Known Vulnerabilities for Knime Server by Knime
Listed below are 4 of the newest known vulnerabilities associated with "Knime Server" by "Knime".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-44748 json | A directory traversal vulnerability in the ZIP archive extraction routines of KNIME Server since 4.3.0 can result in arbitrar... | 7.5 - HIGH | 2022-11-24 | 2023-11-07 |
| CVE-2021-45097 json | KNIME Server before 4.12.6 and 4.13.x before 4.13.4 (when installed in unattended mode) keeps the administrator's password in... | 5.5 - MEDIUM | 2021-12-16 | 2023-09-28 |
| CVE-2021-44726 json | KNIME Server before 4.13.4 allows XSS via the old WebPortal login page. | 6.1 - MEDIUM | 2021-12-08 | 2023-09-28 |
| CVE-2021-44725 json | KNIME Server before 4.13.4 allows directory traversal in a request for a client profile. | 7.5 - HIGH | 2021-12-08 | 2023-09-28 |