fedoraproject records
5,450 published records for vendor fedoraproject.
Researcher profile
- Entered KEV
- 86 · 1.6%
- Weaponized
- 115 · 2.1%
- Pre-auth RCE
- 332
- With a fix record
- 92.7%
- Median publish → KEV
- 148 days
Recurring classes
- CWE-416 Use After Free522
- CWE-787 Out-of-bounds Write376
- CWE-125 Out-of-bounds Read309
- CWE-20 Improper Input Validation224
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer193
- CWE-476 NULL Pointer Dereference187
The weakness classes this vendor ships most often: where to look.
CWEAll records
5,450 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
100Now | CVE-2021-44228Weaponized | Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpointsapache · log4j · CWE-20 | Critical10.0 | KEV | 100.0% | Dec 10, 2021 |
99Now | CVE-2012-1823Weaponized | sapi/cgi/cgi_main.c in PHP before 5.3.12 and 5.4.x before 5.4.2, when configured as a CGI script (aka php-cgi), does not properly handle quephp · php · CWE-77 | Critical9.8 | KEV | 100.0% | May 11, 2012 |
99Now | CVE-2021-41773Weaponized | Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49apache · http server · CWE-22 | Critical9.8 | KEV | 100.0% | Oct 5, 2021 |
99Now | CVE-2024-4577Weaponized | Argument Injection in PHP-CGIphp · php · CWE-78 | Critical9.8 | KEV | 100.0% | Jun 9, 2024 |
99Now | CVE-2021-42013Weaponized | Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773)apache · http server · CWE-22 | Critical9.8 | KEV | 100.0% | Oct 7, 2021 |
99Now | CVE-2019-11043Weaponized | Underflow in PHP-FPM can lead to RCEphp · php · CWE-120 | Critical9.8 | KEV | 99.8% | Oct 28, 2019 |
99Now | CVE-2020-16846Weaponized | An issue was discovered in SaltStack Salt through 3002.saltstack · salt · CWE-78 | Critical9.8 | KEV | 99.6% | Nov 6, 2020 |
99Now | CVE-2020-1938Weaponized | When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming connections to Apache Tomcat.apache · geode | Critical9.8 | KEV | 99.3% | Feb 24, 2020 |
99Now | CVE-2020-7247Weaponized | smtp_mailaddr in smtp_session.c in OpenSMTPD 6.6, as used in OpenBSD 6.6 and other products, allows remote attackers to execute arbitrary coopenbsd · opensmtpd · CWE-78 | Critical9.8 | KEV | 99.0% | Jan 29, 2020 |
98Now | CVE-2019-5544Weaponized | OpenSLP as used in ESXi and the Horizon DaaS appliances has a heap overwrite issue.openslp · openslp · CWE-787 | Critical9.8 | KEV | 97.3% | Dec 6, 2019 |
96Now | CVE-2021-40438Weaponized | A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user.resf · rocky linux · CWE-918 | Critical9.0 | KEV | 100.0% | Sep 16, 2021 |
96Now | CVE-2021-45046Weaponized | Apache Log4j2 Thread Context Message Pattern and Context Lookup Pattern vulnerable to a denial of service attackapache · log4j · CWE-917 | Critical9.0 | KEV | 100.0% | Dec 14, 2021 |
95Now | CVE-2023-4863Weaponized | Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bogoogle · chrome · CWE-787 | High8.8 | KEV | 100.0% | Sep 12, 2023 |
93Now | CVE-2021-39144Weaponized | XStream is vulnerable to a Remote Command Execution attackxstream · xstream · CWE-94 | High8.5 | KEV | 98.1% | Aug 23, 2021 |
91Now | CVE-2021-22204Weaponized | Improper neutralization of user data in the DjVu file format in ExifTool versions 7.44 and up allows arbitrary code execution when parsing texiftool project · exiftool · CWE-94 | High7.8 | KEV | 100.0% | Apr 23, 2021 |
91Now | CVE-2021-3156Weaponized | Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root sudo project · sudo · CWE-193 | High7.8 | KEV | 100.0% | Jan 26, 2021 |
90Now | CVE-2014-0160Weaponized | The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packets, which allows remopenssl · openssl · CWE-125 | High7.5 | KEV | 100.0% | Apr 7, 2014 |
90Now | CVE-2023-44487Weaponized | The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, assiemens · simatic s7-1500 cpu 1518f-4 pn\/dp mfp firmware · CWE-400 | High7.5 | KEV | 100.0% | Oct 10, 2023 |
90Now | CVE-2019-5418Weaponized | There is a File Content Disclosure vulnerability in Action View <5.2.2.1, <5.1.6.2, <5.0.7.2, <4.2.11.1 and v3 where specially crafted acceprubyonrails · rails · CWE-22 | High7.5 | KEV | 98.5% | Mar 27, 2019 |
90Now | CVE-2021-21224Weaponized | Type confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arbitrary code inside a sandbox via a craftgoogle · chrome · CWE-843 | High8.8 | KEV | 84.2% | Apr 26, 2021 |
90Now | CVE-2021-44026Weaponized | Roundcube before 1.3.17 and 1.4.x before 1.4.12 is prone to a potential SQL injection via search or search_params.roundcube · webmail · CWE-89 | Critical9.8 | KEV | 69.9% | Nov 19, 2021 |
89Now | CVE-2021-39226Weaponized | Snapshot authentication bypass in grafanagrafana · grafana · CWE-287 | High7.3 | KEV | 99.9% | Oct 5, 2021 |
89Now | CVE-2022-0847Weaponized | A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe linux · linux kernel · CWE-665 | High7.8 | KEV | 92.8% | Mar 10, 2022 |
89Now | CVE-2020-6418Weaponized | Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted google · chrome · CWE-843 | High8.8 | KEV | 78.8% | Feb 27, 2020 |
86Now | CVE-2020-28949Weaponized | Archive_Tar through 1.4.10 has :// filename sanitization only to address phar attacks, and thus any other stream-wrapper attack (such as filphp · archive tar | High7.8 | KEV | 84.6% | Nov 19, 2020 |
- CVE-2021-44228100Now
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
CriticalCVSS 10.0KEVWeaponizedEPSS 100%apache · log4jDec 10, 2021
- CVE-2012-182399Now
sapi/cgi/cgi_main.c in PHP before 5.3.12 and 5.4.x before 5.4.2, when configured as a CGI script (aka php-cgi), does not properly handle que
CriticalCVSS 9.8KEVWeaponizedEPSS 100%php · phpMay 11, 2012
- CVE-2021-4177399Now
Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49
CriticalCVSS 9.8KEVWeaponizedEPSS 100%apache · http serverOct 5, 2021
- CVE-2024-457799Now
Argument Injection in PHP-CGI
CriticalCVSS 9.8KEVWeaponizedEPSS 100%php · phpJun 9, 2024
- CVE-2021-4201399Now
Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773)
CriticalCVSS 9.8KEVWeaponizedEPSS 100%apache · http serverOct 7, 2021
- CVE-2019-1104399Now
Underflow in PHP-FPM can lead to RCE
CriticalCVSS 9.8KEVWeaponizedEPSS 100%php · phpOct 28, 2019
- CVE-2020-1684699Now
An issue was discovered in SaltStack Salt through 3002.
