V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
Filters

All vulnerabilities

77 / 77
Product: debian:trafficserver×Clear all
7.5
CVE-2023-44487ANC KEV
The HTTP/2 protocol allows a denial of service (server resource consumption) because request ca…
2023-01-01MicrosoftKEV
EPSS100.0%
pct 100
7.5
CVE-2024-31309ANC
HTTP/2 CONTINUATION DoS attack can cause Apache Traffic Server to consume more resources on the…
2024-01-01Pre-auth
EPSS94.6%
pct 99
7.5
CVE-2019-9515DEB
Some HTTP/2 implementations are vulnerable to a settings flood, potentially leading to a denial…
2019-01-01Pre-auth
EPSS87.8%
pct 99
7.5
CVE-2019-9512DEB
Some HTTP/2 implementations are vulnerable to ping floods, potentially leading to a denial of s…
2019-01-01MicrosoftPre-auth
EPSS83.4%
pct 99
7.5
CVE-2019-9514DEB
Some HTTP/2 implementations are vulnerable to a reset flood, potentially leading to a denial of…
2019-01-01MicrosoftPre-auth
EPSS82.8%
pct 99
7.5
CVE-2023-39456DEB
Improper Input Validation vulnerability in Apache Traffic Server with malformed HTTP/2 frames.T…
2023-01-01Pre-auth
EPSS53.5%
pct 98
7.5
CVE-2019-9518DEB
Some HTTP/2 implementations are vulnerable to a flood of empty frames, potentially leading to a…
2019-01-01MicrosoftPre-auth
EPSS24.8%
pct 97
5.3
CVE-2018-8040DEB
Pages that are rendered using the ESI plugin can have access to the cookie header when the plug…
2018-01-01Pre-auth
EPSS8.6%
pct 94
7.5
CVE-2018-1318DEB
Adding method ACLs in remap.config can cause a segfault when the user makes a carefully crafted…
2018-01-01Pre-auth
EPSS7.7%
pct 93
7.5
CVE-2018-8022DEB
A carefully crafted invalid TLS handshake can cause Apache Traffic Server (ATS) to segfault. Th…
2018-01-01Pre-auth
EPSS7.5%
pct 93
5.3
CVE-2018-8005DEB
When there are multiple ranges in a range request, Apache Traffic Server (ATS) will read the en…
2018-01-01Pre-auth
EPSS6.9%
pct 93
6.5
CVE-2018-8004DEB
There are multiple HTTP smuggling and cache poisoning issues when clients making malicious requ…
2018-01-01
EPSS6.3%
pct 92
5.0
CVE-2014-10022DEB
Apache Traffic Server before 5.1.2 allows remote attackers to cause a denial of service via uns…
2014-01-01
EPSS5.6%
pct 91
9.8
CVE-2015-3249DEB
The HTTP/2 experimental feature in Apache Traffic Server 5.3.x before 5.3.1 allows remote attac…
2015-01-01Pre-auth
EPSS5.4%
pct 91
7.5
CVE-2019-10079DEB
Apache Traffic Server is vulnerable to HTTP/2 setting flood attacks. Earlier versions of Apache…
2019-01-01Pre-auth
EPSS4.6%
pct 90
10.0
CVE-2014-3525DEB
Unspecified vulnerability in Apache Traffic Server 3.x through 3.2.5, 4.x before 4.2.1.1, and 5…
2014-01-01
EPSS4.5%
pct 90
7.5
CVE-2020-9494DEB
Apache Traffic Server 6.0.0 to 6.2.3, 7.0.0 to 7.1.10, and 8.0.0 to 8.0.7 is vulnerable to cert…
2020-01-01Pre-auth
EPSS3.9%
pct 88
7.5
CVE-2021-27737DEB
Apache Traffic Server 9.0.0 is vulnerable to a remote DOS attack on the experimental Slicer plu…
2021-01-01Pre-auth
EPSS3.8%
pct 88
9.8
CVE-2014-3624DEB
Apache Traffic Server 5.1.x before 5.1.1 allows remote attackers to bypass access restrictions …
2014-01-01Pre-auth
EPSS3.8%
pct 88
7.5
CVE-2021-27577DEB
Incorrect handling of url fragment vulnerability of Apache Traffic Server allows an attacker to…
2021-01-01Pre-auth
EPSS3.5%
pct 87
5.0
CVE-2012-0256DEB
Apache Traffic Server 2.0.x and 3.0.x before 3.0.4 and 3.1.x before 3.1.3 does not properly all…
2012-01-01
EPSS3.5%
pct 87
9.8
CVE-2019-17565DEB
There is a vulnerability in Apache Traffic Server 6.0.0 to 6.2.3, 7.0.0 to 7.1.8, and 8.0.0 to …
2019-01-01Pre-auth
EPSS3.1%
pct 85
9.8
CVE-2019-17559DEB
There is a vulnerability in Apache Traffic Server 6.0.0 to 6.2.3, 7.0.0 to 7.1.8, and 8.0.0 to …
2019-01-01Pre-auth
EPSS3.1%
pct 85
7.5
CVE-2017-5659DEB
Apache Traffic Server before 6.2.1 generates a coredump when there is a mismatch between conten…
2017-01-01Pre-auth
EPSS3.0%
pct 85
7.5
CVE-2016-5396DEB
Apache Traffic Server 6.0.0 to 6.2.0 are affected by an HPACK Bomb Attack.
