Apolloconfig
Apolloconfig Apollo: vulnerabilidades y CVE
Apolloconfig Apollo tiene 5 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE5
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2024-43397 | Media (4.3) | 0.35% | — | 20 ago 2024 | Apollo is a configuration management system. A vulnerability exists in the synchronization configuration feature that allows users to craft specific requests to bypass permission checks. This exploit enables them to… |
| CVE-2024-42662 | Alta (7.5) | 0.53% | — | 20 ago 2024 | An issue in apollocongif apollo v.2.2.0 allows a remote attacker to obtain sensitive information via a crafted request. |
| CVE-2022-4962 | Media (4.3) | 0.46% | — | 12 ene 2024 | A vulnerability was found in Apollo 2.0.0/2.0.1 and classified as problematic. Affected by this issue is some unknown functionality of the file /users of the component Configuration Center. The manipulation leads to… |
| CVE-2023-25570 | Alta (7.5) | 0.82% | — | 20 feb 2023 | Apollo is a configuration management system. Prior to version 2.1.0, there are potential security issues if users expose apollo-configservice to the internet, which is not recommended. This is because there is no… |
| CVE-2023-25569 | Media (5.7) | 0.35% | — | 20 feb 2023 | Apollo is a configuration management system. Prior to version 2.1.0, a low-privileged user can create a special web page. If an authenticated portal admin visits this page, the page can silently send a request to assign… |