Vulnerability index

Browse CVEs

17 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2024-2054EPSS 81% The Artica-Proxy administrative web application will deserialize arbitrary PHP objects supplied by unauthenticated users and subsequently enable code… Artica Proxy No fix yet Fix from $2,3002024-03-21 HIGH 7.5 CVE-2024-2053EPSS 45% The Artica Proxy administrative web application will deserialize arbitrary PHP objects supplied by unauthenticated users and subsequently enable code… Artica Proxy No fix yet Fix from $1,9502024-03-21 CRITICAL 9.8 CVE-2024-2055 The "Rich Filemanager" feature of Artica Proxy provides a web-based interface for file management capabilities. When the feature is enabled, it does … Artica Proxy No fix yet Fix from $2,3002024-03-05 CRITICAL 9.8 CVE-2024-2056EPSS 17% Services that are running and bound to the loopback interface on the Artica Proxy are accessible through the proxy service. In particular, the "tailo… Artica Proxy No fix yet Fix from $2,3002024-03-05 MEDIUM 6.1 CVE-2022-37153 An issue was discovered in Artica Proxy 4.30.000000. There is a XSS vulnerability via the password parameter in /fw.login.php. Artica Proxy No fix yet Fix from $1,6002022-08-24 CRITICAL 9.8 CVE-2021-41739 A OS Command Injection vulnerability was discovered in Artica Proxy 4.30.000000. Attackers can execute OS commands in cyrus.events.php with GET param… Artica Proxy Mitigation only Fix from $2,3002022-05-05 HIGH 8.1 CVE-2021-40680 There is a Directory Traversal vulnerability in Artica Proxy (4.30.000000 SP206 through SP255, and VMware appliance 4.30.000000 through SP273) via th… Web Proxy Mitigation only Fix from $1,9502022-04-25 CRITICAL 9.8 CVE-2020-17506EPSS 94% Artica Web Proxy 4.30.00000000 allows remote attacker to bypass privilege detection and gain web backend administrator privileges through SQL injecti… Web Proxy No fix yet Fix from $2,3002020-08-12 HIGH 8.8 CVE-2020-17505EPSS 82% Artica Web Proxy 4.30.000000 allows an authenticated remote attacker to inject commands via the service-cmds parameter in cyrus.php. These commands a… Web Proxy No fix yet Fix from $1,9502020-08-12 HIGH 7.5 CVE-2020-15052 An issue was discovered in Artica Proxy CE before 4.28.030.418. SQL Injection exists via the Netmask, Hostname, and Alias fields. Artica Proxy 4.28.030.418+ Fix from $1,9502020-07-20 MEDIUM 6.1 CVE-2020-15053 An issue was discovered in Artica Proxy CE before 4.28.030.418. Reflected XSS exists via these search fields: real time request, System Events, Proxy… Artica Proxy 4.28.030.418+ Fix from $1,6002020-07-20 MEDIUM 6.1 CVE-2020-15051 An issue was discovered in Artica Proxy before 4.30.000000. Stored XSS exists via the Server Domain Name, Your Email Address, Group Name, MYSQL Serve… Artica Proxy 4.30.000000+ Fix from $1,6002020-07-15 CRITICAL 9.8 CVE-2020-13159EPSS 9% Artica Proxy before 4.30.000000 Community Edition allows OS command injection via the Netbios name, Server domain name, dhclient_mac, Hostname, or Al… Artica Proxy 4.30.000000+ Fix from $2,3002020-06-22 HIGH 7.5 CVE-2020-13158EPSS 54% Artica Proxy before 4.30.000000 Community Edition allows Directory Traversal via the fw.progrss.details.php popup parameter. Artica Proxy 4.30.000000+ Fix from $1,9502020-06-22 HIGH 7.2 CVE-2020-10818 Artica Proxy 4.26 allows remote command execution for an authenticated user via shell metacharacters in the "Modify the hostname" field. Artica Proxy No fix yet Fix from $1,9502020-03-22 HIGH 7.2 CVE-2019-7300 Artica Proxy 3.06.200056 allows remote attackers to execute arbitrary commands as root by reading the ressources/settings.inc ldap_admin and ldap_pas… Artica Proxy No fix yet Fix from $1,9502019-02-01 CRITICAL 9.0 CVE-2017-17055EPSS 9% Artica Web Proxy before 3.06.112911 allows remote attackers to execute arbitrary code as root by conducting a cross-site scripting (XSS) attack invol… Artica Proxy 3.06.112911+ Fix from $2,3002017-12-07