Show filters
10 Total Results
Displaying 1-10 of 10
Sort by:
Attacker Value
Low
CVE-2021-45046
Disclosure Date: December 14, 2021 (last updated October 07, 2023)
It was found that the fix to address CVE-2021-44228 in Apache Log4j 2.15.0 was incomplete in certain non-default configurations. This could allows attackers with control over Thread Context Map (MDC) input data when the logging configuration uses a non-default Pattern Layout with either a Context Lookup (for example, $${ctx:loginId}) or a Thread Context Map pattern (%X, %mdc, or %MDC) to craft malicious input data using a JNDI Lookup pattern resulting in an information leak and remote code execution in some environments and local code execution in all environments. Log4j 2.16.0 (Java 8) and 2.12.2 (Java 7) fix this issue by removing support for message lookup patterns and disabling JNDI functionality by default.
4
Attacker Value
Unknown
CVE-2023-44487
Disclosure Date: October 10, 2023 (last updated June 28, 2024)
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
1
Attacker Value
Unknown
CVE-2024-43594
Disclosure Date: December 12, 2024 (last updated January 13, 2025)
Microsoft System Center Elevation of Privilege Vulnerability
0
Attacker Value
Unknown
CVE-2024-21334
Disclosure Date: March 12, 2024 (last updated January 12, 2025)
Open Management Infrastructure (OMI) Remote Code Execution Vulnerability
0
Attacker Value
Unknown
CVE-2024-21330
Disclosure Date: March 12, 2024 (last updated January 12, 2025)
Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability
0
Attacker Value
Unknown
CVE-2023-36043
Disclosure Date: November 14, 2023 (last updated November 21, 2023)
Open Management Infrastructure Information Disclosure Vulnerability
0
Attacker Value
Unknown
CVE-2022-33640
Disclosure Date: August 09, 2022 (last updated January 11, 2025)
System Center Operations Manager: Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability
0
Attacker Value
Unknown
CVE-2022-29149
Disclosure Date: June 15, 2022 (last updated November 29, 2024)
Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability
0
Attacker Value
Unknown
CVE-2021-41352
Disclosure Date: October 13, 2021 (last updated November 28, 2024)
SCOM Information Disclosure Vulnerability
0
Attacker Value
Unknown
CVE-2021-1728
Disclosure Date: February 25, 2021 (last updated February 22, 2025)
System Center Operations Manager Elevation of Privilege Vulnerability
0