Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
traffic server vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2023-33933
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Software Foundation Apache Traffic Server.This issue affects Apache Traffic Server: from 8.0.0 up to and including 9.2.0. 8.x users should upgrade to 8.1.7 or later versions 9.x users should upgrad...
Apache Traffic Server
7.5
CVSSv3
CVE-2023-1899
Atlas Copco Power Focus 6000 web server is not a secure connection by default, which could allow an malicious user to gain sensitive information by monitoring network traffic between user and controller.
Atlascopco Power Focus 6000 Firmware
5.9
CVSSv3
CVE-2023-34363
An issue exists in Progress DataDirect Connect for ODBC prior to 08.02.2770 for Oracle. When using Oracle Advanced Security (OAS) encryption, if an error is encountered initializing the encryption object used to encrypt data, the code falls back to a different encryption mechanis...
Progress Datadirect Odbc Oracle Wire Protocol Driver
3.3
CVSSv3
CVE-2023-24476
An attacker with local access to the machine could record the traffic, which could allow them to resend requests without the server authenticating that the user or session are valid.
Ptc Vuforia Studio
7.8
CVSSv3
CVE-2023-2124
An out-of-bounds memory access flaw was found in the Linux kernel’s XFS file system in how a user restores an XFS image after failure (with a dirty log journal). This flaw allows a local user to crash or potentially escalate their privileges on the system.
Linux Linux Kernel
Debian Debian Linux 11.0
Debian Debian Linux 12.0
Netapp H300s Firmware -
Netapp H410c Firmware -
Netapp H410s Firmware -
Netapp H500s Firmware -
Netapp H700s Firmware -
7.5
CVSSv3
CVE-2023-2443
Rockwell Automation ThinManager product allows the use of medium strength ciphers. If the client requests an insecure cipher, a malicious actor could potentially decrypt traffic sent between the client and server API.
Rockwellautomation Thinmanager
7.5
CVSSv3
CVE-2023-2156
A flaw was found in the networking subsystem of the Linux kernel within the handling of the RPL protocol. This issue results from the lack of proper handling of user-supplied data, which can lead to an assertion failure. This may allow an unauthenticated remote malicious user to ...
Linux Linux Kernel
Redhat Enterprise Linux 9.0
Fedoraproject Fedora 38
Debian Debian Linux 10.0
7.5
CVSSv3
CVE-2023-29163
When UDP profile with idle timeout set to immediate or the value 0 is configured on a virtual server, undisclosed traffic can cause TMM to terminate. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
F5 Big-ip Advanced Firewall Manager 17.0.0
F5 Big-ip Access Policy Manager 17.0.0
F5 Big-ip Analytics 17.0.0
F5 Big-ip Application Security Manager 17.0.0
F5 Big-ip Application Acceleration Manager 17.0.0
F5 Big-ip Policy Enforcement Manager 17.0.0
F5 Big-ip Local Traffic Manager 17.0.0
F5 Big-ip Link Controller 17.0.0
F5 Big-ip Global Traffic Manager 17.0.0
F5 Big-ip Fraud Protection Service 17.0.0
F5 Big-ip Domain Name System 17.0.0
F5 Big-ip Advanced Web Application Firewall 17.0.0
F5 Big-ip Ssl Orchestrator 17.0.0
F5 Big-ip Domain Name System
F5 Big-ip Edge Gateway
F5 Big-ip Fraud Protection Service
F5 Big-ip Global Traffic Manager
F5 Big-ip Link Controller
F5 Big-ip Local Traffic Manager
F5 Big-ip Policy Enforcement Manager
F5 Big-ip Ssl Orchestrator
F5 Big-ip Webaccelerator
5.3
CVSSv3
CVE-2023-24594
When an SSL profile is configured on a Virtual Server, undisclosed traffic can cause an increase in CPU or SSL accelerator resource utilization. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
F5 Big-ip Advanced Firewall Manager 16.1.2
F5 Big-ip Access Policy Manager 16.1.2
F5 Big-ip Analytics 16.1.2
F5 Big-ip Application Security Manager 16.1.2
F5 Big-ip Application Acceleration Manager 16.1.2
F5 Big-ip Policy Enforcement Manager 16.1.2
F5 Big-ip Local Traffic Manager 16.1.2
F5 Big-ip Link Controller 16.1.2
F5 Big-ip Global Traffic Manager 16.1.2
F5 Big-ip Fraud Protection Service 16.1.2
F5 Big-ip Domain Name System 16.1.2
F5 Big-ip Advanced Web Application Firewall 16.1.2
F5 Big-ip Application Visibility And Reporting 16.1.2
F5 Big-ip Carrier-grade Nat 16.1.2
F5 Big-ip Ddos Hybrid Defender 16.1.2
F5 Big-ip Edge Gateway 16.1.2
F5 Big-ip Ssl Orchestrator 16.1.2
F5 Big-ip Webaccelerator 16.1.2
F5 Big-ip Websafe 16.1.2
F5 Big-ip Access Policy Manager 15.1.4.1
F5 Big-ip Advanced Firewall Manager 15.1.4.1
F5 Big-ip Advanced Web Application Firewall 15.1.4.1
4.4
CVSSv3
CVE-2023-2269
A denial of service problem was found, due to a possible recursive locking scenario, resulting in a deadlock in table_clear in drivers/md/dm-ioctl.c in the Linux Kernel Device Mapper-Multipathing sub-component.
Linux Linux Kernel 6.2
Fedoraproject Fedora 36
Fedoraproject Fedora 37
Fedoraproject Fedora 38
Debian Debian Linux 10.0
Debian Debian Linux 11.0
Debian Debian Linux 12.0
Netapp H300s Firmware -
Netapp H500s Firmware -
Netapp H700s Firmware -
Netapp H410s Firmware -
Netapp H410c Firmware -
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
validation
CVE-2012-1823
malicious code
CVE-2024-5770
CVE-2023-45866
CVE-2024-35687
local users
CVE-2024-31246
CVE-2024-35730
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »