Show filters
10 Total Results
Displaying 1-10 of 10
Sort by:
Attacker Value
Low

CVE-2021-45046

Disclosure Date: December 14, 2021 (last updated October 07, 2023)
It was found that the fix to address CVE-2021-44228 in Apache Log4j 2.15.0 was incomplete in certain non-default configurations. This could allows attackers with control over Thread Context Map (MDC) input data when the logging configuration uses a non-default Pattern Layout with either a Context Lookup (for example, $${ctx:loginId}) or a Thread Context Map pattern (%X, %mdc, or %MDC) to craft malicious input data using a JNDI Lookup pattern resulting in an information leak and remote code execution in some environments and local code execution in all environments. Log4j 2.16.0 (Java 8) and 2.12.2 (Java 7) fix this issue by removing support for message lookup patterns and disabling JNDI functionality by default.
Attacker Value
Unknown

CVE-2023-44487

Disclosure Date: October 10, 2023 (last updated June 28, 2024)
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
Attacker Value
Unknown

CVE-2024-43594

Disclosure Date: December 12, 2024 (last updated January 13, 2025)
Microsoft System Center Elevation of Privilege Vulnerability
0
Attacker Value
Unknown

CVE-2024-21334

Disclosure Date: March 12, 2024 (last updated January 12, 2025)
Open Management Infrastructure (OMI) Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2024-21330

Disclosure Date: March 12, 2024 (last updated January 12, 2025)
Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2023-36043

Disclosure Date: November 14, 2023 (last updated November 21, 2023)
Open Management Infrastructure Information Disclosure Vulnerability
Attacker Value
Unknown

CVE-2022-33640

Disclosure Date: August 09, 2022 (last updated January 11, 2025)
System Center Operations Manager: Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2022-29149

Disclosure Date: June 15, 2022 (last updated November 29, 2024)
Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability
0
Attacker Value
Unknown

CVE-2021-41352

Disclosure Date: October 13, 2021 (last updated November 28, 2024)
SCOM Information Disclosure Vulnerability
0
Attacker Value
Unknown

CVE-2021-1728

Disclosure Date: February 25, 2021 (last updated February 22, 2025)
System Center Operations Manager Elevation of Privilege Vulnerability
0