Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

ikus060/rdiffweb — Vulnerabilities & Security Advisories 42

All 42 CVE vulnerabilities found in ikus060/rdiffweb, with AI-generated Chinese analysis, references, and POCs.

This page documents Common Weakness Enumerations (CWE) associated with the ikus060/rdiffweb software product. It aggregates security vulnerabilities, misconfigurations, and potential attack vectors identified within this specific repository to provide a comprehensive view of its security posture. The content covers reported issues and advisory data spanning from the initial public disclosure of early releases through to the most recent updates, ensuring that both legacy and current security contexts are captured for thorough analysis. Here, researchers and administrators can track specific vendor or maintainer advisories to understand how reported issues are being addressed over time. Users can also explore the broader context of specific weakness classes to see how they manifest within this particular application, facilitating better risk assessment and remediation planning. Additionally, the page allows for looking up the vulnerability history of ikus060/rdiffweb, providing a chronological record of discovered flaws, their severity, and any patches or workarounds that have been implemented. This aggregation serves as a centralized reference point for understanding the evolving threat landscape surrounding this remote differential backup tool. By presenting this information in a structured format, the page aids in evaluating the overall trustworthiness and security maturity of the product, helping organizations make informed decisions about its deployment and configuration in their infrastructure.

Vendor: ikus060

CVE IDTitleCVSSSeverityPublished
CVE-2023-5289 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb CWE-770 7.5 -2023-09-29
CVE-2023-4138 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb CWE-770 7.5 -2023-08-03
CVE-2022-4724 Improper Access Control in ikus060/rdiffweb CWE-284 7.5 -2022-12-23
CVE-2022-4723 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb CWE-770 9.1 -2022-12-23
CVE-2022-4722 Authentication Bypass by Primary Weakness in ikus060/rdiffweb CWE-305 9.8 -2022-12-23
CVE-2022-4721 Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in ikus060/rdiffweb CWE-75 7.6 -2022-12-23
CVE-2022-4720 Open Redirect in ikus060/rdiffweb CWE-601 6.1 -2022-12-23
CVE-2022-4719 Business Logic Errors in ikus060/rdiffweb CWE-840 5.3 -2022-12-23
CVE-2022-4646 Cross-Site Request Forgery (CSRF) in ikus060/rdiffweb CWE-352 7.1 -2022-12-22
CVE-2022-4644 Open Redirect in ikus060/rdiffweb CWE-601 6.1 -2022-12-22
CVE-2022-4314 Improper Privilege Management in ikus060/rdiffweb CWE-269 9.8 -2022-12-06
CVE-2022-4018 Missing Authentication for Critical Function in ikus060/rdiffweb CWE-306 9.4 -2022-11-16
CVE-2022-3362 Insufficient Session Expiration in ikus060/rdiffweb CWE-613 9.8 -2022-11-14
CVE-2022-3363 Business Logic Errors in ikus060/rdiffweb CWE-840 5.3 -2022-10-26
CVE-2022-3327 Missing Authentication for Critical Function in ikus060/rdiffweb CWE-306 9.4 -2022-10-19
CVE-2022-3439 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb CWE-770 9.1 -2022-10-14
CVE-2022-3456 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb CWE-770 9.1 -2022-10-13
CVE-2022-3457 Origin Validation Error in ikus060/rdiffweb CWE-346 8.8 -2022-10-13
CVE-2022-3438 Open Redirect in ikus060/rdiffweb CWE-601 6.1 -2022-10-10
CVE-2022-3273 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb CWE-770 9.1 -2022-10-06
CVE-2022-3376 Weak Password Requirements in ikus060/rdiffweb CWE-521 9.8 -2022-10-06
CVE-2022-3389 Path Traversal in ikus060/rdiffweb CWE-22 7.5 -2022-10-06
CVE-2022-3371 No limit in length of "Token name" parameter results in DOS attack /memory corruption in ikus060/rdiffweb prior to 2.5.0a3 in ikus060/rdiffweb CWE-770 9.1 -2022-09-30
CVE-2022-3364 No limit in length of "Fullname" parameter results in DOS attack /memory corruption in ikus060/rdiffweb prior to 2.5.0a3 in ikus060/rdiffweb CWE-770 9.1 -2022-09-29
CVE-2022-3326 Weak Password Requirements in ikus060/rdiffweb CWE-521 9.8 -2022-09-28
CVE-2022-3292 Use of Cache Containing Sensitive Information in ikus060/rdiffweb CWE-524 6.5 -2022-09-28
CVE-2022-3298 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb CWE-770 9.1 -2022-09-26
CVE-2022-3290 Improper Handling of Length Parameter Inconsistency in ikus060/rdiffweb CWE-130 7.5 -2022-09-26
CVE-2022-3272 Improper Handling of Length Parameter Inconsistency in ikus060/rdiffweb CWE-130 7.5 -2022-09-26
CVE-2022-3295 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb CWE-770 9.1 -2022-09-26

All 42 known CVE vulnerabilities affecting ikus060/rdiffweb with full Chinese analysis, references, and POCs where available.