İçeriğe atla
Noroxi

h2database kayıtları

h2database üreticisine ait 6 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
1 · %16,7
Pre-auth RCE
2
Düzeltme kaydı olan
%83,3
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

6 kayıt
  • CVE-2021-42392
    64Bu hafta

    The org.h2.util.JdbcUtils.getConnection method of the H2 database takes as parameters the class name of the driver and URL of the database.

    KritikCVSS 9,8Kavram kanıtıEPSS %83

    h2database · h210 Oca 2022

  • CVE-2022-23221
    58Planlayın

    H2 Console before 2.1.210 allows remote attackers to execute arbitrary code via a jdbc:h2:mem JDBC URL containing the IGNORE_UNKNOWN_SETTING

    KritikCVSS 9,8Kavram kanıtıEPSS %65

    h2database · h219 Oca 2022

  • CVE-2018-10054
    45Planlayın

    H2 1.4.197, as used in Datomic before 0.9.5697 and other products, allows remote code execution because CREATE ALIAS can execute arbitrary J

    YüksekCVSS 8,8SilahlaştırılmışEPSS %34

    cognitect · datomic11 Nis 2018

  • CVE-2021-23463
    37İzleyin

    XML External Entity (XXE) Injection

    KritikCVSS 9,1İstismar yokEPSS %3

    h2database · h210 Ara 2021

  • CVE-2022-45868
    31İzleyin

    The web-based admin console in H2 Database Engine before 2.2.220 can be started via the CLI with the argument -webAdminPassword, which allow

    YüksekCVSS 7,8İstismar yokEPSS %0

    h2database · h223 Kas 2022

  • CVE-2018-14335
    30İzleyin

    An issue was discovered in H2 1.4.197.

    OrtaCVSS 6,5Kavram kanıtıEPSS %13

    h2database · h224 Tem 2018