Apache

Security VulnerabilitiesNews

Apache Oozie XML Construction User Impersonation Vulnerability [CVE-2018-11799]

CVE Number – CVE-2018-11799 A vulnerability in Apache Oozie could allow an authenticated, remote attacker to conduct a user impersonation

Read More
Security VulnerabilitiesNews

Apache NetBeans Vulnerability [CVE-2018-17191]

CVE Number – CVE-2018-17191 Apache NetBeans (incubating) 9.0 NetBeans Proxy Auto-Configuration (PAC) interpretation is vulnerable for remote command execution (RCE).

Read More
Security VulnerabilitiesNews

Apache CouchDB Administrative Users HTTP API Privilege Escalation Vulnerability [CVE-2018-8007]

CVE Number – CVE-2018-8007 A vulnerability in Apache CouchDB could allow an authenticated, remote attacker to gain elevated privileges on

Read More
Security VulnerabilitiesNews

Apache Xerces-C XML Parser Nested DTD Denial of Service Vulnerability [CVE-2016-4463]

CVE Number – CVE-2016-4463 A vulnerability in the Apache Xerces-C XML parser could allow an unauthenticated, remote attacker to cause

Read More
Security VulnerabilitiesNews

Apache Syncope Sensitive Security Values Recovery Information Disclosure Vulnerability [CVE-2018-1322]

CVE Number = CVE-2018-1322 A vulnerability in Apache Syncope could allow an authenticated, remote attacker to access sensitive information on

Read More
Security VulnerabilitiesNews

Apache Tomcat Default Servlet Open Redirect Vulnerability [CVE-2018-11784]

CVE Number – CVE-2018-11784 A vulnerability in Apache Tomcat could allow an unauthenticated, remote attacker to conduct an open redirect

Read More
Security VulnerabilitiesNews

Apache PDFBox Page Tree Parsing Denial of Service Vulnerability [CVE-2018-11797]

CVE Number – CVE-2018-11797 A vulnerability in the Apache PDFBox parser could allow an unauthenticated, remote attacker to cause a

Read More
Security VulnerabilitiesNews

Apache Commons Compress ZipArchiveInputStream Denial of Service Vulnerability [CVE-2018-11771]

CVE number – CVE-2018-11771 A vulnerability in Apache Commons Compress could allow an unauthenticated, remote attacker to cause a denial

Read More
Security VulnerabilitiesNews

Apache Tomcat Native OCSP Responder Unauthorized Access Vulnerability [CVE-2018-8019]

CVE Number –  CVE-2018-8019 A vulnerability in the Online Certificate Status Protocol (OCSP) responder of Apache Tomcat Native could allow

Read More
Security VulnerabilitiesNews

Apache Spark Standalone Master, Mesos REST APIs Unauthorized Access Vulnerability [CVE-2018-11770]

CVE Number – CVE-2018-11770 A vulnerability in Apache Spark running standalone master with the REST API enabled, or running Mesos

Read More