CriticalCVSS 9.8KEVWeaponizedEPSS 100%saltstack · saltNov 6, 2020
- CVE-2020-193899Now
When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming connections to Apache Tomcat.
CriticalCVSS 9.8KEVWeaponizedEPSS 99%apache · geodeFeb 24, 2020
- CVE-2020-724799Now
smtp_mailaddr in smtp_session.c in OpenSMTPD 6.6, as used in OpenBSD 6.6 and other products, allows remote attackers to execute arbitrary co
CriticalCVSS 9.8KEVWeaponizedEPSS 99%openbsd · opensmtpdJan 29, 2020
- CVE-2019-554498Now
OpenSLP as used in ESXi and the Horizon DaaS appliances has a heap overwrite issue.
CriticalCVSS 9.8KEVWeaponizedEPSS 97%openslp · openslpDec 6, 2019
- CVE-2021-4043896Now
A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user.
CriticalCVSS 9.0KEVWeaponizedEPSS 100%resf · rocky linuxSep 16, 2021
- CVE-2021-4504696Now
Apache Log4j2 Thread Context Message Pattern and Context Lookup Pattern vulnerable to a denial of service attack
CriticalCVSS 9.0KEVWeaponizedEPSS 100%apache · log4jDec 14, 2021
- CVE-2023-486395Now
Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bo
HighCVSS 8.8KEVWeaponizedEPSS 100%google · chromeSep 12, 2023
- CVE-2021-3914493Now
XStream is vulnerable to a Remote Command Execution attack
HighCVSS 8.5KEVWeaponizedEPSS 98%xstream · xstreamAug 23, 2021
- CVE-2021-2220491Now
Improper neutralization of user data in the DjVu file format in ExifTool versions 7.44 and up allows arbitrary code execution when parsing t
HighCVSS 7.8KEVWeaponizedEPSS 100%exiftool project · exiftoolApr 23, 2021
- CVE-2021-315691Now
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root
HighCVSS 7.8KEVWeaponizedEPSS 100%sudo project · sudoJan 26, 2021
- CVE-2014-016090Now
The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packets, which allows rem
HighCVSS 7.5KEVWeaponizedEPSS 100%openssl · opensslApr 7, 2014
- CVE-2023-4448790Now
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as
HighCVSS 7.5KEVWeaponizedEPSS 100%siemens · simatic s7-1500 cpu 1518f-4 pn\/dp mfp firmwareOct 10, 2023
- CVE-2019-541890Now
There is a File Content Disclosure vulnerability in Action View <5.2.2.1, <5.1.6.2, <5.0.7.2, <4.2.11.1 and v3 where specially crafted accep
HighCVSS 7.5KEVWeaponizedEPSS 99%rubyonrails · railsMar 27, 2019
- CVE-2021-2122490Now
Type confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arbitrary code inside a sandbox via a craft
HighCVSS 8.8KEVWeaponizedEPSS 84%google · chromeApr 26, 2021
- CVE-2021-4402690Now
Roundcube before 1.3.17 and 1.4.x before 1.4.12 is prone to a potential SQL injection via search or search_params.
CriticalCVSS 9.8KEVWeaponizedEPSS 70%roundcube · webmailNov 19, 2021
- CVE-2021-3922689Now
Snapshot authentication bypass in grafana
HighCVSS 7.3KEVWeaponizedEPSS 100%grafana · grafanaOct 5, 2021
- CVE-2022-084789Now
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe
HighCVSS 7.8KEVWeaponizedEPSS 93%linux · linux kernelMar 10, 2022
- CVE-2020-641889Now
Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted
HighCVSS 8.8KEVWeaponizedEPSS 79%google · chromeFeb 27, 2020
- CVE-2020-2894986Now
Archive_Tar through 1.4.10 has :// filename sanitization only to address phar attacks, and thus any other stream-wrapper attack (such as fil
HighCVSS 7.8KEVWeaponizedEPSS 85%php · archive tarNov 19, 2020