2016-01-01Pre-auth
EPSS2.9%
pct 85
9.8
CVE-2021-35474DEB
Stack-based Buffer Overflow vulnerability in cachekey plugin of Apache Traffic Server. This iss…
2021-01-01Pre-auth
EPSS2.7%
pct 84
9.8
CVE-2020-1944DEB
There is a vulnerability in Apache Traffic Server 6.0.0 to 6.2.3, 7.0.0 to 7.1.8, and 8.0.0 to …
2020-01-01Pre-auth
EPSS2.7%
pct 83
4.3
CVE-2010-2952DEB
Apache Traffic Server before 2.0.1, and 2.1.x before 2.1.2-unstable, does not properly choose D…
2010-01-01
EPSS2.6%
pct 83
7.5
CVE-2021-32566DEB
Improper Input Validation vulnerability in HTTP/2 of Apache Traffic Server allows an attacker t…
2021-01-01Pre-auth
EPSS2.5%
pct 82
7.5
CVE-2021-37149DEB
Improper Input Validation vulnerability in header parsing of Apache Traffic Server allows an at…
2021-01-01Pre-auth
EPSS2.5%
pct 82
7.5
CVE-2021-37148DEB
Improper input validation vulnerability in header parsing of Apache Traffic Server allows an at…
2021-01-01Pre-auth
EPSS2.5%
pct 82
7.5
CVE-2021-32567DEB
Improper Input Validation vulnerability in HTTP/2 of Apache Traffic Server allows an attacker t…
2021-01-01Pre-auth
EPSS2.4%
pct 82
7.5
CVE-2021-37147DEB
Improper input validation vulnerability in header parsing of Apache Traffic Server allows an at…
2021-01-01Pre-auth
EPSS2.4%
pct 82
9.8
CVE-2015-5206DEB
Unspecified vulnerability in the HTTP/2 experimental feature in Apache Traffic Server before 5.…
2015-01-01Pre-auth
EPSS2.4%
pct 81
9.8
CVE-2015-5168DEB
Unspecified vulnerability in the HTTP/2 experimental feature in Apache Traffic Server 5.3.x bef…
2015-01-01Pre-auth
EPSS2.4%
pct 81
7.5
CVE-2021-41585DEB
Improper Input Validation vulnerability in accepting socket connections in Apache Traffic Serve…
2021-01-01Pre-auth
EPSS2.4%
pct 81
7.5
CVE-2020-9481DEB
Apache ATS 6.0.0 to 6.2.3, 7.0.0 to 7.1.9, and 8.0.0 to 8.0.6 is vulnerable to a HTTP/2 slow re…
2020-01-01Pre-auth
EPSS2.4%
pct 81
9.8
CVE-2021-43082DEB
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in the sta…
2021-01-01Pre-auth
EPSS2.3%
pct 81
7.5
CVE-2017-7671DEB
There is a DOS attack vulnerability in Apache Traffic Server (ATS) 5.2.0 to 5.3.2, 6.0.0 to 6.2…
2017-01-01Pre-auth
EPSS2.3%
pct 80
7.5
CVE-2021-32565DEB
Invalid values in the Content-Length header sent to Apache Traffic Server allows an attacker to…
2021-01-01Pre-auth
EPSS2.1%
pct 79
Select a vulnerability on the left to open the preview.