📦 Instantis Enterprisetrack

by Oracle

🔍 What is Instantis Enterprisetrack?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-42013

CRITICAL CVSS 9.8 Oct 7, 2021

CVE-2021-42013 is a critical path traversal vulnerability in Apache HTTP Server that allows attackers to access files outside configured directories. If CGI scripts are enabled for aliased paths, this...

CVE-2021-41773

CRITICAL CVSS 9.8 Oct 5, 2021

CVE-2021-41773 is a path traversal vulnerability in Apache HTTP Server 2.4.49 that allows attackers to access files outside configured directories. If CGI is enabled, this can lead to remote code exec...

CVE-2021-39275

CRITICAL CVSS 9.8 Sep 16, 2021

CVE-2021-39275 is a critical buffer overflow vulnerability in Apache HTTP Server's ap_escape_quotes() function that could allow remote code execution or denial of service. The vulnerability affects Ap...

CVE-2021-26691

CRITICAL CVSS 9.8 Jun 10, 2021

CVE-2021-26691 is a critical heap overflow vulnerability in Apache HTTP Server that allows remote attackers to execute arbitrary code or cause denial of service. Attackers can exploit this by sending ...

CVE-2021-44224

HIGH CVSS 8.2 Dec 20, 2021

This vulnerability in Apache HTTP Server allows attackers to crash the server via NULL pointer dereference or perform Server-Side Request Forgery (SSRF) when the server is configured as a forward prox...

CVE-2021-36160

HIGH CVSS 7.5 Sep 16, 2021

CVE-2021-36160 is an out-of-bounds read vulnerability in Apache HTTP Server's mod_proxy_uwsgi module. A specially crafted URI path can cause the server to read beyond allocated memory boundaries, lead...

CVE-2021-2351

HIGH CVSS 8.3 Jul 21, 2021

This vulnerability in Oracle Database's Advanced Networking Option allows attackers to bypass network encryption protections and potentially compromise the component. It affects Oracle Database Server...

CVE-2020-13950

HIGH CVSS 7.5 Jun 10, 2021

CVE-2020-13950 is a NULL pointer dereference vulnerability in Apache HTTP Server's mod_proxy_http module that allows remote attackers to cause a denial of service by sending specially crafted HTTP req...

CVE-2021-26690

HIGH CVSS 7.5 Jun 10, 2021

CVE-2021-26690 is a NULL pointer dereference vulnerability in Apache HTTP Server's mod_session module that can be triggered by a specially crafted Cookie header. This causes the server to crash, resul...

CVE-2021-25122

HIGH CVSS 7.5 Mar 1, 2021

This vulnerability in Apache Tomcat allows HTTP/2 cleartext (h2c) connections to leak request data between users. When processing h2c requests, Tomcat could duplicate headers and limited body content ...