VendorsFedora Projectextra_packages_for_enterprise_linux7.0
Vulnerabilities

Fedora Project Extra Packages For Enterprise Linux 7.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

34CVEs
CVE-2023-6395
Mock: privilege escalation for users that can access mock configuration
Published 2024-01-16 · Modified
9.8EPSS 0.016
CVE-2023-5550
Moodle: rce due to lfi risk in some misconfigured shared hosting environments
Published 2023-11-09 · Modified
9.8EPSS 0.014
CVE-2021-38714
In Plib through 1.85, there is an integer overflow vulnerability that could result in arbitrary code execution. The vulnerability is found in ssgLoadTGA() function in src/ssg/ssgLoadTGA.cxx file.
Published 2021-08-24 · Modified
9.3EPSS 0.028
CVE-2021-45079
In strongSwan before 5.9.5, a malicious responder can send an EAP-Success message too early without actually authenticating the client and (in the case of EAP methods with mutual authentication and EAP-only authentication for IKEv2) even without server authentication.
Published 2022-01-31 · Modified
9.1EPSS 0.028
CVE-2022-45152
A blind Server-Side Request Forgery (SSRF) vulnerability was found in Moodle. This flaw exists due to insufficient validation of user-supplied input in LTI provider library. The library does not utilise Moodle's inbuilt cURL helper, which resulted in a blind SSRF risk. An attacker can send a specially crafted HTTP request and trick the application to initiate requests to arbitrary systems. This vulnerability allows a remote attacker to perform SSRF attacks.
Published 2022-11-25 · Modified
9.1EPSS 0.014
CVE-2021-21897
A code execution vulnerability exists in the DL_Dxf::handleLWPolylineData functionality of Ribbonsoft dxflib 3.17.0. A specially-crafted .dxf file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.
Published 2021-09-08 · Modified
8.8EPSS 0.029
CVE-2023-5540
Moodle: authenticated remote code execution risk in imscp
Published 2023-11-09 · Modified
8.8EPSS 0.019
CVE-2023-5539
Moodle: authenticated remote code execution risk in lesson
Published 2023-11-09 · Modified
8.8EPSS 0.019
CVE-2022-0983
An SQL injection risk was identified in Badges code relating to configuring criteria. Access to the relevant capability was limited to teachers and managers by default.
Published 2022-03-25 · Modified
8.8EPSS 0.009
CVE-2021-43559
A flaw was found in Moodle in versions 3.11 to 3.11.3, 3.10 to 3.10.7, 3.9 to 3.9.10 and earlier unsupported versions. The "delete related badge" functionality did not include the necessary token check to prevent a CSRF risk.
Published 2021-11-22 · Modified
8.8EPSS 0.006
CVE-2022-0546
A missing bounds check in the image loader used in Blender 3.x and 2.93.8 leads to out-of-bounds heap access, allowing an attacker to cause denial of service, memory corruption or potentially code execution.
Published 2022-02-24 · Modified
7.8EPSS 0.012
CVE-2022-0367
A heap-based buffer overflow flaw was found in libmodbus in function modbus_reply() in src/modbus.c.
Published 2022-08-29 · Modified
7.8EPSS 0.005
CVE-2022-21698
Uncontrolled Resource Consumption in promhttp
Published 2022-02-15 · Modified
7.5EPSS 0.060
CVE-2020-9274
An issue was discovered in Pure-FTPd 1.0.49. An uninitialized pointer vulnerability has been detected in the diraliases linked list. When the *lookup_alias(const char alias) or print_aliases(void) function is called, they fail to correctly detect the end of the linked list and try to access a non-existent list member. This is related to init_aliases in diraliases.c.
Published 2020-02-26 · Modified
7.5EPSS 0.060
CVE-2022-28327
The generic P-256 feature in crypto/elliptic in Go before 1.17.9 and 1.18.x before 1.18.1 allows a panic via long scalar input.
Published 2022-04-20 · Modified
7.5EPSS 0.041
CVE-2021-23727
Stored Command Injection
Published 2021-12-29 · Modified
7.5EPSS 0.039
CVE-2022-0725
A flaw was found in keepass. The vulnerability occurs due to logging the plain text passwords in system log and leads to an Information Exposure vulnerability. This flaw allows an attacker to interact and read sensitive passwords and logs.
