Vulnerability index

Browse CVEs

16 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Rmm CRITICAL 9.8
CVE-2025-34392EPSS 25%

Barracuda Service Center, as implemented in the RMM solution, in versions prior to 2025.1.1, does not verify the URL defined in an attacker-controlle…

Fix: 2025.1.1+
Fix from $2,300 2025-12-10
Rmm CRITICAL 9.8
CVE-2025-34393

Barracuda Service Center, as implemented in the RMM solution, in versions prior to 2025.1.1, does not correctly verify the name of an attacker-contro…

Fix: 2025.1.1+
Fix from $2,300 2025-12-10
Rmm CRITICAL 9.8
CVE-2025-34394

Barracuda Service Center, as implemented in the RMM solution, in versions prior to 2025.1.1, exposes a .NET Remoting service that is insufficiently p…

Fix: 2025.1.1+
Fix from $2,300 2025-12-10
Rmm HIGH 7.5
CVE-2025-34395

Barracuda Service Center, as implemented in the RMM solution, in versions prior to 2025.1.1, exposes a .NET Remoting service in which an unauthentica…

Fix: 2025.1.1+
Fix from $1,950 2025-12-10
Message Archiver Firmware MEDIUM 6.1
CVE-2025-8319

the BMA login interface allows arbitrary JavaScript or HTML to be written straight into the page’s Document Object Model via the error= URL parameter

No fix yet
Fix from $1,600 2025-07-30
Email Security Gateway 300 Firmware CRITICAL 9.8
CVE-2023-7102EPSS 44%

Use of a Third Party library produced a vulnerability in Barracuda Networks Inc. Barracuda ESG Appliance which allowed Parameter Injection.This issue…

Fix: after 9.2.1.001
Fix from $2,300 2023-12-24
Email Security Gateway 300 Firmware CRITICAL 9.8
CVE-2023-2868 KEVEPSS 87%

A remote command injection vulnerability exists in the Barracuda Email Security Gateway (appliance form factor only) product effecting versions 5.1.3…

Fix: after 9.2.0.006
Fix from $2,300 2023-05-24
T100b Firmware HIGH 7.2
CVE-2023-26213EPSS 8%

On Barracuda CloudGen WAN Private Edge Gateway devices before 8 webui-sdwan-1089-8.3.1-174141891, an OS command injection vulnerability exists in /aj…

No fix yet
Fix from $1,950 2023-03-03
Network Access Client HIGH 7.8
CVE-2021-42711

Barracuda Network Access Client before 5.2.2 creates a Temporary File in a Directory with Insecure Permissions. This file is executed with SYSTEM pri…

Fix: 5.2.2+
Fix from $1,950 2021-12-01
Load Balancer Adc Firmware MEDIUM 6.5
CVE-2019-5648

Authenticated, administrative access to a Barracuda Load Balancer ADC running unpatched firmware <= v6.4 allows one to edit the LDAP service configur…

Fix: after 6.4
Fix from $1,600 2020-03-12
Web Application Firewall CRITICAL 9.8
CVE-2014-2595EPSS 17%

Barracuda Web Application Firewall (WAF) 7.8.1.013 allows remote attackers to bypass authentication by leveraging a permanent authentication token ob…

No fix yet
Fix from $2,300 2020-02-12
Vpn Client HIGH 7.8
CVE-2019-6724

The barracudavpn component of the Barracuda VPN Client prior to version 5.0.2.7 for Linux, macOS, and OpenBSD runs as a privileged process and can al…

Fix: 5.0.2.7+
Fix from $1,950 2019-03-21
Message Archiver MEDIUM 6.1
CVE-2018-20369

Barracuda Message Archiver 2018 has XSS in the error_msg exception-handling value for the ldap_user parameter to the cgi-mod/ldap_load_entry.cgi modu…

No fix yet
Fix from $1,600 2018-12-23
Load Balancer CRITICAL 9.8
CVE-2014-8426

Hard coded weak credentials in Barracuda Load Balancer 5.0.0.015.

No fix yet
Fix from $2,300 2017-08-28
Load Balancer CRITICAL 9.8
CVE-2014-8428

Privilege escalation vulnerability in Barracuda Load Balancer 5.0.0.015 via the use of an improperly protected SSH key.

No fix yet
Fix from $2,300 2017-08-28
Load Balancer Adc HIGH 8.8
CVE-2017-6320EPSS 11%

A remote command injection vulnerability exists in the Barracuda Load Balancer product line (confirmed on v5.4.0.004 (2015-11-26) and v6.0.1.006 (201…

Fix: after 6.0.1.006
Fix from $1,950 2017-07-18