Vulnerability index

Browse CVEs

19 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Integria Ims MEDIUM 6.1
CVE-2021-3834

Integria IMS in its 5.0.92 version does not filter correctly some fields related to the login.php file. An attacker could exploit this vulnerability …

Mitigation only
Fix from $1,600 2021-10-07
Integria Ims CRITICAL 9.8
CVE-2021-3833

Integria IMS login check uses a loose comparator ("==") to compare the MD5 hash of the password provided by the user and the MD5 hash stored in the d…

Mitigation only
Fix from $2,300 2021-10-07
Integria Ims CRITICAL 9.8
CVE-2021-3832

Integria IMS in its 5.0.92 version is vulnerable to a Remote Code Execution attack through file uploading. An unauthenticated attacker could abuse th…

Mitigation only
Fix from $2,300 2021-10-07
Pandora Fms CRITICAL 9.8
CVE-2021-32098

Artica Pandora FMS 742 allows unauthenticated attackers to perform Phar deserialization.

No fix yet
Fix from $2,300 2021-05-07
Pandora Fms CRITICAL 9.8
CVE-2021-32099EPSS 11%

A SQL injection vulnerability in the pandora_console component of Artica Pandora FMS 742 allows an unauthenticated attacker to upgrade his unprivileg…

No fix yet
Fix from $2,300 2021-05-07
Pandora Fms MEDIUM 6.5
CVE-2021-32100

A remote file inclusion vulnerability exists in Artica Pandora FMS 742, exploitable by the lowest privileged user.

No fix yet
Fix from $1,600 2021-05-07
Pandora Fms HIGH 7.2
CVE-2020-5844EPSS 30%

index.php?sec=godmode/extensions&sec2=extensions/files_repo in Pandora FMS v7.0 NG allows authenticated administrators to upload malicious PHP script…

No fix yet
Fix from $1,950 2020-03-16
Pandora Fms HIGH 7.2
CVE-2020-8500

In Artica Pandora FMS 7.42, Web Admin users can execute arbitrary code by uploading a .php file via the Updater or Extension component. NOTE: The ven…

No fix yet
Fix from $1,950 2020-03-02
Pandora Fms HIGH 7.2
CVE-2020-8947EPSS 22%

functions_netflow.php in Artica Pandora FMS 7.0 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the index.php?op…

No fix yet
Fix from $1,950 2020-02-12
Pandora Fms MEDIUM 6.8
CVE-2019-20050

Pandora FMS ≤ 7.42 suffers from a remote code execution vulnerability. To exploit the vulnerability, an authenticated user should create a new folder…

No fix yet
Fix from $1,600 2020-01-30
Pandora Fms HIGH 8.8
CVE-2019-20224EPSS 50%

netflow_get_stats in functions_netflow.php in Pandora FMS 7.0NG allows remote authenticated users to execute arbitrary OS commands via shell metachar…

No fix yet
Fix from $1,950 2020-01-09
Pandora Fms HIGH 8.8
CVE-2019-19681

Pandora FMS 7.x suffers from remote code execution vulnerability. With an authenticated user who can modify the alert system, it is possible to defin…

Mitigation only
Fix from $1,950 2019-12-26
Integria Ims CRITICAL 9.8
CVE-2019-15091

filemgr.php in Artica Integria IMS 5.0.86 allows index.php?sec=wiki&sec2=operation/wiki/wiki&action=upload arbitrary file upload.

Mitigation only
Fix from $2,300 2019-08-16
Integria Ims MEDIUM 6.5
CVE-2018-19829

Artica Integria IMS 5.0.83 has CSRF in godmode/usuarios/lista_usuarios, resulting in the ability to delete an arbitrary user when the ID number is kn…

No fix yet
Fix from $1,600 2018-12-18
Integria Ims MEDIUM 6.1
CVE-2018-19828

Artica Integria IMS 5.0.83 has XSS via the search_string parameter.

No fix yet
Fix from $1,600 2018-12-17
Pandora Fms MEDIUM 6.5
CVE-2017-15937

Artica Pandora FMS version 7.0 leaks a full installation pathname via GET data when intercepting the main page's graph requisition. This also implies…

Mitigation only
Fix from $1,600 2017-10-27
Pandora Fms HIGH 7.2
CVE-2017-15935

Artica Pandora FMS version 7.0 is vulnerable to remote PHP code execution through the manager files function. This is only exploitable by administrat…

Mitigation only
Fix from $1,950 2017-10-27
Pandora Fms MEDIUM 5.4
CVE-2017-15934

Artica Pandora FMS version 7.0 is vulnerable to stored Cross-Site Scripting in the map name parameter.

Mitigation only
Fix from $1,600 2017-10-27
Pandora Fms MEDIUM 5.4
CVE-2017-15936

In Artica Pandora FMS version 7.0, an Attacker with write Permission can create an agent with an XSS Payload; when a user enters the agent definition…

Mitigation only
Fix from $1,600 2017-10-27