fail2ban records
9 published records for vendor fail2ban.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 88.9%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-20 Improper Input Validation3
- CWE-287 Improper Authentication1
- CWE-59 Improper Link Resolution Before File Access ('Link Following')1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
9 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
33Monitor | CVE-2021-32749No exploit | Possible RCE vulnerability in mailing action using mailutils (mail-whois)fail2ban · fail2ban · CWE-78 | High8.1 | — | 3.6% | Jul 16, 2021 |
31Monitor | CVE-2012-5642No exploit | server/action.py in Fail2ban before 0.8.8 does not properly handle the content of the matches tag, which might allow remote attackers to trifail2ban · fail2ban | High7.5 | — | 3.1% | Dec 31, 2012 |
29Monitor | CVE-2007-4321Proof of concept | fail2ban 0.8 and earlier does not properly parse sshd log files, which allows remote attackers to add arbitrary hosts to the /etc/hosts.denyfail2ban · fail2ban | Medium6.8 | — | 5.7% | Aug 13, 2007 |
21Monitor | CVE-2013-7176No exploit | config/filter.d/postfix.conf in the postfix filter in Fail2ban before 0.8.11 allows remote attackers to trigger the blocking of an arbitraryfail2ban · fail2ban · CWE-20 | Medium5.0 | — | 3.2% | Feb 1, 2014 |
21Monitor | CVE-2013-7177No exploit | config/filter.d/cyrus-imap.conf in the cyrus-imap filter in Fail2ban before 0.8.11 allows remote attackers to trigger the blocking of an arbfail2ban · fail2ban · CWE-20 | Medium5.0 | — | 3.2% | Feb 1, 2014 |
21Monitor | CVE-2006-6302No exploit | fail2ban 0.7.4 and earlier does not properly parse sshd log files, which allows remote attackers to add arbitrary hosts to the /etc/hosts.defail2ban · fail2ban | Medium5.0 | — | 1.8% | Dec 6, 2006 |
21Monitor | CVE-2013-2178No exploit | The apache-auth.conf, apache-nohome.conf, apache-noscript.conf, and apache-overflows.conf files in Fail2ban before 0.8.10 do not properly vafail2ban · fail2ban · CWE-20 | Medium5.0 | — | 1.8% | Aug 28, 2013 |
18Monitor | CVE-2009-5023No exploit | The (1) dshield.conf, (2) mail-buffered.conf, (3) mynetwatchman.conf, and (4) mynetwatchman.conf actions in action.d/ in Fail2ban before 0.8fail2ban · fail2ban · CWE-59 | Medium4.7 | — | 0.3% | Jun 10, 2014 |
16Monitor | CVE-2009-0362No exploit | filter.d/wuftpd.conf in Fail2ban 0.8.3 uses an incorrect regular expression that allows remote attackers to cause a denial of service (forcefail2ban · fail2ban · CWE-287 | Medium4.0 | — | 1.3% | Feb 12, 2009 |
- CVE-2021-3274933Monitor
Possible RCE vulnerability in mailing action using mailutils (mail-whois)
HighCVSS 8.1No exploitEPSS 4%fail2ban · fail2banJul 16, 2021
- CVE-2012-564231Monitor
server/action.py in Fail2ban before 0.8.8 does not properly handle the content of the matches tag, which might allow remote attackers to tri
HighCVSS 7.5No exploitEPSS 3%fail2ban · fail2banDec 31, 2012
- CVE-2007-432129Monitor
fail2ban 0.8 and earlier does not properly parse sshd log files, which allows remote attackers to add arbitrary hosts to the /etc/hosts.deny
MediumCVSS 6.8Proof of conceptEPSS 6%fail2ban · fail2banAug 13, 2007
- CVE-2013-717621Monitor
config/filter.d/postfix.conf in the postfix filter in Fail2ban before 0.8.11 allows remote attackers to trigger the blocking of an arbitrary
MediumCVSS 5.0No exploitEPSS 3%fail2ban · fail2banFeb 1, 2014
- CVE-2013-717721Monitor
config/filter.d/cyrus-imap.conf in the cyrus-imap filter in Fail2ban before 0.8.11 allows remote attackers to trigger the blocking of an arb
MediumCVSS 5.0No exploitEPSS 3%fail2ban · fail2banFeb 1, 2014
- CVE-2006-630221Monitor
fail2ban 0.7.4 and earlier does not properly parse sshd log files, which allows remote attackers to add arbitrary hosts to the /etc/hosts.de
MediumCVSS 5.0No exploitEPSS 2%fail2ban · fail2banDec 6, 2006
- CVE-2013-217821Monitor
The apache-auth.conf, apache-nohome.conf, apache-noscript.conf, and apache-overflows.conf files in Fail2ban before 0.8.10 do not properly va
MediumCVSS 5.0No exploitEPSS 2%fail2ban · fail2banAug 28, 2013
- CVE-2009-502318Monitor
The (1) dshield.conf, (2) mail-buffered.conf, (3) mynetwatchman.conf, and (4) mynetwatchman.conf actions in action.d/ in Fail2ban before 0.8
MediumCVSS 4.7No exploitEPSS 0%fail2ban · fail2banJun 10, 2014
- CVE-2009-036216Monitor
filter.d/wuftpd.conf in Fail2ban 0.8.3 uses an incorrect regular expression that allows remote attackers to cause a denial of service (force
MediumCVSS 4.0No exploitEPSS 1%fail2ban · fail2banFeb 12, 2009