ENISA EUVD · EUVD-2018-0673Official EUVD mapping0 linked advisory records.
Official EUVD record ↗BSI · German · WID-SEC-2026-0180Dell Data Protection Advisor: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Dell Data Protection Advisor ausnutzen, um beliebigen Code auszuführen, einen Denial-of-Service-Zustand zu erzeugen, Sicherheitsmaßnahmen zu umgehen und nicht näher spezifizierte Angriffe zu starten.
Official advisory ↗BSI · German · WID-SEC-2022-1375JFrog Artifactory: Mehrere SchwachstellenEin entfernter, anonymer Angreifer kann mehrere Schwachstellen in JFrog Artifactory ausnutzen, um seine Privilegien zu erweitern, beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen und einen Denial-of-Service-Zustand auszulösen.
Official advisory ↗BSI · German · WID-SEC-2026-2752Red Hat JBoss Enterprise Application Platform: Mehrere Schwachstellen ermöglichen Ausführen von beliebigem Programmcode mit den Rechten des DienstesEin entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Red Hat JBoss Enterprise Application Platform ausnutzen, um beliebigen Programmcode mit den Rechten des Dienstes auszuführen.
Official advisory ↗BSI · German · WID-SEC-2025-1212Oracle Communications Applications: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Oracle Communications Applications ausnutzen, um dadurch die Integrität, Vertraulichkeit und Verfügbarkeit zu gefährden.
Official advisory ↗Canadian Centre for Cyber Security · English · AV18-065Oracle Critical Patch update Advisory - April 2018501, CVE-2015-7940, CVE-2016-0635, CVE-2016-2177, CVE-2016-2178, CVE-2016-2179, CVE-2016-2180, CVE-2016-2181, CVE-2016-2182, CVE-2016-2183, CVE-2016-3092, CVE-2016-3506, CVE-2016-5007, CVE-2016-5019, CVE-2016-6302, CVE-2016-6303, CVE-2016-6304, CVE-2016-6305, CVE-2016-6306, CVE-2016-6307, CVE-2016-6308, CVE-2016-6309, CVE-2016-6814, CVE-2016-7052, CVE-2016-8745, CVE-2016-9878, CVE-2017-1039, CVE-2017-1040, CVE-2017-1261, CVE-2017-1307, CVE-2017-1308, CVE-2017-1509, CVE-2017-1570, CVE-2017-1756, CVE-2017-3735, CVE-2017-3736, CVE-2017-3737, CVE-2017-3738, CVE-2017-5645, CVE-2017-5662, CVE-2017-5664, CVE-2017-5715, CVE-2017-5753, CVE-2017-5754, CVE-2017-7525, CVE-2017-7674, CVE-2017-7805, CVE-2017-9798, CVE-2018-0739, CVE-2018-2563, CVE-2018-2572, CVE-2018-2587, CVE-2018-2628, CVE-2018-2718, CVE-2018-2737, CVE-2018-2738, CVE-2018-2739, CVE-2018-2742, CVE-2018-2746, CVE-2018-2747, CVE-2018-2748, CVE-2018-2749, CVE-2018-2750, CVE-2018-2752, CVE-2018-2753, CVE-2018-2754, CVE-2018-2755, CVE-2018-2756, CVE-2018-2758, CVE-2018-2759, CVE-2018-2760, CVE-2018-2761, CVE-2018-2762, CVE-2018-2763, CVE-2018-2764, CVE-2018-2765, CVE-2018-2766, CVE-2018-2768, CVE-2018-2769, CVE-2018-2770, CVE-2018-2771, CVE-2018-2772, CVE-2018-2773, CVE-2018-2774, CVE-2018-2775, CVE-2018-2776, CVE-2018-2777, CVE-2018-2778, CVE
Official advisory ↗Canadian Centre for Cyber Security · English · AV17-182Apache Struts security updateApache has released Struts 2.5.14.1 which contains security fixes to address a critical vulnerabilities in their software. Additionally, the vulnerability in Apache CouchDB could be used to give administrator level privileges to non-admin users.
