Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.5
CVE-2021-44674
An information exposure issue has been discovered in Opmantek Open-AudIT 4.2.0. The vulnerability allows an authenticated attacker to read file outsi…
Open Audit
Patch available
CRITICAL 9.8
CVE-2021-40612
An issue was discovered in Opmantek Open-AudIT after 3.5.0. Without authentication, a vulnerability in code_igniter/application/controllers/util.php …
Open Audit
4.3.0+
MEDIUM 6.1
CVE-2021-44916
Opmantek Open-AudIT Community 4.2.0 (Fixed in 4.3.0) is affected by a Cross Site Scripting (XSS) vulnerability. If a bad value is passed to the routi…
Open Audit
after 4.2.0
MEDIUM 6.1
CVE-2021-3333
Opmantek Open-AudIT 4.0.1 is affected by cross-site scripting (XSS). When outputting SQL statements for debugging, a maliciously crafted query can tr…
Open Audit
Patch available
MEDIUM 5.9
CVE-2021-3130
Within the Open-AudIT up to version 3.5.3 application, the web interface hides SSH secrets, Windows passwords, and SNMP strings from users using HTML…
Open Audit
after 4.0.2
CRITICAL 9.8
CVE-2020-11942
An issue was discovered in Open-AudIT 3.2.2. There are Multiple SQL Injections.
Open Audit
No fix yet
HIGH 8.8
CVE-2020-11943EPSS 24%
An issue was discovered in Open-AudIT 3.2.2. There is Arbitrary file upload.
Open Audit
No fix yet
MEDIUM 5.4
CVE-2020-12261
Open-AudIT 3.3.0 allows an XSS attack after login.
Open Audit
No fix yet
HIGH 8.8
CVE-2020-12078EPSS 10%
An issue was discovered in Open-AudIT 3.3.1. There is shell metacharacter injection via attributes to an open-audit/configuration/ URI. An attacker c…
Open Audit
Patch available
HIGH 8.8
CVE-2020-11941
An issue was discovered in Open-AudIT 3.2.2. There is OS Command injection in Discovery.
Open Audit
No fix yet
HIGH 8.8
CVE-2019-16293
The Create Discoveries feature of Open-AudIT before 3.2.0 allows an authenticated attacker to execute arbitrary OS commands via a crafted value for a…
Open Audit
3.2.0+
MEDIUM 5.4
CVE-2018-16607
Cross-site scripting (XSS) vulnerability in the Orgs Page in Open-AudIT Professional edition in 2.2.7 allows remote attackers to inject arbitrary web…
Open Audit
No fix yet
MEDIUM 6.1
CVE-2018-14493EPSS 40%
Cross-site scripting (XSS) vulnerability in the Groups Page in Open-Audit Community 2.2.6 allows remote attackers to inject arbitrary web script or H…
Open Audit
No fix yet
MEDIUM 5.4
CVE-2018-11124
Cross-site scripting (XSS) vulnerability in Attributes functionality in Open-AudIT Community edition before 2.2.2 allows remote attackers to inject a…
Open Audit
2.2.2+
MEDIUM 5.4
CVE-2018-10314
Cross-site scripting (XSS) vulnerability in Open-AudIT Community 2.2.0 allows remote attackers to inject arbitrary web script or HTML via a crafted n…
Open Audit
No fix yet
HIGH 7.5
CVE-2016-6534
Opmantek NMIS before 4.3.7c has command injection via man, finger, ping, trace, and nslookup in the tools.pl CGI script. Versions before 8.5.12G migh…
Network Management Information System
after 8.5.10g
MEDIUM 5.4
CVE-2016-5642
Opmantek NMIS before 8.5.12G has XSS via SNMP.
Network Management Information System
after 8.5.10g