Vulnerability index

Browse CVEs

12 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Enigma Network Management Solution CRITICAL 9.8
CVE-2019-16072EPSS 26%

An OS command injection vulnerability in the discover_and_manage CGI script in NETSAS Enigma NMS 65.0.0 and prior allows an attacker to execute arbit…

Fix: after 65.0.0
Fix from $2,300 2020-03-20
Enigma Nms HIGH 8.8
CVE-2019-16071

Enigma NMS 65.0.0 and prior allows administrative users to create low-privileged accounts that do not have the ability to modify any settings in the …

Fix: after 65.0.0
Fix from $1,950 2020-03-20
Enigma Network Management Solution HIGH 8.8
CVE-2019-16068

A CSRF vulnerability exists in NETSAS ENIGMA NMS version 65.0.0 and prior that could allow an attacker to be able to trick a victim into submitting a…

Fix: after 65.0.0
Fix from $1,950 2020-03-19
Enigma Network Management Solution MEDIUM 6.1
CVE-2019-16069

A number of stored Cross-site Scripting (XSS) vulnerabilities were identified in NETSAS Enigma NMS 65.0.0 and prior that could allow a threat actor t…

Fix: after 65.0.0
Fix from $1,600 2020-03-19
Enigma Network Management Solution HIGH 7.5
CVE-2019-16063

NETSAS Enigma NMS 65.0.0 and prior does not encrypt sensitive data rendered within web pages. It is possible for an attacker to expose unencrypted se…

Fix: after 65.0.0
Fix from $1,950 2020-03-19
Enigma Network Management Solution CRITICAL 9.6
CVE-2019-16064

NETSAS Enigma NMS 65.0.0 and prior suffers from a directory traversal vulnerability that can allow an authenticated user to access files and director…

Fix: after 65.0.0
Fix from $2,300 2020-03-19
Enigma Network Management Solution HIGH 8.8
CVE-2019-16065

A remote SQL injection web vulnerability was discovered in the Enigma NMS 65.0.0 and prior web application that allows an attacker to execute SQL com…

Fix: after 65.0.0
Fix from $1,950 2020-03-19
Enigma Network Management Solution HIGH 8.8
CVE-2019-16066

An unrestricted file upload vulnerability exists in user and system file upload functions in NETSAS Enigma NMS 65.0.0 and prior. This allows an attac…

Fix: after 65.0.0
Fix from $1,950 2020-03-19
Enigma Network Management Solution HIGH 7.5
CVE-2019-16067

NETSAS Enigma NMS 65.0.0 and prior utilises basic authentication over HTTP for enforcing access control to the web application. The use of weak authe…

Fix: after 65.0.0
Fix from $1,950 2020-03-19
Enigma Network Management Solution MEDIUM 6.1
CVE-2019-16070

A number of stored Cross-site Scripting (XSS) vulnerabilities were identified in NETSAS Enigma NMS 65.0.0 and prior that could allow a threat actor t…

Fix: after 65.0.0
Fix from $1,600 2020-03-19
Enigma Network Management Solution HIGH 8.8
CVE-2019-16061

A number of files on the NETSAS Enigma NMS server 65.0.0 and prior are granted weak world-readable and world-writable permissions, allowing any low p…

Fix: after 65.0.0
Fix from $1,950 2020-03-19
Enigma Network Management Solution MEDIUM 6.5
CVE-2019-16062

NETSAS Enigma NMS 65.0.0 and prior does not encrypt sensitive data stored within the SQL database. It is possible for an attacker to expose unencrypt…

Fix: after 65.0.0
Fix from $1,600 2020-03-19