CVE-2025-26517
- EPSS 0.03%
- Veröffentlicht 19.09.2025 18:53:07
- Zuletzt bearbeitet 23.09.2025 14:30:09
StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8.0.15 and 11.9.0.8 are susceptible to a privilege escalation vulnerability. Successful exploit could allow an unauthorized authenticated attacker to discover Grid node names and IP...
CVE-2025-26516
- EPSS 0.07%
- Veröffentlicht 19.09.2025 18:51:12
- Zuletzt bearbeitet 23.09.2025 14:31:10
StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8.0.15 and 11.9.0.8 are susceptible to a Denial of Service vulnerability. Successful exploit could allow an unauthenticated attacker to cause a Denial of Service on the Admin node.
CVE-2025-26515
- EPSS 0.04%
- Veröffentlicht 19.09.2025 18:34:17
- Zuletzt bearbeitet 23.09.2025 14:31:27
StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8.0.15 and 11.9.0.8 without Single Sign-on enabled are susceptible to a Server-Side Request Forgery (SSRF) vulnerability. Successful exploit could allow an unauthenticated attacker ...
CVE-2025-26514
- EPSS 0.04%
- Veröffentlicht 19.09.2025 18:31:54
- Zuletzt bearbeitet 23.09.2025 14:32:00
StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8.0.15 and 11.9.0.8 are susceptible to a Reflected Cross-Site Scripting vulnerability. Successful exploit could allow an attacker to view or modify configuration settings or add or ...
CVE-2024-21994
- EPSS 0.24%
- Veröffentlicht 08.11.2024 21:15:16
- Zuletzt bearbeitet 23.09.2025 14:33:14
StorageGRID (formerly StorageGRID Webscale) versions prior to 11.9 are susceptible to a Denial of Service (DoS) vulnerability. Successful exploit by an authenticated attacker could lead to a service crash.
CVE-2018-5495
- EPSS 0.74%
- Veröffentlicht 14.11.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:54
All StorageGRID Webscale versions are susceptible to a vulnerability which could permit an unauthenticated attacker to communicate with systems on the same network as the StorageGRID Webscale Admin Node via HTTP or to take over services on the Admin ...
CVE-2018-18065
- EPSS 4.29%
- Veröffentlicht 08.10.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:55:25
_set_key in agent/helpers/table_container.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an authenticated attacker to remotely cause the instance to crash via a crafted UDP packet, resulting in Denial of Service.
CVE-2018-18066
- EPSS 0.59%
- Veröffentlicht 08.10.2018 18:29:00
- Zuletzt bearbeitet 06.05.2025 15:15:54
snmp_oid_compare in snmplib/snmp_api.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an unauthenticated attacker to remotely cause the instance to crash via a crafted UDP packet, resulting in Denial of Service.
CVE-2016-10708
- EPSS 3.12%
- Veröffentlicht 21.01.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 02:44:33
sshd in OpenSSH before 7.4 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an out-of-sequence NEWKEYS message, as demonstrated by Honggfuzz, related to kex.c and packet.c.
CVE-2016-8610
- EPSS 69.1%
- Veröffentlicht 13.11.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
A denial of service flaw was found in OpenSSL 0.9.8, 1.0.1, 1.0.2 through 1.0.2h, and 1.1.0 in the way the TLS/SSL protocol defined processing of ALERT packets during a connection handshake. A remote attacker could use this flaw to make a TLS/SSL ser...