Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
redhat cluster suite vulnerabilities and exploits
(subscribe to this query)
695
VMScore
CVE-2008-4192
The pserver_shutdown function in fence_egenera in cman 2.20080629 and 2.20080801 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/eglog temporary file.
Redhat Cman 2.20080801
Redhat Cman 2.20080629
1 EDB exploit
694
VMScore
CVE-2008-6560
Buffer overflow in CMAN - The Cluster Manager prior to 2.03.09-1 on Fedora 9 and Red Hat Enterprise Linux (RHEL) 5 allows malicious users to cause a denial of service (CPU consumption and memory corruption) via a cluster.conf file with many lines. NOTE: it is not clear whether th...
Redhat Cman
Redhat Cman 2.03.03-1
Redhat Cman 2.03.04-1
Redhat Cman 2.03.05-1
Redhat Cman 2.03.07-1
670
VMScore
CVE-2019-10086
In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added which allows suppressing the ability for an malicious user to access the classloader via the class property available on all Java objects. We, however were not using this by default characteristic of th...
Apache Commons Beanutils
Apache Nifi 1.14.0
Apache Nifi 1.15.0
Debian Debian Linux 8.0
Opensuse Leap 15.0
Opensuse Leap 15.1
Fedoraproject Fedora 30
Fedoraproject Fedora 31
Redhat Enterprise Linux Desktop 7.0
Redhat Enterprise Linux Workstation 7.0
Redhat Enterprise Linux Server 7.0
Redhat Enterprise Linux Server Aus 7.7
Redhat Enterprise Linux Server Tus 7.7
Redhat Enterprise Linux Eus 7.7
Redhat Jboss Enterprise Application Platform 7.2.0
Oracle Retail Xstore Point Of Service 15.0
Oracle Flexcube Private Banking 12.1.0
Oracle Banking Platform 2.4.0
Oracle Retail Xstore Point Of Service 7.1
Oracle Flexcube Private Banking 12.0.0
Oracle Service Bus 11.1.1.9.0
Oracle Fusion Middleware 11.1.1.9
641
VMScore
CVE-2008-4580
fence_manual, as used in fence 2.02.00-r1 and possibly cman, allows local users to modify arbitrary files via a symlink attack on the fence_manual.fifo temporary file.
Gentoo Cman 2.02.00
Gentoo Fence 2.02.00
614
VMScore
CVE-2008-6552
Red Hat Cluster Project 2.x allows local users to modify or overwrite arbitrary files via symlink attacks on files in /tmp, involving unspecified components in Resource Group Manager (aka rgmanager) prior to 2.03.09-1, gfs2-utils prior to 2.03.09-1, and CMAN - The Cluster Manager...
Redhat Cluster Project 2.03.01
Redhat Cluster Project 2.03.04
Redhat Cluster Project 2.99.09
Redhat Cluster Project 2.99.10
Redhat Cluster Project 2.99.02
Redhat Cluster Project 2.03.11
Redhat Cluster Project 2.99.08
Redhat Cluster Project 2.03.7
Redhat Cluster Project 2.99.06
Redhat Cluster Project 2.99.12
Redhat Cluster Project 2.01.00
Redhat Cluster Project 2.99.05
Redhat Cluster Project 2.03.05
Redhat Cluster Project 2.99.00
Redhat Cluster Project 2.03.10
Redhat Cluster Project 2.03.03
Redhat Cluster Project 2.99.13
Redhat Cluster Project 2.99.03
Redhat Cluster Project 2.03.09
Redhat Cluster Project 2.99.01
Redhat Cluster Project 2.03.08
Redhat Cluster Project 2.00.00
448
VMScore
CVE-2022-0778
The BN_mod_sqrt() function, which computes a modular square root, contains a bug that can cause it to loop forever for non-prime moduli. Internally this function is used when parsing certificates that contain elliptic curve public keys in compressed form or explicit elliptic curv...
Openssl Openssl
Debian Debian Linux 9.0
Debian Debian Linux 10.0
Debian Debian Linux 11.0
Netapp Santricity Smi-s Provider -
Netapp Storagegrid -
Netapp Clustered Data Ontap -
Netapp Clustered Data Ontap Antivirus Connector -
Netapp Cloud Volumes Ontap Mediator -
Netapp A250 Firmware -
Netapp 500f Firmware -
Fedoraproject Fedora 34
Fedoraproject Fedora 36
Tenable Nessus
Mariadb Mariadb
Nodejs Node.js
10 Github repositories
445
VMScore
CVE-2007-3380
The Distributed Lock Manager (DLM) in the cluster manager for Linux kernel 2.6.15 allows remote malicious users to cause a denial of service (loss of lock services) by connecting to the DLM port, which probably prevents other processes from accessing the service.
Linux Linux Kernel 2.6.15
445
VMScore
CVE-2007-3373
daemon.c in cman (redhat-cluster-suite) prior to 20070622 does not clear a buffer for reading requests, which might allow local users to obtain sensitive information from previous requests.
Redhat Cluster Suite
409
VMScore
CVE-2007-3374
Buffer overflow in cluster/cman/daemon/daemon.c in cman (redhat-cluster-suite) prior to 20070622 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via long client messages.
Redhat Cluster Suite
383
VMScore
CVE-2019-10219
A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.
Redhat Hibernate Validator
Redhat Hibernate Validator 6.1.0
Redhat Single Sign-on -
Redhat Jboss Enterprise Application Platform -
Redhat Jboss Data Grid -
Redhat Openshift Application Runtimes -
Redhat Fuse 1.0
Redhat Jboss Enterprise Application Platform 7.2
Redhat Jboss Enterprise Application Platform 7.3
Netapp Active Iq Unified Manager -
Netapp Element -
Netapp Snapcenter Plug-in -
Netapp Management Services For Element Software And Netapp Hci -
Oracle Flexcube Investor Servicing 12.3.0
Oracle Flexcube Investor Servicing 12.1.0
Oracle Solaris 11
Oracle Flexcube Private Banking 12.1.0
Oracle Insurance Policy Administration J2ee 10.2.0
Oracle Flexcube Private Banking 12.0.0
Oracle Flexcube Investor Servicing 12.0.4
Oracle Weblogic Server 12.1.3.0.0
Oracle Retail Integration Bus 13.0
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-28995
CVE-2024-36680
CVE-2024-35537
unauthorized
CVE-2024-21518
CVE-2024-37673
cross-site scripting
SSRF
CVE-2024-6241
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »