Vulnerabilities in The PowerDNS Project
3 resultsVexday analysis
The PowerDNS Project apresenta um perfil de risco baixo com apenas 3 CVEs catalogadas e nenhuma sob exploração ativa no momento. Não há vulnerabilidades críticas registradas, e a fraqueza dominante (CWE-400 - Uncontrolled Resource Consumption) indica riscos de negação de serviço em vez de comprometimento direto. O portfolio não registra publicações recentes, sugerindo que o risco está estabilizado.
CVE-2019-3871MEDIUMA vulnerability was found in PowerDNS Authoritative Server before 4.0.7 and before 4.1.7. An insufficient validation of data coming from theEPSS 12.6%CVE-2018-10851MEDIUMPowerDNS Authoritative Server 3.3.0 up to 4.1.4 excluding 4.1.5 and 4.0.6, and PowerDNS Recursor 3.2 up to 4.1.4 excluding 4.1.5 and 4.0.9, EPSS 6.0%CVE-2018-14626MEDIUMPowerDNS Authoritative Server 4.1.0 up to 4.1.4 inclusive and PowerDNS Recursor 4.0.0 up to 4.1.4 inclusive are vulnerable to a packet cacheEPSS 2.7%