CVE-2024-36401
- EPSS 94.43%
- Veröffentlicht 01.07.2024 16:15:04
- Zuletzt bearbeitet 24.10.2025 14:00:22
GeoServer is an open source server that allows users to share and edit geospatial data. Prior to versions 2.22.6, 2.23.6, 2.24.4, and 2.25.2, multiple OGC request parameters allow Remote Code Execution (RCE) by unauthenticated users through specially...
CVE-2024-34696
- EPSS 0.42%
- Veröffentlicht 01.07.2024 15:15:16
- Zuletzt bearbeitet 21.11.2024 09:19:13
GeoServer is an open source server that allows users to share and edit geospatial data. Starting in version 2.10.0 and prior to versions 2.24.4 and 2.25.1, GeoServer's Server Status page and REST API lists all environment variables and Java propertie...
CVE-2024-24749
- EPSS 0.3%
- Veröffentlicht 01.07.2024 14:15:05
- Zuletzt bearbeitet 04.11.2025 19:16:57
GeoServer is an open source server that allows users to share and edit geospatial data. Prior to versions 2.23.5 and 2.24.3, if GeoServer is deployed in the Windows operating system using an Apache Tomcat web application server, it is possible to byp...
CVE-2024-23821
- EPSS 0.46%
- Veröffentlicht 20.03.2024 18:15:10
- Zuletzt bearbeitet 17.12.2024 20:21:38
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. A stored cross-site scripting (XSS) vulnerability exists in versions prior to 2.23.4 and 2.24.1 that enables an authenticated administrat...
CVE-2024-23819
- EPSS 0.4%
- Veröffentlicht 20.03.2024 18:15:09
- Zuletzt bearbeitet 17.12.2024 20:13:05
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. A stored cross-site scripting (XSS) vulnerability exists in versions prior to 2.23.4 and 2.24.1 that enables an authenticated administrat...
CVE-2024-23818
- EPSS 0.45%
- Veröffentlicht 20.03.2024 18:15:09
- Zuletzt bearbeitet 17.12.2024 20:13:27
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. A stored cross-site scripting (XSS) vulnerability exists in versions prior to 2.23.3 and 2.24.1 that enables an authenticated administrat...
CVE-2024-23643
- EPSS 0.41%
- Veröffentlicht 20.03.2024 18:15:09
- Zuletzt bearbeitet 17.12.2024 20:13:38
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. A stored cross-site scripting (XSS) vulnerability exists in versions prior to 2.23.2 and 2.24.1 that enables an authenticated administrat...
CVE-2024-23642
- EPSS 0.4%
- Veröffentlicht 20.03.2024 18:15:08
- Zuletzt bearbeitet 17.12.2024 20:13:55
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. A stored cross-site scripting (XSS) vulnerability exists in versions prior to 2.23.4 and 2.24.1 that enables an authenticated administrat...
CVE-2024-23640
- EPSS 0.42%
- Veröffentlicht 20.03.2024 16:15:08
- Zuletzt bearbeitet 17.12.2024 20:14:43
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. A stored cross-site scripting (XSS) vulnerability exists in versions prior to 2.23.3 and 2.24.0 that enables an authenticated administrat...
- EPSS 0.88%
- Veröffentlicht 20.03.2024 16:15:07
- Zuletzt bearbeitet 17.12.2024 20:20:50
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. An arbitrary file renaming vulnerability exists in versions prior to 2.23.5 and 2.24.2 that enables an authenticated administrator with p...