Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Netcrunch HIGH 8.8
CVE-2019-14479

AdRem NetCrunch 10.6.0.4587 allows Remote Code Execution. In the NetCrunch web client, a read-only administrator can execute arbitrary code on the se…

No fix yet
Fix from $1,950 2020-12-16
Netcrunch MEDIUM 5.4
CVE-2019-14481

AdRem NetCrunch 10.6.0.4587 has a Cross-Site Request Forgery (CSRF) vulnerability in the NetCrunch web client. Successful exploitation requires a log…

No fix yet
Fix from $1,600 2020-12-16
Netcrunch MEDIUM 6.5
CVE-2019-14476

AdRem NetCrunch 10.6.0.4587 has a Server-Side Request Forgery (SSRF) vulnerability in the NetCrunch server. Every user can trick the server into perf…

No fix yet
Fix from $1,600 2020-12-16
Netcrunch MEDIUM 5.4
CVE-2019-14478

AdRem NetCrunch 10.6.0.4587 has a stored Cross-Site Scripting (XSS) vulnerability in the NetCrunch web client. The user's input data is not properly …

No fix yet
Fix from $1,600 2020-12-16
Netcrunch CRITICAL 9.8
CVE-2019-14480

AdRem NetCrunch 10.6.0.4587 has an Improper Session Handling vulnerability in the NetCrunch web client, which can lead to an authentication bypass or…

Fix: after 11.0.0.5282
Fix from $2,300 2020-12-16
Netcrunch CRITICAL 9.8
CVE-2019-14482

AdRem NetCrunch 10.6.0.4587 has a hardcoded SSL private key vulnerability in the NetCrunch web client. The same hardcoded SSL private key is used acr…

Fix: after 10.6.0.4587
Fix from $2,300 2020-12-16
Netcrunch HIGH 8.8
CVE-2019-14483

AdRem NetCrunch 10.6.0.4587 allows Credentials Disclosure. Every user can read the BSD, Linux, MacOS and Solaris private keys, private keys' password…

Fix: after 10.6.0.4587
Fix from $1,950 2020-12-16
Netcrunch MEDIUM 5.5
CVE-2019-14477

AdRem NetCrunch 10.6.0.4587 has Improper Credential Storage since the internal user database is readable by low-privileged users and passwords in the…

Fix: after 11.0.0.5282
Fix from $1,600 2020-12-16