getahead records
4 published records for vendor getahead.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 50%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2006-6916No exploit | Getahead Direct Web Remoting (DWR) before 1.1.3 allows attackers to cause a denial of service (infinite loop) via unknown vectors related togetahead · direct web remoting | High7.5 | — | 3.0% | Dec 31, 2006 |
30Monitor | CVE-2007-0184No exploit | Getahead Direct Web Remoting (DWR) before 1.1.4 allows attackers to obtain unauthorized access to public methods via a crafted request that getahead · direct web remoting | High7.5 | — | 1.5% | Jan 12, 2007 |
21Monitor | CVE-2007-2377No exploit | The Getahead Direct Web Remoting (DWR) framework 1.1.4 exchanges data using JavaScript Object Notation (JSON) without an associated protectigetahead · direct web remoting | Medium5.0 | — | 1.9% | Apr 30, 2007 |
20Monitor | CVE-2007-0185No exploit | Getahead Direct Web Remoting (DWR) before 1.1.4 allows attackers to cause a denial of service (memory exhaustion and servlet outage) via unkgetahead · direct web remoting | Medium5.0 | — | 1.5% | Jan 12, 2007 |
- CVE-2006-691631Monitor
Getahead Direct Web Remoting (DWR) before 1.1.3 allows attackers to cause a denial of service (infinite loop) via unknown vectors related to
HighCVSS 7.5No exploitEPSS 3%getahead · direct web remotingDec 31, 2006
- CVE-2007-018430Monitor
Getahead Direct Web Remoting (DWR) before 1.1.4 allows attackers to obtain unauthorized access to public methods via a crafted request that
HighCVSS 7.5No exploitEPSS 1%getahead · direct web remotingJan 12, 2007
- CVE-2007-237721Monitor
The Getahead Direct Web Remoting (DWR) framework 1.1.4 exchanges data using JavaScript Object Notation (JSON) without an associated protecti
MediumCVSS 5.0No exploitEPSS 2%getahead · direct web remotingApr 30, 2007
- CVE-2007-018520Monitor
Getahead Direct Web Remoting (DWR) before 1.1.4 allows attackers to cause a denial of service (memory exhaustion and servlet outage) via unk
MediumCVSS 5.0No exploitEPSS 2%getahead · direct web remotingJan 12, 2007