VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Netapp
> Active IQ Unified Manager
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2019-08-19
CVE-2019-15212
Double Free vulnerability in multiple products
An issue was discovered in the Linux kernel before 5.1.8.
low complexity
linux
netapp
canonical
debian
opensuse
CWE-415
4.6
4.6
2019-08-19
CVE-2019-15211
Use After Free vulnerability in multiple products
An issue was discovered in the Linux kernel before 5.2.6.
low complexity
linux
netapp
canonical
debian
opensuse
CWE-416
4.6
4.6
2019-08-16
CVE-2019-15118
Uncontrolled Recursion vulnerability in multiple products
check_input_term in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles recursion, leading to kernel stack exhaustion.
local
low complexity
linux
canonical
debian
opensuse
netapp
CWE-674
5.5
5.5
2019-08-16
CVE-2019-15098
NULL Pointer Dereference vulnerability in multiple products
drivers/net/wireless/ath/ath6kl/usb.c in the Linux kernel through 5.2.9 has a NULL pointer dereference via an incomplete address in an endpoint descriptor.
low complexity
linux
canonical
opensuse
netapp
debian
CWE-476
4.6
4.6
2019-07-29
CVE-2019-14379
SubTypeValidator.java in FasterXML jackson-databind before 2.9.9.2 mishandles default typing when ehcache is used (because of net.sf.ehcache.transaction.manager.DefaultTransactionManagerLookup), leading to remote code execution.
network
low complexity
fasterxml
debian
netapp
fedoraproject
redhat
oracle
apple
critical
9.8
9.8
2019-07-26
CVE-2019-13990
XXE vulnerability in multiple products
initDocumentParser in xml/XMLSchedulingDataProcessor.java in Terracotta Quartz Scheduler through 2.3.0 allows XXE attacks via a job description.
network
low complexity
softwareag
oracle
apache
netapp
atlassian
CWE-611
critical
9.8
9.8
2019-07-26
CVE-2018-20855
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
An issue was discovered in the Linux kernel before 4.18.7.
local
low complexity
linux
opensuse
netapp
CWE-119
3.3
3.3
2019-07-26
CVE-2019-10744
Versions of lodash lower than 4.17.12 are vulnerable to Prototype Pollution.
network
low complexity
lodash
netapp
redhat
oracle
f5
critical
9.1
9.1
2019-07-25
CVE-2019-10184
Missing Authorization vulnerability in multiple products
undertow before version 2.0.23.Final is vulnerable to an information leak issue.
network
low complexity
redhat
netapp
CWE-862
7.5
7.5
2019-07-17
CVE-2019-13272
In the Linux kernel before 5.1.17, ptrace_link in kernel/ptrace.c mishandles the recording of the credentials of a process that wants to create a ptrace relationship, which allows local users to obtain root access by leveraging certain scenarios with a parent-child process relationship, where a parent drops privileges and calls execve (potentially allowing control by an attacker).
local
low complexity
linux
debian
fedoraproject
canonical
redhat
netapp
7.8
7.8
«
Previous
1
2
...
39
40
41
(current)
42
43
...
52
53
»
Next