apache

2,905 tracked vulnerabilities.

CVE-2015-7430 HIGH
Hadoop connector <2.7.0-3 - Info Disclosure
Jan 02, 2016
CVSS 8.4
EPSS 0.00
CVE-2015-1836 HIGH
IBM InfoSphere BigInsights 3.0-3.0.0.2 - Improper Access Control in ZooKeeper Coordination State
Dec 21, 2015
CVSS 7.3
EPSS 0.02
CVE-2015-1772 HIGH
IBM InfoSphere BigInsights 3.0-3.0.0.2 - Unauthenticated Authentication Bypass via LDAP Bind
Dec 21, 2015
CVSS 7.3
EPSS 0.00
CVE-2015-5204
Apache Cordova File Transfer Plugin <1.3.0 - CRLF Injection
Dec 17, 2015
EPSS 0.01
CVE-2015-6420 CRITICAL
Apache Commons Collections < 3.2.2 and < 4.1 - Remote Code Execution via Deserialization
Dec 15, 2015
CVSS 9.8
EPSS 0.21
CVE-2015-8320
Apache Cordova-Android <3.7.0 - Info Disclosure
Nov 23, 2015
EPSS 0.02
CVE-2015-5256
Apache Cordova-Android <4.1.0 - CSRF
Nov 23, 2015
EPSS 0.01
CVE-2015-5253
Apache CXF <2.7.18, <3.0.7, <3.1.3 - Auth Bypass
Nov 18, 2015
EPSS 0.00
CVE-2015-5214
LibreOffice <4.4.6,5.x <5.0.1 & Apache OpenOffice <4.1.2 - Denial of Service
Nov 10, 2015
EPSS 0.30
CVE-2015-5213
LibreOffice <4.4.5/Apache OpenOffice <4.1.2 - Memory Corruption
Nov 10, 2015
EPSS 0.14
CVE-2015-5212
LibreOffice <4.4.5 & Apache OpenOffice <4.1.2 - Memory Corruption
Nov 10, 2015
EPSS 0.43
CVE-2015-4551
LibreOffice < 4.4.5 and Apache OpenOffice < 4.1.2 - Information Disclosure via Embedded Local File Data
Nov 10, 2015
EPSS 0.08
CVE-2015-4940
Apache Ambari < 2.0.2 - Cleartext Password Exposure in Configuration File
Nov 08, 2015
EPSS 0.00
CVE-2015-4928
Apache Ambari < 2.0.2 - Exposure of Sensitive Information via Cleartext Password Display
Nov 08, 2015
EPSS 0.01
CVE-2015-5210
Apache Ambari <2.1.2 - Open Redirect
Nov 02, 2015
EPSS 0.01
CVE-2015-3270
Apache Ambari <2.0.2, <2.1.1 - Privilege Escalation
Nov 02, 2015
EPSS 0.01
CVE-2015-3186
Apache Ambari < 2.1.0 - Authenticated Stored Cross-Site Scripting via Configuration Note Field
Nov 02, 2015
EPSS 0.00
CVE-2015-1775
Apache Ambari < 2.1.0 - Authenticated Server-Side Request Forgery via Proxy Endpoint
Nov 02, 2015
EPSS 0.00
CVE-2015-5262
Apache HttpComponents HttpClient <4.3.6 - DoS
Oct 27, 2015
EPSS 0.01
CVE-2015-6524
Apache ActiveMQ 5.x < 5.10.1 - Credential Exposure via LDAPLoginModule Wildcard Username
Aug 24, 2015
EPSS 0.01
CVE-2015-1830
Apache ActiveMQ 5.x-5.11.1 Directory Traversal Shell Upload
Aug 19, 2015
EPSS 0.86
CVE-2015-3253 CRITICAL
Apache Groovy 1.7.0-2.4.3 - Remote Code Execution via MethodClosure Deserialization
Aug 13, 2015
CVSS 9.8
EPSS 0.70
CVE-2015-3187
Apache Subversion <1.7.21, <1.8.14 - Info Disclosure
Aug 12, 2015
EPSS 0.01
CVE-2015-3184
Apache Subversion <1.7.21, <1.8.14 - Info Disclosure
Aug 12, 2015
EPSS 0.17
CVE-2015-3185
Apache HTTP Server <2.4.14 - Auth Bypass
Jul 20, 2015
EPSS 0.06