Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2020-7351EPSS 65% An OS Command Injection vulnerability in the endpoint_devicemap.php component of Fonality Trixbox Community Edition allows an attacker to execute com… Trixbox after 2.8.0.4 Fix from $1,9502020-05-01 HIGH 8.8 CVE-2017-14535EPSS 50% trixbox 2.8.0.4 has OS command injection via shell metacharacters in the lang parameter to /maint/modules/home/index.php. Trixbox No fix yet Fix from $1,9502018-02-16 MEDIUM 6.5 CVE-2017-14537EPSS 39% trixbox 2.8.0.4 has path traversal via the xajaxargs array parameter to /maint/index.php?packages or the lang parameter to /maint/modules/home/index.… Trixbox No fix yet Fix from $1,6002018-02-16 MEDIUM 5.4 CVE-2017-14536 trixbox 2.8.0.4 has XSS via the PATH_INFO to /maint/index.php or /user/includes/language/langChooser.php. Trixbox No fix yet Fix from $1,6002018-02-16 HIGH 7.5 CVE-2014-5109 SQL injection vulnerability in maint/modules/endpointcfg/endpoint_generic.php in Fonality trixbox allows remote attackers to execute arbitrary SQL co… Trixbox No fix yet Fix from $1,9502014-07-28 HIGH 7.5 CVE-2014-5112EPSS 9% maint/modules/home/index.php in Fonality trixbox allows remote attackers to execute arbitrary commands via shell metacharacters in the lang parameter. Trixbox No fix yet Fix from $1,9502014-07-28 MEDIUM 5.0 CVE-2014-5111EPSS 22% Multiple directory traversal vulnerabilities in Fonality trixbox allow remote attackers to read arbitrary files via a .. (dot dot) in the lang parame… Trixbox No fix yet Fix from $1,6002014-07-28 HIGH 7.5 CVE-2010-0702 SQL injection vulnerability in cisco/services/PhonecDirectory.php in Fonality Trixbox 2.2.4 allows remote attackers to execute arbitrary SQL commands… Trixbox No fix yet Fix from $1,9502010-02-23