Siebene@
3 credited records · 0 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
68This week | CVE-2023-49070Weaponized | Pre-auth RCE in Apache Ofbiz 18.12.09 due to XML-RPC still presentapache · ofbiz · CWE-94 | Critical9.8 | — | 95.4% | Dec 5, 2023 |
40Plan | CVE-2023-37895No exploit | Apache Jackrabbit RMI access can lead to RCEapache · jackrabbit · CWE-502 | Critical9.8 | — | 3.2% | Jul 25, 2023 |
40Plan | CVE-2023-26119No exploit | Versions of the package net.sourceforge.htmlunit:htmlunit from 0 and before 3.0.0 are vulnerable to Remote Code Execution (RCE) via XSTL, whhtmlunit · htmlunit · CWE-94 | Critical9.8 | — | 2.5% | Apr 3, 2023 |
- CVE-2023-4907068This week
Pre-auth RCE in Apache Ofbiz 18.12.09 due to XML-RPC still present
CriticalCVSS 9.8WeaponizedEPSS 95%apache · ofbizDec 5, 2023
- CVE-2023-3789540Plan
Apache Jackrabbit RMI access can lead to RCE
CriticalCVSS 9.8No exploitEPSS 3%apache · jackrabbitJul 25, 2023
- CVE-2023-2611940Plan
Versions of the package net.sourceforge.htmlunit:htmlunit from 0 and before 3.0.0 are vulnerable to Remote Code Execution (RCE) via XSTL, wh
CriticalCVSS 9.8No exploitEPSS 3%htmlunit · htmlunitApr 3, 2023