Apsis
Apsis Pound: vulnerabilidades y CVE
Apsis Pound tiene 5 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE5
Últimos 12 meses0
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2018-21245 | Crítica (9.1) | 1.1% | — | 15 jun 2020 | Pound before 2.8 allows HTTP request smuggling, a related issue to CVE-2016-10711. |
| CVE-2016-10711 | Crítica (9.8) | 2.8% | — | 29 ene 2018 | Apsis Pound before 2.8a allows request smuggling via crafted headers, a different vulnerability than CVE-2005-3751. |
| CVE-2005-3751 | Media (4.3) | 1.5% | — | 22 nov 2005 | HTTP request smuggling vulnerability in Pound before 1.9.4 allows remote attackers to poison web caches, bypass web application firewall protection, and conduct XSS attacks via an HTTP request with conflicting… |
| CVE-2005-1391 | Alta (7.5) | 6.1% | — | 3 may 2005 | Buffer overflow in the add_port function in APSIS Pound 1.8.2 and earlier allows remote attackers to execute arbitrary code via a long Host HTTP header. |
| CVE-2004-2026 | Alta (7.5) | 6.6% | — | 31 dic 2004 | Format string vulnerability in the logmsg function in svc.c for Pound 1.5 and earlier allows remote attackers to execute arbitrary code via format string specifiers in syslog messages. |