Eclipse Jetty是Eclipse基金会的一个开源的、基于Java的Web服务器和Java Servlet容器。 Eclipse Jetty 存在安全漏洞,该漏洞源于攻击者可以通过耗尽服务器内存来发起远程拒绝服务攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Eclipse Foundation | Jetty | 10.0.0 ~ 10.0.17 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-8184 | 5.9 MEDIUM | Jetty ThreadLimitHandler.getRemote() vulnerable to remote DoS attacks |
| CVE-2024-9823 | 5.3 MEDIUM | Jetty DOS vulnerability on DosFilter |
| CVE-2024-6763 | 3.7 LOW | Jetty URI parsing of invalid authority |
No comments yet