Записи nginx
7 опубликованных записей вендора nginx.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 42,9 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-754 Improper Check for Unusual or Exceptional Conditions1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2021-46461Эксплойта нет | njs through 0.7.0, used in NGINX, was discovered to contain an out-of-bounds array access via njs_vmcode_typeof in /src/njs_vmcode.c.nginx · njs · CWE-119 | Критическая9,8 | — | 3,1 % | 14 февр. 2022 г. |
30Наблюдать | CVE-2022-35173Эксплойта нет | An issue was discovered in Nginx NJS v0.7.5.nginx · njs · CWE-754 | Высокая7,5 | — | 1,4 % | 18 авг. 2022 г. |
24Наблюдать | CVE-2009-3898Proof of concept | Directory traversal vulnerability in src/http/modules/ngx_http_dav_module.c in nginx (aka Engine X) before 0.7.63, and 0.8.x before 0.8.17, nginx · nginx · CWE-22 | Средняя4,9 | — | 15,9 % | 24 нояб. 2009 г. |
23Наблюдать | CVE-2009-3896Эксплойта нет | src/http/ngx_http_parse.c in nginx (aka Engine X) 0.1.0 through 0.4.14, 0.5.x before 0.5.38, 0.6.x before 0.6.39, 0.7.x before 0.7.62, and 0nginx · nginx · CWE-119 | Средняя5,0 | — | 10,2 % | 24 нояб. 2009 г. |
22Наблюдать | CVE-2022-29779Эксплойта нет | Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_value_own_enumerate at src/njs_value.c.nginx · njs | Средняя5,5 | — | 0,4 % | 2 июн. 2022 г. |
22Наблюдать | CVE-2022-29780Эксплойта нет | Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_array_prototype_sort at src/njs_array.c.nginx · njs | Средняя5,5 | — | 0,4 % | 2 июн. 2022 г. |
22Наблюдать | CVE-2022-30503Эксплойта нет | Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_set_number at src/njs_value.h.nginx · njs | Средняя5,5 | — | 0,3 % | 2 июн. 2022 г. |
- CVE-2021-4646140В плане
njs through 0.7.0, used in NGINX, was discovered to contain an out-of-bounds array access via njs_vmcode_typeof in /src/njs_vmcode.c.
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %nginx · njs14 февр. 2022 г.
- CVE-2022-3517330Наблюдать
An issue was discovered in Nginx NJS v0.7.5.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %nginx · njs18 авг. 2022 г.
- CVE-2009-389824Наблюдать
Directory traversal vulnerability in src/http/modules/ngx_http_dav_module.c in nginx (aka Engine X) before 0.7.63, and 0.8.x before 0.8.17,
СредняяCVSS 4,9Proof of conceptEPSS 16 %nginx · nginx24 нояб. 2009 г.
- CVE-2009-389623Наблюдать
src/http/ngx_http_parse.c in nginx (aka Engine X) 0.1.0 through 0.4.14, 0.5.x before 0.5.38, 0.6.x before 0.6.39, 0.7.x before 0.7.62, and 0
СредняяCVSS 5,0Эксплойта нетEPSS 10 %nginx · nginx24 нояб. 2009 г.
- CVE-2022-2977922Наблюдать
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_value_own_enumerate at src/njs_value.c.
СредняяCVSS 5,5Эксплойта нетEPSS 0 %nginx · njs2 июн. 2022 г.
- CVE-2022-2978022Наблюдать
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_array_prototype_sort at src/njs_array.c.
СредняяCVSS 5,5Эксплойта нетEPSS 0 %nginx · njs2 июн. 2022 г.
- CVE-2022-3050322Наблюдать
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_set_number at src/njs_value.h.
СредняяCVSS 5,5Эксплойта нетEPSS 0 %nginx · njs2 июн. 2022 г.