nginx kayıtları
nginx üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %42,9
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-754 Improper Check for Unusual or Exceptional Conditions1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2021-46461İstismar yok | njs through 0.7.0, used in NGINX, was discovered to contain an out-of-bounds array access via njs_vmcode_typeof in /src/njs_vmcode.c.nginx · njs · CWE-119 | Kritik9,8 | — | %3,1 | 14 Şub 2022 |
30İzleyin | CVE-2022-35173İstismar yok | An issue was discovered in Nginx NJS v0.7.5.nginx · njs · CWE-754 | Yüksek7,5 | — | %1,4 | 18 Ağu 2022 |
24İzleyin | CVE-2009-3898Kavram kanıtı | Directory traversal vulnerability in src/http/modules/ngx_http_dav_module.c in nginx (aka Engine X) before 0.7.63, and 0.8.x before 0.8.17, nginx · nginx · CWE-22 | Orta4,9 | — | %15,9 | 24 Kas 2009 |
23İzleyin | CVE-2009-3896İstismar yok | src/http/ngx_http_parse.c in nginx (aka Engine X) 0.1.0 through 0.4.14, 0.5.x before 0.5.38, 0.6.x before 0.6.39, 0.7.x before 0.7.62, and 0nginx · nginx · CWE-119 | Orta5,0 | — | %10,2 | 24 Kas 2009 |
22İzleyin | CVE-2022-29779İstismar yok | Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_value_own_enumerate at src/njs_value.c.nginx · njs | Orta5,5 | — | %0,4 | 2 Haz 2022 |
22İzleyin | CVE-2022-29780İstismar yok | Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_array_prototype_sort at src/njs_array.c.nginx · njs | Orta5,5 | — | %0,4 | 2 Haz 2022 |
22İzleyin | CVE-2022-30503İstismar yok | Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_set_number at src/njs_value.h.nginx · njs | Orta5,5 | — | %0,3 | 2 Haz 2022 |
- CVE-2021-4646140Planlayın
njs through 0.7.0, used in NGINX, was discovered to contain an out-of-bounds array access via njs_vmcode_typeof in /src/njs_vmcode.c.
KritikCVSS 9,8İstismar yokEPSS %3nginx · njs14 Şub 2022
- CVE-2022-3517330İzleyin
An issue was discovered in Nginx NJS v0.7.5.
YüksekCVSS 7,5İstismar yokEPSS %1nginx · njs18 Ağu 2022
- CVE-2009-389824İzleyin
Directory traversal vulnerability in src/http/modules/ngx_http_dav_module.c in nginx (aka Engine X) before 0.7.63, and 0.8.x before 0.8.17,
OrtaCVSS 4,9Kavram kanıtıEPSS %16nginx · nginx24 Kas 2009
- CVE-2009-389623İzleyin
src/http/ngx_http_parse.c in nginx (aka Engine X) 0.1.0 through 0.4.14, 0.5.x before 0.5.38, 0.6.x before 0.6.39, 0.7.x before 0.7.62, and 0
OrtaCVSS 5,0İstismar yokEPSS %10nginx · nginx24 Kas 2009
- CVE-2022-2977922İzleyin
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_value_own_enumerate at src/njs_value.c.
OrtaCVSS 5,5İstismar yokEPSS %0nginx · njs2 Haz 2022
- CVE-2022-2978022İzleyin
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_array_prototype_sort at src/njs_array.c.
OrtaCVSS 5,5İstismar yokEPSS %0nginx · njs2 Haz 2022
- CVE-2022-3050322İzleyin
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_set_number at src/njs_value.h.
OrtaCVSS 5,5İstismar yokEPSS %0nginx · njs2 Haz 2022