Duraspace
Duraspace Dspace: vulnerabilidades y CVE
Duraspace Dspace tiene 9 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE9
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2022-31195 | Alta (7.2) | 1.4% | — | 1 ago 2022 | DSpace open source software is a repository application which provides durable access to digital resources. In affected versions the ItemImportServiceImpl is vulnerable to a path traversal vulnerability. This means a… |
| CVE-2022-31194 | Alta (7.2) | 1.1% | — | 1 ago 2022 | DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace. The JSPUI resumable upload implementations in SubmissionController… |
| CVE-2022-31193 | Media (6.1) | 0.73% | — | 1 ago 2022 | DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace. The JSPUI controlled vocabulary servlet is vulnerable to an open… |
| CVE-2022-31192 | Media (6.1) | 0.77% | — | 1 ago 2022 | DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace. The JSPUI "Request a Copy" feature does not properly escape values… |
| CVE-2022-31191 | Media (6.1) | 0.78% | — | 1 ago 2022 | DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace. The JSPUI spellcheck "Did you mean" HTML escapes the data-spell… |
| CVE-2022-31189 | Media (5.3) | 0.70% | — | 1 ago 2022 | DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace. When an "Internal System Error" occurs in the JSPUI, then entire… |
| CVE-2022-31190 | Media (5.3) | 0.90% | — | 1 ago 2022 | DSpace open source software is a repository application which provides durable access to digital resources. dspace-xmlui is a UI component for DSpace. In affected versions metadata on a withdrawn Item is exposed via the… |
| CVE-2021-41189 | Alta (7.2) | 2.1% | — | 29 oct 2021 | DSpace is an open source turnkey repository application. In version 7.0, any community or collection administrator can escalate their permission up to become system administrator. This vulnerability only exists in 7.0… |
| CVE-2016-10726 | Alta (7.5) | 2.9% | — | 10 jul 2018 | The XMLUI feature in DSpace before 3.6, 4.x before 4.5, and 5.x before 5.5 allows directory traversal via the themes/ path in an attack with two or more arbitrary characters and a colon before a pathname, as… |