Логотип exploitDog
bind:CVE-2018-1335
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-1335

Количество 5

Количество 5

ubuntu логотип

CVE-2018-1335

почти 8 лет назад

From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted headers to tika-server that could be used to inject commands into the command line of the server running tika-server. This vulnerability only affects those running tika-server on a server that is open to untrusted clients. The mitigation is to upgrade to Tika 1.18.

CVSS3: 8.1
EPSS: Критический
redhat логотип

CVE-2018-1335

почти 8 лет назад

From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted headers to tika-server that could be used to inject commands into the command line of the server running tika-server. This vulnerability only affects those running tika-server on a server that is open to untrusted clients. The mitigation is to upgrade to Tika 1.18.

CVSS3: 8.8
EPSS: Критический
nvd логотип

CVE-2018-1335

почти 8 лет назад

From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted headers to tika-server that could be used to inject commands into the command line of the server running tika-server. This vulnerability only affects those running tika-server on a server that is open to untrusted clients. The mitigation is to upgrade to Tika 1.18.

CVSS3: 8.1
EPSS: Критический
debian логотип

CVE-2018-1335

почти 8 лет назад

From Apache Tika versions 1.7 to 1.17, clients could send carefully cr ...

CVSS3: 8.1
EPSS: Критический
github логотип

GHSA-9r24-gp44-h3pm

больше 7 лет назад

Command injection in org.apache.tika:tika-core

CVSS3: 8.1
EPSS: Критический

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2018-1335

From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted headers to tika-server that could be used to inject commands into the command line of the server running tika-server. This vulnerability only affects those running tika-server on a server that is open to untrusted clients. The mitigation is to upgrade to Tika 1.18.

CVSS3: 8.1
94%
Критический
почти 8 лет назад
redhat логотип
CVE-2018-1335

From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted headers to tika-server that could be used to inject commands into the command line of the server running tika-server. This vulnerability only affects those running tika-server on a server that is open to untrusted clients. The mitigation is to upgrade to Tika 1.18.

CVSS3: 8.8
94%
Критический
почти 8 лет назад
nvd логотип
CVE-2018-1335

From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted headers to tika-server that could be used to inject commands into the command line of the server running tika-server. This vulnerability only affects those running tika-server on a server that is open to untrusted clients. The mitigation is to upgrade to Tika 1.18.

CVSS3: 8.1
94%
Критический
почти 8 лет назад
debian логотип
CVE-2018-1335

From Apache Tika versions 1.7 to 1.17, clients could send carefully cr ...

CVSS3: 8.1
94%
Критический
почти 8 лет назад
github логотип
GHSA-9r24-gp44-h3pm

Command injection in org.apache.tika:tika-core

CVSS3: 8.1
94%
Критический
больше 7 лет назад

Уязвимостей на страницу