVE-2020-17527 | Apache Tomcat: Request header mix-up between HTTP/2 streams | HIGH | 7.5 | Dec 3, 2020 |
Showing 1 to 25 of 57 CVEs