Couchbase Server 7.1.2

CPE Details

Couchbase Server 7.1.2
7.1.2
2023-02-13
17h40 +00:00
2023-02-23
18h10 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:couchbase:couchbase_server:7.1.2:*:*:*:*:*:*:*

Informations

Vendor

couchbase

Product

couchbase_server

Version

7.1.2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2024-25673 2024-09-18 22h00 +00:00 Couchbase Server 7.6.x before 7.6.2, 7.2.x before 7.2.6, and all earlier versions allows HTTP Host header injection.
6.1
Medium
CVE-2024-37034 2024-07-25 22h00 +00:00 An issue was discovered in Couchbase Server before 7.2.5 and 7.6.0 before 7.6.1. It does not ensure that credentials are negotiated with the Key-Value (KV) service using SCRAM-SHA when remote link encryption is configured for Half-Secure.
5.9
Medium
CVE-2023-45874 2024-02-27 23h00 +00:00 An issue was discovered in Couchbase Server through 7.2.2. A data reader may cause a denial of service (outage of reader threads).
4.3
Medium
CVE-2024-23302 2024-02-27 23h00 +00:00 Couchbase Server before 7.2.4 has a private key leak in goxdcr.log.
7.5
High
CVE-2024-0519 2024-01-16 21h14 +00:00 Out of bounds memory access in V8 in Google Chrome prior to 120.0.6099.224 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
8.8
High
CVE-2023-36667 2023-11-07 23h00 +00:00 Couchbase Server 7.1.4 before 7.1.5 and 7.2.0 before 7.2.1 allows Directory Traversal.
7.5
High
CVE-2023-3079 2023-06-05 21h40 +00:00 Type confusion in V8 in Google Chrome prior to 114.0.5735.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
8.8
High
CVE-2023-2033 2023-04-14 18h10 +00:00 Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
8.8
High
CVE-2023-28470 2023-03-23 00h00 +00:00 In Couchbase Server 5 through 7 before 7.1.4, the nsstats endpoint is accessible without authentication.
5.3
Medium