Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

ikus060/rdiffweb — Vulnerabilities & Security Advisories 42

All 42 CVE vulnerabilities found in ikus060/rdiffweb, with AI-generated Chinese analysis, references, and POCs.

Vendor: ikus060

CVE IDTitleCVSSSeverityPublished
CVE-2023-5289 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb CWE-770 7.5 -2023-09-29
CVE-2023-4138 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb CWE-770 7.5 -2023-08-03
CVE-2022-4724 Improper Access Control in ikus060/rdiffweb CWE-284 7.5 -2022-12-23
CVE-2022-4723 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb CWE-770 9.1 -2022-12-23
CVE-2022-4722 Authentication Bypass by Primary Weakness in ikus060/rdiffweb CWE-305 9.8 -2022-12-23
CVE-2022-4721 Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in ikus060/rdiffweb CWE-75 7.6 -2022-12-23
CVE-2022-4720 Open Redirect in ikus060/rdiffweb CWE-601 6.1 -2022-12-23
CVE-2022-4719 Business Logic Errors in ikus060/rdiffweb CWE-840 5.3 -2022-12-23
CVE-2022-4646 Cross-Site Request Forgery (CSRF) in ikus060/rdiffweb CWE-352 7.1 -2022-12-22
CVE-2022-4644 Open Redirect in ikus060/rdiffweb CWE-601 6.1 -2022-12-22
CVE-2022-4314 Improper Privilege Management in ikus060/rdiffweb CWE-269 9.8 -2022-12-06
CVE-2022-4018 Missing Authentication for Critical Function in ikus060/rdiffweb CWE-306 9.4 -2022-11-16
CVE-2022-3362 Insufficient Session Expiration in ikus060/rdiffweb CWE-613 9.8 -2022-11-14
CVE-2022-3363 Business Logic Errors in ikus060/rdiffweb CWE-840 5.3 -2022-10-26
CVE-2022-3327 Missing Authentication for Critical Function in ikus060/rdiffweb CWE-306 9.4 -2022-10-19
CVE-2022-3439 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb CWE-770 9.1 -2022-10-14
CVE-2022-3456 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb CWE-770 9.1 -2022-10-13
CVE-2022-3457 Origin Validation Error in ikus060/rdiffweb CWE-346 8.8 -2022-10-13
CVE-2022-3438 Open Redirect in ikus060/rdiffweb CWE-601 6.1 -2022-10-10
CVE-2022-3273 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb CWE-770 9.1 -2022-10-06
CVE-2022-3376 Weak Password Requirements in ikus060/rdiffweb CWE-521 9.8 -2022-10-06
CVE-2022-3389 Path Traversal in ikus060/rdiffweb CWE-22 7.5 -2022-10-06
CVE-2022-3371 No limit in length of "Token name" parameter results in DOS attack /memory corruption in ikus060/rdiffweb prior to 2.5.0a3 in ikus060/rdiffweb CWE-770 9.1 -2022-09-30
CVE-2022-3364 No limit in length of "Fullname" parameter results in DOS attack /memory corruption in ikus060/rdiffweb prior to 2.5.0a3 in ikus060/rdiffweb CWE-770 9.1 -2022-09-29
CVE-2022-3326 Weak Password Requirements in ikus060/rdiffweb CWE-521 9.8 -2022-09-28
CVE-2022-3292 Use of Cache Containing Sensitive Information in ikus060/rdiffweb CWE-524 6.5 -2022-09-28
CVE-2022-3298 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb CWE-770 9.1 -2022-09-26
CVE-2022-3290 Improper Handling of Length Parameter Inconsistency in ikus060/rdiffweb CWE-130 7.5 -2022-09-26
CVE-2022-3272 Improper Handling of Length Parameter Inconsistency in ikus060/rdiffweb CWE-130 7.5 -2022-09-26
CVE-2022-3295 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb CWE-770 9.1 -2022-09-26

All 42 known CVE vulnerabilities affecting ikus060/rdiffweb with full Chinese analysis, references, and POCs where available.