Published 2022-03-07 · Modified
7.5EPSS 0.025
CVE-2023-30944
Moodle: minor sql injection risk in external wiki method for listing pages
Published 2023-05-02 · Modified
7.3EPSS 0.011
CVE-2022-0571
Cross-site Scripting (XSS) - Reflected in phoronix-test-suite/phoronix-test-suite
Published 2022-02-13 · Modified
6.8EPSS 0.013
CVE-2023-30943
Moodle: tinymce loaders susceptible to arbitrary folder creation
Published 2023-05-02 · Modified
6.5EPSS 0.066
CVE-2021-3733
There's a flaw in urllib's AbstractBasicAuthHandler class. An attacker who controls a malicious HTTP server that an HTTP client (such as web browser) connects to, could trigger a Regular Expression Denial of Service (ReDOS) during an authentication request with a specially crafted payload that is sent by the server to the client. The greatest threat that this flaw poses is to application availability.
Published 2022-03-07 · Modified
6.5EPSS 0.047
CVE-2020-7106
Cacti 1.2.8 has stored XSS in data_sources.php, color_templates_item.php, graphs.php, graph_items.php, lib/api_automation.php, user_admin.php, and user_group_admin.php, as demonstrated by the description parameter in data_sources.php (a raw string from the database that is displayed by $header to trigger the XSS).
Published 2020-01-16 · Modified
6.1EPSS 0.022
CVE-2021-43558
A flaw was found in Moodle in versions 3.11 to 3.11.3, 3.10 to 3.10.7, 3.9 to 3.9.10 and earlier unsupported versions. A URL parameter in the filetype site administrator tool required extra sanitizing to prevent a reflected XSS risk.
Published 2021-11-22 · Modified
6.1EPSS 0.009
CVE-2020-27842
There's a flaw in openjpeg's t2 encoder in versions prior to 2.4.0. An attacker who is able to provide crafted input to be processed by openjpeg could cause a null pointer dereference. The highest impact of this flaw is to application availability.
Published 2021-01-05 · Modified
5.5EPSS 0.015
CVE-2023-51766
Exim before 4.97.1 allows SMTP smuggling in certain PIPELINING/CHUNKING configurations. Remote attackers can use a published exploitation technique to inject e-mail messages with a spoofed MAIL FROM address, allowing bypass of an SPF protection mechanism. This occurs because Exim supports <LF>.<CR><LF> but some other popular e-mail servers do not.
Published 2023-12-24 · Modified
5.3EPSS 0.011
CVE-2021-43560
A flaw was found in Moodle in versions 3.11 to 3.11.3, 3.10 to 3.10.7, 3.9 to 3.9.10 and earlier unsupported versions. Insufficient capability checks made it possible to fetch other users' calendar action events.
Published 2021-11-22 · Modified
5.3EPSS 0.010
CVE-2023-5549
Moodle: insufficient capability checks when updating the parent of a course category
Published 2023-11-09 · Modified
5.3EPSS 0.006
CVE-2023-5545
Moodle: auto-populated h5p author name causes a potential information leak
Published 2023-11-09 · Modified
5.3EPSS 0.005
CVE-2023-5548
Moodle: cache poisoning risk with endpoint revision numbers
Published 2023-11-09 · Modified
5.3EPSS 0.003
CVE-2020-27818
A flaw was found in the check_chunk_name() function of pngcheck-2.4.0. An attacker able to pass a malicious file to be processed by pngcheck could cause a temporary denial of service, posing a low risk to application availability.
Published 2020-12-08 · Modified
4.3EPSS 0.012
CVE-2023-5542
Moodle: students can view other users in "only see own membership" groups
Published 2023-11-09 · Modified
4.3EPSS 0.004
CVE-2023-5551
Moodle: forum summary report shows students from other groups when in separate groups mode
Published 2023-11-09 · Modified
3.3EPSS 0.003
CVE-2023-5543
Moodle: duplicating a bigbluebutton activity assigns the same meeting id
Published 2023-11-09 · Modified
3.3EPSS 0.002
CVE-2020-14394
An infinite loop flaw was found in the USB xHCI controller emulation of QEMU while computing the length of the Transfer Request Block (TRB) Ring. This flaw allows a privileged guest user to hang the QEMU process on the host, resulting in a denial of service.
Published 2022-08-17 · Modified
3.2EPSS 0.004