Support Us — Your donation helps us keep running

Goal: 1000 CNY,Raised: 1000 CNY

100.0%
Associated Vulnerability
Found 20 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2022-21949 Multiple XXE vulnerabilities in OBS SUSEOpen Build Service High 8.8 2022-05-03 07:50:09 Deep Dive
CVE-2020-8031 obs: Stored XSS openSUSEOpen Build Service Medium 6.3 2021-02-11 15:10:16 Deep Dive
CVE-2018-12475 obs-service-download_files allows downloading from localhost or intranet hosts openSUSEOpen Build Service Medium 6.5 2020-09-01 11:55:12 Deep Dive
CVE-2020-8021 unauthorized read access to files where sourceaccess is disabled via a crafted _service file in Open Build Service openSUSEOpen Build Service Medium 5.3 2020-05-19 14:25:19 Deep Dive
CVE-2020-8020 Persistent XSS in markdown parser used by obs-server openSUSEopen-build-service Medium 6.5 2020-05-13 14:50:13 Deep Dive
CVE-2019-3685 Missing TLS certificate validation for HTTPS connections in osc Open Build ServiceOpen Build Service High 7.4 2019-11-05 09:30:41 Deep Dive
CVE-2018-12477 obs-service-refresh_patches can be tricked into deleting '..' or other unrelated directories openSUSEOpen Build Service 高危 -2018-10-09 13:00:00 Deep Dive
CVE-2018-12479 Request controller allows to create requests with arbitrary request IDs openSUSEOpen Build Service 高危 -2018-10-09 13:00:00 Deep Dive
CVE-2018-12478 obs-service-replace_using_package_version allows to specify arbitrary input files openSUSEOpen Build Service 中危 -2018-10-09 13:00:00 Deep Dive
CVE-2018-12474 Crafted service parameters allows to induce unexpected behaviour in obs-service-tar_scm openSUSEOpen Build Service 超危 -2018-10-09 13:00:00 Deep Dive
CVE-2018-12473 path traversal in obs-service-tar_scm openSUSEOpen Build Service 高危 -2018-10-02 15:00:00 Deep Dive
CVE-2011-4183 open build service allows anyone to upload rpms SUSEopen build service 超危 -2018-06-13 13:00:00 Deep Dive
CVE-2011-4181 open build service information leak via unauthorized source access SUSEopen build service 高危 -2018-06-11 15:00:00 Deep Dive
CVE-2014-0594 CSRF protection incorrectly disabled openSUSEOpen Build Service 高危 -2018-06-08 17:00:00 Deep Dive
CVE-2013-3703 No write permission check in change_role command openSUSEOpen Build Service 中危 -2018-06-08 17:00:00 Deep Dive
CVE-2018-7688 Open Build Service accepts arbitrary reviews openSUSEOpen Build Service 中危 -2018-06-07 13:00:00 Deep Dive
CVE-2018-7689 Open Build Service arbitrary package modification openSUSEOpen Build Service 中危 -2018-06-07 13:00:00 Deep Dive
CVE-2015-0796 open build service source server symlink exploitation via source patch SUSEopen build service 高危 -2018-03-02 20:00:00 Deep Dive
CVE-2017-9268 open-build-service retrigger / wipebinaries hitting the wrong project bypassing access permissions SUSEopen build service 中危 -2018-03-01 19:00:00 Deep Dive
CVE-2017-5188 OBS worker VM escape via relative symbolic links openSUSEopen build service 高危 -2018-03-01 19:00:00 Deep Dive