Vulnerability index

Browse CVEs

17 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Ocs Inventory Server MEDIUM 6.1
CVE-2026-22675

OCS Inventory NG Server version 2.12.3 and prior contain a stored cross-site scripting vulnerability that allows unauthenticated attackers to execute…

Fix: after 2.12.3
Fix from $1,600 2026-04-06
Ocsinventory Ocsreports MEDIUM 6.9
CVE-2023-3726

OCSInventory allow stored email template with special characters that lead to a Stored cross-site Scripting.

No fix yet
Fix from $1,600 2024-01-04
Ocsinventory Ng HIGH 8.8
CVE-2018-15537EPSS 5%

Unrestricted file upload (with remote code execution) in OCS Inventory NG ocsreports allows a privileged user to gain access to the server via crafte…

No fix yet
Fix from $1,950 2018-11-29
Ocs Inventory Server HIGH 8.8
CVE-2018-14857

Unrestricted file upload (with remote code execution) in require/mail/NotificationMail.php in Webconsole in OCS Inventory NG OCS Inventory Server thr…

Fix: after 2.5
Fix from $1,950 2018-08-06
Ocsinventory Ng CRITICAL 9.1
CVE-2018-14473

OCS Inventory 2.4.1 lacks a proper XML parsing configuration, allowing the use of external entities. This issue can be exploited by an attacker sendi…

No fix yet
Fix from $2,300 2018-08-04
Ocsinventory Ng HIGH 8.8
CVE-2018-12482

OCS Inventory 2.4.1 contains multiple SQL injections in the search engine. Authentication is needed in order to exploit the issues.

No fix yet
Fix from $1,950 2018-08-04
Ocsinventory Ng HIGH 8.8
CVE-2018-12483

OCS Inventory 2.4.1 is prone to a remote command-execution vulnerability. Specifically, this issue occurs because the content of the ipdiscover_analy…

No fix yet
Fix from $1,950 2018-08-04
Ocsinventory Ng MEDIUM 6.5
CVE-2018-1000558

OCS Inventory NG ocsreports 2.4 and ocsreports 2.3.1 version 2.4 and 2.3.1 contains a SQL Injection vulnerability in web search that can result in An…

No fix yet
Fix from $1,600 2018-06-26
Ocsinventory Ng MEDIUM 6.1
CVE-2018-1000557

OCS Inventory OCS Inventory NG version ocsreports 2.4 contains a Cross Site Scripting (XSS) vulnerability in login form and search functionality that…

No fix yet
Fix from $1,600 2018-06-26
Ocs Inventory Ng MEDIUM 6.8
CVE-2010-1733

Multiple SQL injection vulnerabilities in OCS Inventory NG before 1.02.3 allow remote attackers to execute arbitrary SQL commands via (1) multiple in…

Fix: after 1.02.1
Fix from $1,600 2010-05-06
Ocs Inventory Ng HIGH 7.5
CVE-2010-1595

Multiple SQL injection vulnerabilities in ocsreports/index.php in OCS Inventory NG 1.02.1 allow remote attackers to execute arbitrary SQL commands vi…

No fix yet
Fix from $1,950 2010-04-28
Ocs Inventory Ng HIGH 7.5
CVE-2009-3042

SQL injection vulnerability in machine.php in Open Computer and Software (OCS) Inventory NG 1.02.1 allows remote attackers to execute arbitrary SQL c…

No fix yet
Fix from $1,950 2009-09-01
Ocs Inventory Ng HIGH 7.5
CVE-2009-3040

Multiple SQL injection vulnerabilities in Open Computer and Software (OCS) Inventory NG 1.02 for Unix allow remote attackers to execute arbitrary SQL…

No fix yet
Fix from $1,950 2009-09-01
Ocs Inventory Ng HIGH 7.2
CVE-2009-0667

Untrusted search path vulnerability in Agent/Backend.pm in Ocsinventory-Agent before 0.0.9.3, and 1.x before 1.0.1, in OCS Inventory allows local use…

Fix: after 0.0.9.2
Fix from $1,950 2009-07-09
Ocs Inventory Ng MEDIUM 5.0
CVE-2009-2166

Absolute path traversal vulnerability in cvs.php in OCS Inventory NG before 1.02.1 on Unix allows remote attackers to read arbitrary files via a full…

Fix: after 1.02
Fix from $1,600 2009-06-22
Ocs Inventory Ng MEDIUM 5.0
CVE-2009-1769

The web interface in Open Computer and Software Inventory Next Generation (OCS Inventory NG) 1.01 generates different error messages depending on whe…

Mitigation only
Fix from $1,600 2009-05-22
Ocs Inventory Ng HIGH 10.0
CVE-2009-1443

Multiple unspecified vulnerabilities in the Server component in OCS Inventory NG before 1.02 have unknown impact and attack vectors.

Fix: after 1.01
Fix from $1,950 2009-04-27