Vulnerability index

Browse CVEs

15 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2026-24893 openITCOCKPIT is an open source monitoring tool built for different monitoring engines. openITCOCKPIT Community Edition prior to version 5.5.2 contai… Openitcockpit 5.5.2+ Fix from $1,9502026-04-14 HIGH 8.8 CVE-2026-24892 openITCOCKPIT is an open source monitoring tool built for different monitoring engines like Nagios, Naemon and Prometheus. openITCOCKPIT Community Ed… Openitcockpit 5.4.0+ Fix from $1,9502026-02-20 HIGH 7.5 CVE-2026-24891 openITCOCKPIT is an open source monitoring tool built for different monitoring engines like Nagios, Naemon and Prometheus. Versions 5.3.1 and below c… Openitcockpit 5.4.0+ Fix from $1,9502026-02-20 HIGH 8.8 CVE-2023-36663 it-novum openITCOCKPIT (aka open IT COCKPIT) 4.6.4 before 4.6.5 allows SQL Injection (by authenticated users) via the sort parameter of the API inter… Openitcockpit Patch available Fix from $1,9502023-06-25 CRITICAL 9.1 CVE-2020-10788 openITCOCKPIT before 3.7.3 uses the 1fea123e07f730f76e661bced33a94152378611e API key rather than generating a random API Key for WebSocket connection… Openitcockpit 3.7.3+ Fix from $2,3002020-03-25 CRITICAL 9.8 CVE-2020-10789 openITCOCKPIT before 3.7.3 has a web-based terminal that allows attackers to execute arbitrary OS commands via shell metacharacters that are mishandl… Openitcockpit 3.7.3+ Fix from $2,3002020-03-25 MEDIUM 6.5 CVE-2020-10791 app/Plugin/GrafanaModule/Controller/GrafanaConfigurationController.php in openITCOCKPIT before 3.7.3 allows remote authenticated users to trigger out… Openitcockpit 3.7.3+ Fix from $1,6002020-03-25 MEDIUM 5.4 CVE-2020-10790 openITCOCKPIT before 3.7.3 has unnecessary files (such as Lodash files) under the web root, which leads to XSS. Openitcockpit 3.7.3+ Fix from $1,6002020-03-25 HIGH 7.5 CVE-2020-10792 openITCOCKPIT through 3.7.2 allows remote attackers to configure the self::DEVELOPMENT or self::STAGING option by placing a hostname containing "dev"… Openitcockpit after 3.7.2 Fix from $1,9502020-03-20 MEDIUM 6.1 CVE-2019-10227 openITCOCKPIT before 3.7.1 has reflected XSS in the 404-not-found component. Openitcockpit 3.7.1+ Fix from $1,6002019-12-31 CRITICAL 9.8 CVE-2019-15490 openITCOCKPIT before 3.7.1 allows code injection, aka RVID 1-445b21. Openitcockpit 3.7.1+ Fix from $2,3002019-08-23 CRITICAL 9.8 CVE-2019-15494 openITCOCKPIT before 3.7.1 allows SSRF, aka RVID 5-445b21. Openitcockpit 3.7.1+ Fix from $2,3002019-08-23 HIGH 8.8 CVE-2019-15491 openITCOCKPIT before 3.7.1 has CSRF, aka RVID 2-445b21. Openitcockpit 3.7.1+ Fix from $1,9502019-08-23 HIGH 7.5 CVE-2019-15493 openITCOCKPIT before 3.7.1 allows deletion of files, aka RVID 4-445b21. Openitcockpit 3.7.1+ Fix from $1,9502019-08-23 MEDIUM 6.1 CVE-2019-15492 openITCOCKPIT before 3.7.1 has reflected XSS, aka RVID 3-445b21. Openitcockpit 3.7.1+ Fix from $1,6002019-08-23