Vulnerability index

Browse CVEs

11 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Ocsinventory Ocsreports MEDIUM 6.9
CVE-2023-3726

OCSInventory allow stored email template with special characters that lead to a Stored cross-site Scripting.

No fix yet
Fix from $1,600 2024-01-04
Ocsinventory Ng HIGH 8.8
CVE-2018-15537EPSS 5%

Unrestricted file upload (with remote code execution) in OCS Inventory NG ocsreports allows a privileged user to gain access to the server via crafte…

No fix yet
Fix from $1,950 2018-11-29
Ocsinventory Ng CRITICAL 9.1
CVE-2018-14473

OCS Inventory 2.4.1 lacks a proper XML parsing configuration, allowing the use of external entities. This issue can be exploited by an attacker sendi…

No fix yet
Fix from $2,300 2018-08-04
Ocsinventory Ng HIGH 8.8
CVE-2018-12482

OCS Inventory 2.4.1 contains multiple SQL injections in the search engine. Authentication is needed in order to exploit the issues.

No fix yet
Fix from $1,950 2018-08-04
Ocsinventory Ng HIGH 8.8
CVE-2018-12483

OCS Inventory 2.4.1 is prone to a remote command-execution vulnerability. Specifically, this issue occurs because the content of the ipdiscover_analy…

No fix yet
Fix from $1,950 2018-08-04
Ocsinventory Ng MEDIUM 6.5
CVE-2018-1000558

OCS Inventory NG ocsreports 2.4 and ocsreports 2.3.1 version 2.4 and 2.3.1 contains a SQL Injection vulnerability in web search that can result in An…

No fix yet
Fix from $1,600 2018-06-26
Ocsinventory Ng MEDIUM 6.1
CVE-2018-1000557

OCS Inventory OCS Inventory NG version ocsreports 2.4 contains a Cross Site Scripting (XSS) vulnerability in login form and search functionality that…

No fix yet
Fix from $1,600 2018-06-26
Ocs Inventory Ng HIGH 7.5
CVE-2010-1595

Multiple SQL injection vulnerabilities in ocsreports/index.php in OCS Inventory NG 1.02.1 allow remote attackers to execute arbitrary SQL commands vi…

No fix yet
Fix from $1,950 2010-04-28
Ocs Inventory Ng HIGH 7.5
CVE-2009-3042

SQL injection vulnerability in machine.php in Open Computer and Software (OCS) Inventory NG 1.02.1 allows remote attackers to execute arbitrary SQL c…

No fix yet
Fix from $1,950 2009-09-01
Ocs Inventory Ng HIGH 7.5
CVE-2009-3040

Multiple SQL injection vulnerabilities in Open Computer and Software (OCS) Inventory NG 1.02 for Unix allow remote attackers to execute arbitrary SQL…

No fix yet
Fix from $1,950 2009-09-01
Ocs Inventory Ng MEDIUM 5.0
CVE-2009-1769

The web interface in Open Computer and Software Inventory Next Generation (OCS Inventory NG) 1.01 generates different error messages depending on whe…

Mitigation only
Fix from $1,600 2009-05-22