VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Oracle
> Medium
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2021-12-09
CVE-2021-43797
Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers & clients.
network
low complexity
netty
quarkus
netapp
oracle
debian
6.5
6.5
2021-11-17
CVE-2021-41165
CKEditor4 is an open source WYSIWYG HTML editor.
network
low complexity
ckeditor
drupal
oracle
5.4
5.4
2021-11-17
CVE-2021-41164
CKEditor4 is an open source WYSIWYG HTML editor.
network
low complexity
ckeditor
drupal
oracle
fedoraproject
5.4
5.4
2021-11-17
CVE-2021-43976
In the Linux kernel through 5.15.2, mwifiex_usb_recv in drivers/net/wireless/marvell/mwifiex/usb.c allows an attacker (who can connect a crafted USB device) to cause a denial of service (skb_over_panic).
low complexity
linux
fedoraproject
debian
netapp
oracle
4.6
4.6
2021-11-15
CVE-2021-22959
HTTP Request Smuggling vulnerability in multiple products
The parser in accepts requests with a space (SP) right after the header name before the colon.
network
low complexity
llhttp
oracle
debian
CWE-444
6.5
6.5
2021-11-10
CVE-2021-3572
A flaw was found in python-pip in the way it handled Unicode separators in git references.
network
low complexity
pypa
oracle
5.7
5.7
2021-11-04
CVE-2021-43389
Out-of-bounds Read vulnerability in multiple products
An issue was discovered in the Linux kernel before 5.14.15.
local
low complexity
linux
redhat
debian
oracle
CWE-125
5.5
5.5
2021-11-03
CVE-2021-22960
HTTP Request Smuggling vulnerability in multiple products
The parse function in llhttp < 2.1.4 and < 6.0.6.
network
low complexity
llhttp
oracle
debian
CWE-444
6.5
6.5
2021-11-03
CVE-2020-27820
A vulnerability was found in Linux kernel, where a use-after-frees in nouveau's postclose() handler could happen if removing device (that is not common to remove video card physically without power-off, but same happens if "unbind" the driver).
local
high complexity
linux
fedoraproject
oracle
4.7
4.7
2021-11-01
CVE-2021-41973
Infinite Loop vulnerability in multiple products
In Apache MINA, a specifically crafted, malformed HTTP request may cause the HTTP Header decoder to loop indefinitely.
network
low complexity
apache
oracle
CWE-835
6.5
6.5
«
Previous
1
2
...
8
9
10
(current)
11
12
...
221
222
»
Next