Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
9.3
CVE-2021-22439
- EPSS 0.83%
- Veröffentlicht 29.06.2021 19:15:09
- Zuletzt bearbeitet 21.11.2024 05:50:07
There is a deserialization vulnerability in Huawei AnyOffice V200R006C10. An attacker can construct a specific request to exploit this vulnerability. Successfully exploiting this vulnerability, the attacker can execute remote malicious code injection...
6.5
CVE-2016-8275
- EPSS 0.87%
- Veröffentlicht 02.04.2017 20:59:01
- Zuletzt bearbeitet 13.05.2026 00:24:29
Huawei AnyOffice V200R006C00 could allow an authenticated, remote attacker to cause the software to deny services by uploading an XML bomb.
9.3
CVE-2016-3081
- EPSS 93.35%
- Veröffentlicht 26.04.2016 14:59:02
- Zuletzt bearbeitet 09.10.2026 14:43:05
Apache Struts 2.3.19 to 2.3.20.2, 2.3.21 to 2.3.24.1, and 2.3.25 to 2.3.28, when Dynamic Method Invocation is enabled, allow remote attackers to execute arbitrary code via method: prefix, related to chained expressions.
1