Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-502 (可信数据的反序列化) — Vulnerability Class 1676

1676 vulnerabilities classified as CWE-502 (可信数据的反序列化). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2019-5069 Epignosis eFront LMS 代码问题漏洞 — Epignosis 8.8 -2019-09-05
CVE-2018-11779 Apache Storm 代码问题漏洞 — Storm 8.1 -2019-07-25
CVE-2019-10135 osbs-client 代码问题漏洞 — osbs-client 8.0 -2019-07-11
CVE-2019-10924 Siemens LOGO! Soft Comfort 代码问题漏洞 — LOGO! Soft Comfort 7.8 -2019-05-14
CVE-2019-5434 Revive Adserver 代码问题漏洞 — Revive Adserver 9.8 -2019-05-06
CVE-2018-6331 Buck 安全漏洞 — Buck 9.8 -2018-12-31
CVE-2018-15381 Cisco Unity Express Arbitrary Command Execution Vulnerability — Cisco Unity Express 9.8 -2018-11-08
CVE-2018-15616 System Platform Web UI Deserialization — Avaya Aura® System Platform 9.8 -2018-10-17
CVE-2018-10911 Red Hat glusterfs服务器代码问题漏洞 — glusterfs: 5.5 -2018-09-04
CVE-2016-8648 Red Hat JBoss Fuse和JBoss A-MQ 安全漏洞 — Karaf 7.2 -2018-08-01
CVE-2016-8653 RedHat Jboss Fuse和Jboss A-MQ 安全漏洞 — Fuse 5.3 -2018-08-01
CVE-2016-9483 PHP FormMail Generator generates PHP code for standard web forms, and the code generated is vulnerable to unsafe deserialization of untrusted data — Generator 9.8 -2018-07-13
CVE-2016-9498 ManageEngine Applications Manager 12 and 13, allows unserialization of unsafe Java objects — Applications Manager 9.8 -2018-07-13
CVE-2017-3199 GraniteDS, version 3.1.1.GA, Action Message Format (AMF3) Java implementation is vulnerable to insecure deserialization — Framework 8.1 -2018-06-11
CVE-2017-3201 Flamingo amf-serializer by Exadel, version 2.2.0, Action Message Format (AMF3) Java implementation is vulnerable to insecure deserialization — Flamingo amf-serializer 8.1 -2018-06-11
CVE-2017-3203 Pivotal/Spring Spring-flex's Action Message Format (AMF3) Java implementation is vulnerable to insecure deserialization — Spring-flex 8.1 -2018-06-11
CVE-2017-3207 WebORB for Java by Midnight Coders, version 5.1.1.0, Action Message Format (AMF3) Java implementation is vulnerable to insecure deserialization — WebORB for Java 8.1 -2018-06-11
CVE-2017-2608 CloudBees Jenkins 安全漏洞 — jenkins 9.8 -2018-05-15
CVE-2018-7529 OSIsoft PI Data Archive 安全漏洞 — OSIsoft PI Data Archive 7.5 -2018-03-14
CVE-2016-9585 Red Hat JBoss Enterprise Application Platform 安全漏洞 — EAP-5 7.5 -2018-03-09
CVE-2017-15089 Infinispan Hotrod客户端安全漏洞 — infinispan 8.8 -2018-02-15
CVE-2017-17406 Netgain Enterprise Manager 安全漏洞 — NetGain Systems Enterprise Manager 9.8 -2018-01-23
CVE-2017-0903 RubyGems 安全漏洞 — RubyGems 9.8 -2017-10-11
CVE-2017-12149 Red Hat JBoss Enterprise Application Platform Jboss Application Server 安全漏洞 — jbossas 9.8 -2017-10-04
CVE-2017-11153 Synology Photo Station 安全漏洞 — Synology Photo Station 9.8 -2017-08-08
CVE-2017-7504 Red Hat Jboss Application Server 安全漏洞 — JBoss 9.8 -2017-05-19

Vulnerabilities classified as CWE-502 (可信数据的反序列化) represent 1676 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.