thiscodecc
MoyunSec Vlab and Bing
3 credited records · 0 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
18Monitor | CVE-2023-52291No exploit | Apache StreamPark (incubating): Unchecked maven build params could trigger remote command executionapache · streampark · CWE-77 | Medium4.7 | — | 1.6% | Jul 17, 2024 |
32Monitor | CVE-2023-52290No exploit | Apache StreamPark (incubating): Unchecked SQL query fields trigger SQL injection vulnerabilityapache · streampark · CWE-89 | High8.1 | — | 0.6% | Jul 16, 2024 |
28Monitor | CVE-2023-51441No exploit | Apache Axis 1.x (EOL) may allow SSRF when untrusted input is passed to the service admin HTTP APIapache · axis · CWE-918 | High7.2 | — | 1.2% | Jan 6, 2024 |
- CVE-2023-5229118Monitor
Apache StreamPark (incubating): Unchecked maven build params could trigger remote command execution
MediumCVSS 4.7No exploitEPSS 2%apache · streamparkJul 17, 2024
- CVE-2023-5229032Monitor
Apache StreamPark (incubating): Unchecked SQL query fields trigger SQL injection vulnerability
HighCVSS 8.1No exploitEPSS 1%apache · streamparkJul 16, 2024
- CVE-2023-5144128Monitor
Apache Axis 1.x (EOL) may allow SSRF when untrusted input is passed to the service admin HTTP API
HighCVSS 7.2No exploitEPSS 1%apache · axisJan 6, 2024