Filtered by vendor Emqx
Subscribe
Total
25 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2024-44460 | 1 Emqx | 1 Nanomq | 2024-10-30 | N/A | 7.5 HIGH |
An invalid read size in Nanomq v0.21.9 allows attackers to cause a Denial of Service (DoS). | |||||
CVE-2021-46434 | 1 Emqx | 1 Emqx | 2024-08-04 | 5.0 MEDIUM | 5.3 MEDIUM |
EMQ X Dashboard V3.0.0 is affected by username enumeration in the "/api /v3/auth" interface. When a user login, the application returns different results depending on whether the account is correct, that allowed an attacker to determine if a given username was valid | |||||
CVE-2023-37781 | 1 Emqx | 1 Emqx | 2023-07-28 | N/A | 6.5 MEDIUM |
An issue in the emqx_sn plugin of EMQX v4.3.8 allows attackers to execute a directory traversal via uploading a crafted .txt file. | |||||
CVE-2023-34494 | 1 Emqx | 1 Nanomq | 2023-06-16 | N/A | 7.5 HIGH |
NanoMQ 0.16.5 is vulnerable to heap-use-after-free in the nano_ctx_send function of nmq_mqtt.c. | |||||
CVE-2021-33175 | 1 Emqx | 1 Emq X Broker | 2021-06-16 | 5.0 MEDIUM | 7.5 HIGH |
EMQ X Broker versions prior to 4.2.8 are vulnerable to a denial of service attack as a result of excessive memory consumption due to the handling of untrusted inputs. These inputs cause the message broker to consume large amounts of memory, resulting in the application being terminated by the operating system. |