Vulnerabilidades em aerospike
6 resultadosAnálise Vexday
Aerospike apresenta perfil de risco reduzido com apenas 1 CVE crítica catalogada, não havendo registros de exploração ativa. A vulnerabilidade identificada (CWE-502 - Desserialização de Dados Não Confiáveis) é antiga, sem publicações nos últimos 90 dias, recomendando-se verificação de aplicabilidade ao ambiente específico antes de priorizar mitigação.
CVE-2016-9054CRITICALAn exploitable stack-based buffer overflow vulnerability exists in the querying functionality of Aerospike Database Server 3.10.0.3. A speciEPSS 7.7%CVE-2016-9053CRITICALAn exploitable out-of-bounds indexing vulnerability exists within the RW fabric message particle type of Aerospike Database Server 3.10.0.3.EPSS 7.2%CVE-2016-9051CRITICALAn exploitable out-of-bounds write vulnerability exists in the batch transaction field parsing functionality of Aerospike Database Server 3.EPSS 6.9%CVE-2016-9049HIGHAn exploitable denial-of-service vulnerability exists in the fabric-worker component of Aerospike Database Server 3.10.0.3. A specially crafEPSS 2.9%CVE-2016-9050HIGHAn exploitable out-of-bounds read vulnerability exists in the client message-parsing functionality of Aerospike Database Server 3.10.0.3. A EPSS 2.9%CVE-2023-36480CRITICALAerospike Java Client vulnerable to unsafe deserialization of server responsesEPSS 1.8%