Vulnerability index

Browse CVEs

18 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2020-13167EPSS 95% Netsweeper through 6.4.3 allows unauthenticated remote code execution because webadmin/tools/unixlogin.php (with certain Referer headers) launches a … Netsweeper after 6.4.3 Fix from $2,3002020-05-19 MEDIUM 6.1 CVE-2014-9617EPSS 8% Open redirect vulnerability in remotereporter/load_logfiles.php in Netsweeper before 4.0.5 allows remote attackers to redirect users to arbitrary web… Netsweeper 4.0.5+ Fix from $1,6002020-02-19 CRITICAL 9.8 CVE-2014-9612 SQL injection vulnerability in remotereporter/load_logfiles.php in Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 allows remote… Netsweeper 3.1.10 / 4.0.9+ Fix from $2,3002020-02-19 CRITICAL 9.8 CVE-2014-9613 Multiple SQL injection vulnerabilities in Netsweeper before 2.6.29.10 allow remote attackers to execute arbitrary SQL commands via the (1) login para… Netsweeper 2.6.29.10+ Fix from $2,3002020-02-19 CRITICAL 9.8 CVE-2014-9614EPSS 69% The Web Panel in Netsweeper before 4.0.5 has a default password of branding for the branding account, which makes it easier for remote attackers to o… Netsweeper 4.0.5+ Fix from $2,3002020-02-19 MEDIUM 6.1 CVE-2014-9606 Multiple cross-site scripting (XSS) vulnerabilities in Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 allow remote attackers to… Netsweeper 3.1.10 / 4.0.9+ Fix from $1,6002020-02-19 MEDIUM 6.1 CVE-2014-9607 Cross-site scripting (XSS) vulnerability in remotereporter/load_logfiles.php in Netsweeper 4.0.3 and 4.0.4 allows remote attackers to inject arbitrar… Netsweeper No fix yet Fix from $1,6002020-02-19 MEDIUM 6.1 CVE-2014-9608 Cross-site scripting (XSS) vulnerability in webadmin/policy/group_table_ajax.php/ in Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4… Netsweeper 3.1.10 / 4.0.9+ Fix from $1,6002020-02-19 MEDIUM 6.1 CVE-2014-9615 Cross-site scripting (XSS) vulnerability in Netsweeper 4.0.4 allows remote attackers to inject arbitrary web script or HTML via the url parameter to … Netsweeper No fix yet Fix from $1,6002020-02-19 MEDIUM 5.3 CVE-2014-9609EPSS 13% Directory traversal vulnerability in webadmin/reporter/view_server_log.php in Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 al… Netsweeper 3.1.10 / 4.0.9+ Fix from $1,6002020-02-19 CRITICAL 9.8 CVE-2014-9611EPSS 13% Netsweeper before 4.0.5 allows remote attackers to bypass authentication and create arbitrary accounts and policies via a request to webadmin/nslam/i… Netsweeper after 4.0.4 Fix from $2,3002017-09-19 CRITICAL 9.8 CVE-2014-9618EPSS 73% The Client Filter Admin portal in Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 allows remote attackers to bypass authenticati… Netsweeper after 3.1.9 Fix from $2,3002017-09-19 HIGH 7.5 CVE-2014-9616 Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 allows remote attackers to obtain sensitive information by making a request that… Netsweeper after 3.1.9 Fix from $1,9502017-09-19 HIGH 7.2 CVE-2014-9619EPSS 7% Unrestricted file upload vulnerability in webadmin/ajaxfilemanager/ajaxfilemanager.php in Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x bef… Netsweeper after 3.1.9 Fix from $1,9502017-09-19 MEDIUM 5.3 CVE-2014-9610 Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 allows remote attackers to bypass authentication and remove IP addresses from th… Netsweeper after 3.1.9 Fix from $1,6002017-09-19 HIGH 9.4 CVE-2014-9605 WebUpgrade in Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 allows remote attackers to bypass authentication and create a syst… Netsweeper 3.1.10 / 4.0.9+ Fix from $1,9502015-09-04 HIGH 10.0 CVE-2012-3859 Unspecified vulnerability in the WebAdmin Portal in Netsweeper has unknown impact and attack vectors, a different vulnerability than CVE-2012-2446 an… Netsweeper No fix yet Fix from $1,9502012-07-09 MEDIUM 6.8 CVE-2012-2447 Cross-site request forgery (CSRF) vulnerability in accountmgr/adminupdate.php in the WebAdmin Portal in Netsweeper allows remote attackers to hijack … Netsweeper No fix yet Fix from $1,6002012-07-09