Adacore

Ada Web Services

3 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.17%
  • Published 25.09.2024 17:15:18
  • Last modified 26.09.2024 14:35:13

An issue was discovered in AdaCore ada_web_services 20.0 allows an attacker to escalate privileges and steal sessions via the Random_String() function in the src/core/aws-utils.adb module.

  • EPSS 0.22%
  • Published 13.08.2024 17:15:23
  • Last modified 14.08.2024 02:07:05

An issue was discovered in Ada Web Server 20.0. When configured to use SSL (which is not the default setting), the SSL/TLS used to establish connections to external services is done without proper hostname validation. This is exploitable by man-in-th...

  • EPSS 0.56%
  • Published 08.02.2012 21:55:01
  • Last modified 11.04.2025 00:51:21

AdaCore Ada Web Services (AWS) before 2.10.2 computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many...