Versions Affected:
Apache Struts 2.5 to Struts 2.5.14
Apache CouchDB before 1.7.0 and 2.x before 2.1.1
CVE References: CVE-2017-7525, CVE-2017-15707, CVE-2017-12635, CVE-2017-12636
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0627Multiples vulnérabilités dans les produits Splunkisory.splunk.com/advisories/SVD-2026-0512
Bulletin de sécurité Splunk SVD-2026-0513 du 20 mai 2026
https://advisory.splunk.com/advisories/SVD-2026-0513
Bulletin de sécurité Splunk SVD-2026-0514 du 20 mai 2026
https://advisory.splunk.com/advisories/SVD-2026-0514
Bulletin de sécurité Splunk SVD-2026-0515 du 20 mai 2026
https://advisory.splunk.com/advisories/SVD-2026-0515
Bulletin de sécurité Splunk SVD-2026-0516 du 20 mai 2026
https://advisory.splunk.com/advisories/SVD-2026-0516
Référence CVE CVE-2017-15095
https://www.cve.org/CVERecord?id=CVE-2017-15095
Référence CVE CVE-2017-17485
https://www.cve.org/CVERecord?id=CVE-2017-17485
Référence CVE CVE-2017-7525
https://www.cve.org/CVERecord?id=CVE-2017-7525
Référence CVE CVE-2017-7656
https://www.cve.org/CVERecord?id=CVE-2017-7656
Référence CVE CVE-2017-7657
https://www.cve.org/CVERecord?id=CVE-2017-7657
Référence CVE CVE-2017-7658
https://www.cve.org/CVERecord?id=CVE-2017-7658
Référence CVE CVE-2018-11307
https://www.cve.org/CVERecord?id=CVE-2018-11307
Référence CVE CVE-2018-12022
https://www.cve.org/CVERecord?id=CVE-2018-12022
Référence CVE CVE-2018-12023
https://www.cve.org/CVERecord?id=CVE-2018-12023
Référence CVE CVE-2018-14718
https://www.cve.org/CVERecord?id=CVE-2018-14718
Référence CVE CVE-2018-14719
https://www.cve.org/CVERecord?id=CVE-201
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0556Multiples vulnérabilités dans les produits VMware00343
Référence CVE CVE-2016-1000344
https://www.cve.org/CVERecord?id=CVE-2016-1000344
Référence CVE CVE-2016-1000345
https://www.cve.org/CVERecord?id=CVE-2016-1000345
Référence CVE CVE-2016-1000346
https://www.cve.org/CVERecord?id=CVE-2016-1000346
Référence CVE CVE-2016-1000352
https://www.cve.org/CVERecord?id=CVE-2016-1000352
Référence CVE CVE-2017-15095
https://www.cve.org/CVERecord?id=CVE-2017-15095
Référence CVE CVE-2017-15691
https://www.cve.org/CVERecord?id=CVE-2017-15691
Référence CVE CVE-2017-17485
https://www.cve.org/CVERecord?id=CVE-2017-17485
Référence CVE CVE-2017-3164
https://www.cve.org/CVERecord?id=CVE-2017-3164
Référence CVE CVE-2017-7525
https://www.cve.org/CVERecord?id=CVE-2017-7525
Référence CVE CVE-2017-7669
https://www.cve.org/CVERecord?id=CVE-2017-7669
Référence CVE CVE-2017-8806
https://www.cve.org/CVERecord?id=CVE-2017-8806
Référence CVE CVE-2018-1000180
https://www.cve.org/CVERecord?id=CVE-2018-1000180
Référence CVE CVE-2018-1000632
https://www.cve.org/CVERecord?id=CVE-2018-1000632
Référence CVE CVE-2018-10237
https://www.cve.org/CVERecord?id=CVE-2018-10237
Référence CVE CVE-2018-11307
https://www.cve.org/CVERecord?id=CVE-2018-11307
Référence CVE CVE-2018-11761
https://www.cve.org/CVERecord?id=CVE-2018-11761
Référence CVE CVE-2018-11762
https://www.cve.org/CVERecord?
