Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 6.9
CVE-2023-3726
OCSInventory allow stored email template with special characters that lead to a Stored cross-site Scripting.
Ocsinventory Ocsreports
No fix yet
HIGH 8.8
CVE-2018-15537EPSS 5%
Unrestricted file upload (with remote code execution) in OCS Inventory NG ocsreports allows a privileged user to gain access to the server via crafte…
Ocsinventory Ng
No fix yet
CRITICAL 9.1
CVE-2018-14473
OCS Inventory 2.4.1 lacks a proper XML parsing configuration, allowing the use of external entities. This issue can be exploited by an attacker sendi…
Ocsinventory Ng
No fix yet
HIGH 8.8
CVE-2018-12482
OCS Inventory 2.4.1 contains multiple SQL injections in the search engine. Authentication is needed in order to exploit the issues.
Ocsinventory Ng
No fix yet
HIGH 8.8
CVE-2018-12483
OCS Inventory 2.4.1 is prone to a remote command-execution vulnerability. Specifically, this issue occurs because the content of the ipdiscover_analy…
Ocsinventory Ng
No fix yet
MEDIUM 6.5
CVE-2018-1000558
OCS Inventory NG ocsreports 2.4 and ocsreports 2.3.1 version 2.4 and 2.3.1 contains a SQL Injection vulnerability in web search that can result in An…
Ocsinventory Ng
No fix yet
MEDIUM 6.1
CVE-2018-1000557
OCS Inventory OCS Inventory NG version ocsreports 2.4 contains a Cross Site Scripting (XSS) vulnerability in login form and search functionality that…
Ocsinventory Ng
No fix yet
HIGH 7.5
CVE-2010-1595
Multiple SQL injection vulnerabilities in ocsreports/index.php in OCS Inventory NG 1.02.1 allow remote attackers to execute arbitrary SQL commands vi…
Ocs Inventory Ng
No fix yet
HIGH 7.5
CVE-2009-3042
SQL injection vulnerability in machine.php in Open Computer and Software (OCS) Inventory NG 1.02.1 allows remote attackers to execute arbitrary SQL c…
Ocs Inventory Ng
No fix yet
HIGH 7.5
CVE-2009-3040
Multiple SQL injection vulnerabilities in Open Computer and Software (OCS) Inventory NG 1.02 for Unix allow remote attackers to execute arbitrary SQL…
Ocs Inventory Ng
No fix yet
MEDIUM 5.0
CVE-2009-1769
The web interface in Open Computer and Software Inventory Next Generation (OCS Inventory NG) 1.01 generates different error messages depending on whe…
Ocs Inventory Ng
Mitigation only