Vulnerabilities > Emqx > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-07-17 CVE-2023-37781 Path Traversal vulnerability in Emqx 4.3.8
An issue in the emqx_sn plugin of EMQX v4.3.8 allows attackers to execute a directory traversal via uploading a crafted .txt file.
network
low complexity
emqx CWE-22
6.5
2023-05-30 CVE-2023-33656 Allocation of Resources Without Limits or Throttling vulnerability in Emqx Nanomq 0.17.2
A memory leak vulnerability exists in NanoMQ 0.17.2.
local
low complexity
emqx CWE-770
5.5
2022-03-28 CVE-2021-46434 Unspecified vulnerability in Emqx 3.0.0
EMQ X Dashboard V3.0.0 is affected by username enumeration in the "/api /v3/auth" interface.
network
low complexity
emqx
5.3
2021-06-08 CVE-2021-33175 Allocation of Resources Without Limits or Throttling vulnerability in Emqx EMQ X Broker
EMQ X Broker versions prior to 4.2.8 are vulnerable to a denial of service attack as a result of excessive memory consumption due to the handling of untrusted inputs.
network
low complexity
emqx CWE-770
5.0