Products: 1
    Vulnerabilities: 4
    Known Exploited: 0
    3
    Critical Level Threats
    1
    High Level Threats
    0
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2024-38461

    irodsServerMonPerf in iRODS before 4.3.2 attempts to proceed with use of a path even if it is not a directory.

    Last Modified: Nov 21, 2024
    Published: Jun 16, 2024

    CVE-2024-38462

    iRODS before 4.3.2 provides an msiSendMail function with a problematic dependency on the mail binary, such as in the mailMS.cpp#L94-L106 reference.

    Last Modified: Nov 21, 2024
    Published: Jun 16, 2024

    CVE-2017-8799

    Untrusted input execution via igetwild in all iRODS versions before 4.1.11 and 4.2.1 allows other iRODS users (potentially anonymous) to execute remote shell commands via iRODS virtual pathnames. To exploit this vulnerability, a virtual iRODS pathname that includes a semicolon would be retrieved via igetwild. Because igetwild is a Bash script, the part of the pathname following the semicolon would be executed in the user's shell.

    Last Modified: Apr 20, 2025
    Published: May 05, 2017

    CVE-2012-5895

    Multiple unspecified vulnerabilities in iRODS before 3.1 have unknown impact and attack vectors.

    Last Modified: Apr 11, 2025
    Published: Nov 17, 2012
    Items Per Page
    Irods Vulnerabilities & Security CVEs | CVE-DB