Vulnerability index

Browse CVEs

7 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Trixbox HIGH 8.8
CVE-2017-14535EPSS 50%

trixbox 2.8.0.4 has OS command injection via shell metacharacters in the lang parameter to /maint/modules/home/index.php.

No fix yet
Fix from $1,950 2018-02-16
Trixbox MEDIUM 6.5
CVE-2017-14537EPSS 39%

trixbox 2.8.0.4 has path traversal via the xajaxargs array parameter to /maint/index.php?packages or the lang parameter to /maint/modules/home/index.…

No fix yet
Fix from $1,600 2018-02-16
Trixbox MEDIUM 5.4
CVE-2017-14536

trixbox 2.8.0.4 has XSS via the PATH_INFO to /maint/index.php or /user/includes/language/langChooser.php.

No fix yet
Fix from $1,600 2018-02-16
Trixbox HIGH 7.5
CVE-2014-5109

SQL injection vulnerability in maint/modules/endpointcfg/endpoint_generic.php in Fonality trixbox allows remote attackers to execute arbitrary SQL co…

No fix yet
Fix from $1,950 2014-07-28
Trixbox HIGH 7.5
CVE-2014-5112EPSS 9%

maint/modules/home/index.php in Fonality trixbox allows remote attackers to execute arbitrary commands via shell metacharacters in the lang parameter.

No fix yet
Fix from $1,950 2014-07-28
Trixbox MEDIUM 5.0
CVE-2014-5111EPSS 22%

Multiple directory traversal vulnerabilities in Fonality trixbox allow remote attackers to read arbitrary files via a .. (dot dot) in the lang parame…

No fix yet
Fix from $1,600 2014-07-28
Trixbox HIGH 7.5
CVE-2010-0702

SQL injection vulnerability in cisco/services/PhonecDirectory.php in Fonality Trixbox 2.2.4 allows remote attackers to execute arbitrary SQL commands…

No fix yet
Fix from $1,950 2010-02-23