Known Vulnerabilities for products from Onap

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Onap".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2019-12132 json An issue was discovered in ONAP SDNC before Dublin. By executing sla/dgUpload with a crafted filename parameter, an unauthent... 9.8 - CRITICAL 2020-03-18 2020-03-20
CVE-2019-12131 json An issue was detected in ONAP APPC through Dublin and SDC through Dublin. By setting a USER_ID parameter in an HTTP header, a... 9.1 - CRITICAL 2020-03-18 2020-03-20
CVE-2019-12130 json In ONAP CLI through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/or 3... 9.8 - CRITICAL 2020-03-19 2020-08-24
CVE-2019-12129 json In ONAP MSB through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/or 3... 9.8 - CRITICAL 2020-03-19 2020-08-24
CVE-2019-12128 json In ONAP SO through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/or 30... 9.8 - CRITICAL 2020-03-19 2020-08-24
CVE-2019-12127 json In ONAP OOM through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/or 3... 9.8 - CRITICAL 2020-03-19 2020-03-20
CVE-2019-12126 json In ONAP DCAE through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/or ... 9.8 - CRITICAL 2020-03-19 2020-03-20
CVE-2019-12125 json In ONAP Logging through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/... 9.8 - CRITICAL 2020-03-19 2020-03-20
CVE-2019-12124 json An issue was discovered in ONAP APPC before Dublin. By using an exposed unprotected Jolokia interface, an unauthenticated att... 9.1 - CRITICAL 2020-03-18 2020-08-24
CVE-2019-12123 json An issue was discovered in ONAP SDNC before Dublin. By executing sla/printAsXml with a crafted module parameter, an authentic... 8.8 - HIGH 2020-03-18 2020-03-20
CVE-2019-12122 json An issue was discovered in ONAP Portal through Dublin. By executing a call to ONAPPORTAL/portalApi/loggedinUser, an attacker ... 6.5 - MEDIUM 2020-03-18 2020-03-20
CVE-2019-12121 json An issue was detected in ONAP Portal through Dublin. By executing a padding oracle attack using the ONAPPORTAL/processSingleS... 7.5 - HIGH 2020-03-18 2021-07-21
CVE-2019-12120 json An issue was discovered in ONAP VNFSDK through Dublin. By accessing port 8000 of demo-vnfsdk-vnfsdk, an unauthenticated attac... 9.8 - CRITICAL 2020-03-18 2021-07-21
CVE-2019-12119 json An issue was discovered in ONAP SDC through Dublin. By accessing port 7000 of demo-sdc-sdc-wfd-fe pod, an unauthenticated att... 9.8 - CRITICAL 2020-03-18 2021-07-21
CVE-2019-12118 json An issue was discovered in ONAP SDC through Dublin. By accessing port 7001 of demo-sdc-sdc-wfd-be pod, an unauthenticated att... 9.8 - CRITICAL 2020-03-18 2021-07-21
CVE-2019-12117 json An issue was discovered in ONAP SDC through Dublin. By accessing port 4001 of demo-sdc-sdc-onboarding-be pod, an unauthentica... 9.8 - CRITICAL 2020-03-18 2021-07-21
CVE-2019-12116 json An issue was discovered in ONAP SDC through Dublin. By accessing port 6000 of demo-sdc-sdc-fe pod, an unauthenticated attacke... 9.8 - CRITICAL 2020-03-18 2021-07-21
CVE-2019-12115 json An issue was discovered in ONAP SDC through Dublin. By accessing port 4000 of demo-sdc-sdc-be pod, an unauthenticated attacke... 9.8 - CRITICAL 2020-03-18 2021-07-21
CVE-2019-12114 json An issue was discovered in ONAP HOLMES before Dublin. By accessing port 9202 of dep-holmes-engine-mgmt pod, an unauthenticate... 9.8 - CRITICAL 2020-03-18 2021-07-21
CVE-2019-12113 json An issue was discovered in ONAP SDNC before Dublin. By executing sla/printAsGv with a crafted module parameter, an authentica... 8.8 - HIGH 2020-03-18 2020-03-20

Known software with vulnerabilities from Onap

Type Vendor Product Version
ApplicationOnapOpen Network Automation Platform-

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report