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0500Multiples vulnérabilités dans VMware Tanzupour l'obtention des correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité VMware 37404 du 24 avril 2026
https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/37404
Bulletin de sécurité VMware 37405 du 24 avril 2026
https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/37405
Référence CVE CVE-2016-1000027
https://www.cve.org/CVERecord?id=CVE-2016-1000027
Référence CVE CVE-2017-15095
https://www.cve.org/CVERecord?id=CVE-2017-15095
Référence CVE CVE-2017-17485
https://www.cve.org/CVERecord?id=CVE-2017-17485
Référence CVE CVE-2017-7525
https://www.cve.org/CVERecord?id=CVE-2017-7525
Référence CVE CVE-2018-10237
https://www.cve.org/CVERecord?id=CVE-2018-10237
Référence CVE CVE-2018-11307
https://www.cve.org/CVERecord?id=CVE-2018-11307
Référence CVE CVE-2018-12022
https://www.cve.org/CVERecord?id=CVE-2018-12022
Référence CVE CVE-2018-1320
https://www.cve.org/CVERecord?id=CVE-2018-1320
Référence CVE CVE-2018-14718
https://www.cve.org/CVERecord?id=CVE-2018-14718
Référence CVE CVE-2018-14719
https://www.cve.org/CVERecord?id=CVE-2018-14719
Référence CVE CVE-2018-19362
https://www.cve.org/CVERecord?id=CVE-2018-19362
Référence CVE CVE-2018-5968
https://www.cve.org/CVERecord?id=CVE-
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0760Multiples vulnérabilités dans les produits IBM2025
https://www.ibm.com/support/pages/node/7244002
Bulletin de sécurité IBM 7244010 du 04 septembre 2025
https://www.ibm.com/support/pages/node/7244010
Bulletin de sécurité IBM 7244012 du 04 septembre 2025
https://www.ibm.com/support/pages/node/7244012
Référence CVE CVE-2015-5237
https://www.cve.org/CVERecord?id=CVE-2015-5237
Référence CVE CVE-2016-4055
https://www.cve.org/CVERecord?id=CVE-2016-4055
Référence CVE CVE-2017-15095
https://www.cve.org/CVERecord?id=CVE-2017-15095
Référence CVE CVE-2017-17485
https://www.cve.org/CVERecord?id=CVE-2017-17485
Référence CVE CVE-2017-18214
https://www.cve.org/CVERecord?id=CVE-2017-18214
Référence CVE CVE-2017-7525
https://www.cve.org/CVERecord?id=CVE-2017-7525
Référence CVE CVE-2018-1000873
https://www.cve.org/CVERecord?id=CVE-2018-1000873
Référence CVE CVE-2018-5968
https://www.cve.org/CVERecord?id=CVE-2018-5968
Référence CVE CVE-2018-7489
https://www.cve.org/CVERecord?id=CVE-2018-7489
Référence CVE CVE-2019-10202
https://www.cve.org/CVERecord?id=CVE-2019-10202
Référence CVE CVE-2019-12086
https://www.cve.org/CVERecord?id=CVE-2019-12086
Référence CVE CVE-2019-9193
https://www.cve.org/CVERecord?id=CVE-2019-9193
Référence CVE CVE-2021-21290
https://www.cve.org/CVERecord?id=CVE-2021-21290
Référence CVE CVE-2021-3393
https://www.cve.org/CVERecord?id=CVE-
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0661Multiples vulnérabilités dans les produits Splunkions antérieures à 25.6.0
Résumé
De multiples vulnérabilités ont été découvertes dans les produits Splunk. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité Splunk SVD-2025-0801 du 06 août 2025
https://advisory.splunk.com/advisories/SVD-2025-0801
Bulletin de sécurité Splunk SVD-2025-0802 du 06 août 2025
https://advisory.splunk.com/advisories/SVD-2025-0802
Référence CVE CVE-2017-17485
https://www.cve.org/CVERecord?id=CVE-2017-17485
Référence CVE CVE-2017-7525
https://www.cve.org/CVERecord?id=CVE-2017-7525
Référence CVE CVE-2018-12022
https://www.cve.org/CVERecord?id=CVE-2018-12022
Référence CVE CVE-2018-3824
https://www.cve.org/CVERecord?id=CVE-2018-3824
Référence CVE CVE-2018-5968
https://www.cve.org/CVERecord?id=CVE-2018-5968
Référence CVE CVE-2018-7489
https://www.cve.org/CVERecord?id=CVE-2018-7489
Référence CVE CVE-2019-10172
https://www.cve.org/CVERecord?id=CVE-2019-10172
Référence CVE CVE-2019-14379
https://www.cve.org/CVERecord?id=CVE-2019-14379
Référence CVE CVE-2019-14439
https://www.cve.org/CVERecord?id=CVE-2019-14439
