CVEs (848)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
4Debian EclipseNetapp+1 more8Active Iq Unified Manager Communications Cloud Native Core PolicyDebian Linux+5 moreNov 21, 2024 Jun 9, 2021 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 For Eclipse Jetty versions <= 9.4.40, <= 10.0.2, <= 11.0.2, it is possible for requests to the ConcatServlet with a doubly encoded path to access protected resources within the WEB-INF directory. For example a request to...Show more |
4Gstreamer Gstreamer ProjectNetapp+1 more13Active Iq Unified Manager E Series Santricity Os ControllerE Series Santricity Storage Manager+10 moreMay 28, 2026 Jun 2, 2021 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 GStreamer before 1.18.4 may perform an out-of-bounds read when handling certain ID3v2 tags. |
4Lz4 Project NetappOracle+1 more7Active Iq Unified Manager Cloud BackupCommunications Cloud Native Core Policy+4 moreNov 21, 2024 Jun 2, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 There's a flaw in lz4. An attacker who submits a crafted file to an application linked with lz4 may be able to trigger an integer overflow, leading to calling of memmove() on a negative size argument, causing an out-of-b...Show more |
3Fedoraproject LinuxNetapp13Active Iq Unified Manager Cloud BackupFedora+10 moreNov 21, 2024 May 26, 2021 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 A vulnerability was found in Linux kernel where non-blocking socket in llcp_sock_connect() leads to leak and eventually hanging-up the system. |
4Debian FedoraprojectLinux+1 more14Active Iq Unified Manager Cloud BackupDebian Linux+11 moreNov 21, 2024 May 26, 2021 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 A vulnerability was found in Linux Kernel, where a refcount leak in llcp_sock_connect() causing use-after-free which might lead to privilege escalations. |
4Debian FedoraprojectLinux+1 more14Active Iq Unified Manager Cloud BackupDebian Linux+11 moreNov 21, 2024 May 26, 2021 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 A vulnerability was found in Linux Kernel where refcount leak in llcp_sock_bind() causing use-after-free which might lead to privilege escalations. |
4Debian FedoraprojectLinux+1 more14Active Iq Unified Manager Cloud BackupDebian Linux+11 moreNov 21, 2024 May 25, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A memory leak vulnerability was found in Linux kernel in llcp_sock_connect |
6Debian FedoraprojectNetapp+3 more28Active Iq Unified Manager Clustered Data OntapClustered Data Ontap Antivirus Connector+25 moreDec 2, 2025 May 19, 2021 N/A· v4 8.6 HIGH· v3 7.5 HIGH· v2 There is a flaw in the xml entity encoding functionality of libxml2 in versions before 2.9.11. An attacker who is able to supply a crafted file to be processed by an application linked with the affected functionality of...Show more |
6Debian FedoraprojectNetapp+3 more18Active Iq Unified Manager Clustered Data OntapClustered Data Ontap Antivirus Connector+15 moreNov 21, 2024 May 18, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 There's a flaw in libxml2 in versions before 2.9.11. An attacker who is able to submit a crafted file to be processed by an application linked with libxml2 could trigger a use-after-free. The greatest impact from this fl...Show more |
6Debian FedoraprojectNetapp+3 more19Active Iq Unified Manager Clustered Data OntapClustered Data Ontap Antivirus Connector+16 moreNov 21, 2024 May 14, 2021 N/A· v4 5.9 MEDIUM· v3 4.3 MEDIUM· v2 A vulnerability found in libxml2 in versions before 2.9.11 shows that it did not propagate errors while parsing XML mixed content, causing a NULL dereference. If an untrusted XML document was parsed in recovery mode and...Show more |
3Fedoraproject NetappSystemd Project4Active Iq Unified Manager Cloud BackupFedora+1 moreNov 21, 2024 May 10, 2021 N/A· v4 6.1 MEDIUM· v3 2.9 LOW· v2 An exploitable denial-of-service vulnerability exists in Systemd 245. A specially crafted DHCP FORCERENEW packet can cause a server running the DHCP client to be vulnerable to a DHCP ACK spoofing attack. An attacker can...Show more |
4Debian IscNetapp+1 more14Active Iq Unified Manager Aff 500f FirmwareAff A250 Firmware+11 moreNov 21, 2024 Apr 29, 2021 N/A· v4 9.8 CRITICAL· v3 6.8 MEDIUM· v2 In BIND 9.5.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.11.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.1 of the BIND 9.17 developm...Show more |
6Debian FedoraprojectIsc+3 more16500f Firmware A250 FirmwareActive Iq Unified Manager+13 moreNov 21, 2024 Apr 29, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 In BIND 9.0.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.11 of the BIND 9.17 developm...Show more |
5Debian FedoraprojectIsc+2 more15Active Iq Unified Manager Aff 500f FirmwareAff A250 Firmware+12 moreNov 21, 2024 Apr 29, 2021 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 In BIND 9.8.5 -> 9.8.8, 9.9.3 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND 9 Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.11 of the...Show more |
2Netapp Oracle5Active Iq Unified Manager MysqlOncommand Insight+2 moreNov 21, 2024 Apr 22, 2021 N/A· v4 2.7 LOW· v3 4.0 MEDIUM· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are affected are 8.0.23 and prior. Easily exploitable vulnerability allows high privileged attack...Show more |
2Netapp Oracle5Active Iq Unified Manager MysqlOncommand Insight+2 moreNov 21, 2024 Apr 22, 2021 N/A· v4 6.1 MEDIUM· v3 3.3 LOW· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Packaging). Supported versions that are affected are 5.7.33 and prior and 8.0.23 and prior. Easily exploitable vulnerability allows unauthenti...Show more |
2Netapp Oracle5Active Iq Unified Manager MysqlOncommand Insight+2 moreNov 21, 2024 Apr 22, 2021 N/A· v4 4.9 MEDIUM· v3 4.0 MEDIUM· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.23 and prior. Easily exploitable vulnerability allows high privileged attacker with network...Show more |
2Netapp Oracle5Active Iq Unified Manager MysqlOncommand Insight+2 moreNov 21, 2024 Apr 22, 2021 N/A· v4 5.5 MEDIUM· v3 5.5 MEDIUM· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affected are 8.0.23 and prior. Easily exploitable vulnerability allows high privileged attacker...Show more |
2Netapp Oracle5Active Iq Unified Manager MysqlOncommand Insight+2 moreNov 21, 2024 Apr 22, 2021 N/A· v4 2.7 LOW· v3 4.0 MEDIUM· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are affected are 8.0.23 and prior. Easily exploitable vulnerability allows high privileged attack...Show more |
2Netapp Oracle5Active Iq Unified Manager MysqlOncommand Insight+2 moreNov 21, 2024 Apr 22, 2021 N/A· v4 4.9 MEDIUM· v3 4.0 MEDIUM· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.23 and prior. Easily exploitable vulnerability allows high privileged attacker with network...Show more |