Référence CVE CVE-2019-14540
https://www.cve.org/CVERecord?id=CVE-201
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0512Multiples vulnérabilités dans les produits IBMtes dans les produits IBM. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service à distance et une atteinte à la confidentialité des données.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité IBM 7234674 du 11 juin 2025
https://www.ibm.com/support/pages/node/7234674
Bulletin de sécurité IBM 7236354 du 11 juin 2025
https://www.ibm.com/support/pages/node/7236354
Bulletin de sécurité IBM 7236500 du 12 juin 2025
https://www.ibm.com/support/pages/node/7236500
Référence CVE CVE-2017-7525
https://www.cve.org/CVERecord?id=CVE-2017-7525
Référence CVE CVE-2017-9047
https://www.cve.org/CVERecord?id=CVE-2017-9047
Référence CVE CVE-2018-11307
https://www.cve.org/CVERecord?id=CVE-2018-11307
Référence CVE CVE-2018-14718
https://www.cve.org/CVERecord?id=CVE-2018-14718
Référence CVE CVE-2018-14719
https://www.cve.org/CVERecord?id=CVE-2018-14719
Référence CVE CVE-2018-14720
https://www.cve.org/CVERecord?id=CVE-2018-14720
Référence CVE CVE-2018-14721
https://www.cve.org/CVERecord?id=CVE-2018-14721
Référence CVE CVE-2018-19360
https://www.cve.org/CVERecord?id=CVE-2018-19360
Référence CVE CVE-2018-19361
https://www.cve.org/CVERecord?id=CVE
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0444Multiples vulnérabilités dans les produits IBMn des
correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité IBM 7001571 du 06 juin 2023
https://www.ibm.com/support/pages/node/7001571
Bulletin de sécurité IBM 7001639 du 06 juin 2023
https://www.ibm.com/support/pages/node/7001639
Bulletin de sécurité IBM 7001643 du 06 juin 2023
https://www.ibm.com/support/pages/node/7001643
Bulletin de sécurité IBM 7001689 du 06 juin 2023
https://www.ibm.com/support/pages/node/7001689
Bulletin de sécurité IBM 7001723 du 06 juin 2023
https://www.ibm.com/support/pages/node/7001723
Bulletin de sécurité IBM 7001815 du 07 juin 2023
https://www.ibm.com/support/pages/node/7001815
Référence CVE CVE-2017-7525
https://www.cve.org/CVERecord?id=CVE-2017-7525
Référence CVE CVE-2021-23440
https://www.cve.org/CVERecord?id=CVE-2021-23440
Référence CVE CVE-2021-37533
https://www.cve.org/CVERecord?id=CVE-2021-37533
Référence CVE CVE-2022-1471
https://www.cve.org/CVERecord?id=CVE-2022-1471
Référence CVE CVE-2022-24785
https://www.cve.org/CVERecord?id=CVE-2022-24785
Référence CVE CVE-2022-25168
https://www.cve.org/CVERecord?id=CVE-2022-25168
Référence CVE CVE-2022-25881
https://www.cve.org/CVERecord?id=CVE-2022-25881
Référence CVE CVE-2022-31160
https://www.cve.org/CVERecord?id=CVE-2022-31160
Référence CVE CVE-2022-3171
https://www.cve.org/CVERecord?id=CVE-
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0073Multiples vulnérabilités dans les produits IBMes dans les produits IBM.
Certaines d'entre elles permettent à un attaquant de provoquer une
exécution de code arbitraire à distance, un déni de service à distance
et une atteinte à l'intégrité des données.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des
correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité IBM 6555376 du 30 janvier 2023
https://www.ibm.com/support/pages/node/6555376
Bulletin de sécurité IBM 6890619 du 30 janvier 2023
https://www.ibm.com/support/pages/node/6890619
Bulletin de sécurité IBM 6890703 du 30 janvier 2023
https://www.ibm.com/support/pages/node/6890703
Référence CVE CVE-2017-7525
https://www.cve.org/CVERecord?id=CVE-2017-7525
Référence CVE CVE-2018-11775
https://www.cve.org/CVERecord?id=CVE-2018-11775
Référence CVE CVE-2020-36518
https://www.cve.org/CVERecord?id=CVE-2020-36518
Référence CVE CVE-2021-35517
https://www.cve.org/CVERecord?id=CVE-2021-35517
Référence CVE CVE-2021-35550
https://www.cve.org/CVERecord?id=CVE-2021-35550
Référence CVE CVE-2021-35578
https://www.cve.org/CVERecord?id=CVE-2021-35578
Référence CVE CVE-2021-35603
https://www.cve.org/CVERecord?id=CVE-2021-35603
Référence CVE CVE-2021-36090
https://www.cve.org/CVERecord?id=CVE-2021-36090
Référence CVE CVE-2021-41035
https://www.cve.org/CVERecord?id=C
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-650Multiples vulnérabilités dans les produits JuniperCVERecord?id=CVE-2017-16548
Référence CVE CVE-2017-16931
https://www.cve.org/CVERecord?id=CVE-2017-16931
Référence CVE CVE-2017-17434
https://www.cve.org/CVERecord?id=CVE-2017-17434
Référence CVE CVE-2017-17485
https://www.cve.org/CVERecord?id=CVE-2017-17485
Référence CVE CVE-2017-18258
https://www.cve.org/CVERecord?id=CVE-2017-18258
Référence CVE CVE-2017-5225
https://www.cve.org/CVERecord?id=CVE-2017-5225
Référence CVE CVE-2017-5929
https://www.cve.org/CVERecord?id=CVE-2017-5929
Référence CVE CVE-2017-7375
https://www.cve.org/CVERecord?id=CVE-2017-7375
Référence CVE CVE-2017-7500
https://www.cve.org/CVERecord?id=CVE-2017-7500
Référence CVE CVE-2017-7525
https://www.cve.org/CVERecord?id=CVE-2017-7525
Référence CVE CVE-2017-7614
https://www.cve.org/CVERecord?id=CVE-2017-7614
Référence CVE CVE-2017-8105
https://www.cve.org/CVERecord?id=CVE-2017-8105
Référence CVE CVE-2017-8287
https://www.cve.org/CVERecord?id=CVE-2017-8287
Référence CVE CVE-2017-8421
https://www.cve.org/CVERecord?id=CVE-2017-8421
Référence CVE CVE-2017-8779
https://www.cve.org/CVERecord?id=CVE-2017-8779
Référence CVE CVE-2017-8804
https://www.cve.org/CVERecord?id=CVE-2017-8804
Référence CVE CVE-2017-8817
https://www.cve.org/CVERecord?id=CVE-2017-8817
Référence CVE CVE-2017-8871
https://www.cve.org/CVERecord?id=CVE-2017-8871
Ré
Official advisory ↗CERT-FR · French · CERTFR-2019-AVI-086Multiples vulnérabilités dans IBM InfoSphereDe multiples vulnérabilités ont été découvertes dans IBM InfoSphere.
Elles permettent à un attaquant de provoquer une exécution de code
arbitraire à distance et un déni de service à distance.
Official advisory ↗CERT-FR · French · CERTFR-2017-AVI-470Vulnérabilité dans Apache Struts 2Une vulnérabilité a été découverte dans Apache Struts 2. Elle permet à
un attaquant de provoquer une exécution de code arbitraire à distance.
Official advisory ↗CERT-FR · French · CERTFR-2017-AVI-445Multiples vulnérabilités dans Apache Struts 2De multiples vulnérabilités ont été découvertes dans Apache Struts 2.
Elles permettent à un attaquant de provoquer un problème de sécurité non
spécifié par l'éditeur et un déni de service à distance.
Official advisory ↗JVN iPedia · Japanese · JVNDB-2017-012494jackson-databind における不完全なブラックリストに関する脆弱性jackson-databind には、不完全なブラックリストに関する脆弱性が存在します。
Official advisory ↗JVN iPedia · Japanese · JVNDB-2017-012039FasterXML jackson-databind における信頼できないデータのデシリアライゼーションに関する脆弱性FasterXML jackson-databind には、信頼できないデータのデシリアライゼーションに関する脆弱性が存在します。 本脆弱性は、CVE-2017-7525 に対する修正が不完全だったことに起因する問題です。
Official advisory ↗KISA KrCERT/CC · Korean · KNVD-4835Apache Struts2 보안 업데이트 권고#### Apache Struts2 보안 업데이트 권고 2017.12.06
##### □ 개요
o Apache Struts2에서 서비스 거부 및 임의 코드 실행이 가능한 취약점이 발견 [1]
o 취약한 버전을 사용 중인 서버의 담당자는 해결방안에 따라 최신 버전으로 업데이트 권고
##### □ 내용
o Struts REST 플러그인에서 JSON 페이로드를 처리할 때 발생하는 서비스 거부 취약점(CVE-2017-15707)
o Jackson-databind에서 직렬화 결함이 발생하여 ObjectMapper의 readValue 메소드에 특수하게 조작 된 페이로드 전송 시
임의 코드 실행 가능한 취약점(CVE-2017-7525)
##### □ 영향을 받는 버전
o Apache Struts 2.5~ 2.5.14
##### □ 해결 방안
o CVE-2017-15707
- 취약점에 영향을 받지 않는 버전으로 업데이트 수행(Apache Struts 2.5.14.1) [3]
또는, 기본 JSON-lib 대신 Jackson 사용
o CVE-2017-7525
- 취약점에 영향을 받지 않는 버전으로 업데이트 수행(Apache Struts 2.5.14.1) [3]
또는, Jackson dependencies를 취약점에 영향을 받지 않는 버전으로 수동 업데이트
##### □ 기타 문의사항
o 한국인터넷진흥원 인터넷침해대응센터: 국번없이 118
[참고사이트]
[1]
https://cwiki.apache.org/confluence/display/WW/S2-054
[2]
https://cwiki.apache.org/confluence/display/WW/S2-055
[3]
https://cwiki.apache.org/confluence/display/WW/Version+Notes+2.5.14.1
Official advisory ↗