Vulnerability index

Browse CVEs

17 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Artica Proxy CRITICAL 9.8
CVE-2024-2054EPSS 81%

The Artica-Proxy administrative web application will deserialize arbitrary PHP objects supplied by unauthenticated users and subsequently enable code…

No fix yet
Fix from $2,300 2024-03-21
Artica Proxy HIGH 7.5
CVE-2024-2053EPSS 45%

The Artica Proxy administrative web application will deserialize arbitrary PHP objects supplied by unauthenticated users and subsequently enable code…

No fix yet
Fix from $1,950 2024-03-21
Artica Proxy CRITICAL 9.8
CVE-2024-2055

The "Rich Filemanager" feature of Artica Proxy provides a web-based interface for file management capabilities. When the feature is enabled, it does …

No fix yet
Fix from $2,300 2024-03-05
Artica Proxy CRITICAL 9.8
CVE-2024-2056EPSS 17%

Services that are running and bound to the loopback interface on the Artica Proxy are accessible through the proxy service. In particular, the "tailo…

No fix yet
Fix from $2,300 2024-03-05
Artica Proxy MEDIUM 6.1
CVE-2022-37153

An issue was discovered in Artica Proxy 4.30.000000. There is a XSS vulnerability via the password parameter in /fw.login.php.

No fix yet
Fix from $1,600 2022-08-24
Artica Proxy CRITICAL 9.8
CVE-2021-41739

A OS Command Injection vulnerability was discovered in Artica Proxy 4.30.000000. Attackers can execute OS commands in cyrus.events.php with GET param…

Mitigation only
Fix from $2,300 2022-05-05
Web Proxy HIGH 8.1
CVE-2021-40680

There is a Directory Traversal vulnerability in Artica Proxy (4.30.000000 SP206 through SP255, and VMware appliance 4.30.000000 through SP273) via th…

Mitigation only
Fix from $1,950 2022-04-25
Web Proxy CRITICAL 9.8
CVE-2020-17506EPSS 94%

Artica Web Proxy 4.30.00000000 allows remote attacker to bypass privilege detection and gain web backend administrator privileges through SQL injecti…

No fix yet
Fix from $2,300 2020-08-12
Web Proxy HIGH 8.8
CVE-2020-17505EPSS 82%

Artica Web Proxy 4.30.000000 allows an authenticated remote attacker to inject commands via the service-cmds parameter in cyrus.php. These commands a…

No fix yet
Fix from $1,950 2020-08-12
Artica Proxy HIGH 7.5
CVE-2020-15052

An issue was discovered in Artica Proxy CE before 4.28.030.418. SQL Injection exists via the Netmask, Hostname, and Alias fields.

Fix: 4.28.030.418+
Fix from $1,950 2020-07-20
Artica Proxy MEDIUM 6.1
CVE-2020-15053

An issue was discovered in Artica Proxy CE before 4.28.030.418. Reflected XSS exists via these search fields: real time request, System Events, Proxy…

Fix: 4.28.030.418+
Fix from $1,600 2020-07-20
Artica Proxy MEDIUM 6.1
CVE-2020-15051

An issue was discovered in Artica Proxy before 4.30.000000. Stored XSS exists via the Server Domain Name, Your Email Address, Group Name, MYSQL Serve…

Fix: 4.30.000000+
Fix from $1,600 2020-07-15
Artica Proxy CRITICAL 9.8
CVE-2020-13159EPSS 9%

Artica Proxy before 4.30.000000 Community Edition allows OS command injection via the Netbios name, Server domain name, dhclient_mac, Hostname, or Al…

Fix: 4.30.000000+
Fix from $2,300 2020-06-22
Artica Proxy HIGH 7.5
CVE-2020-13158EPSS 54%

Artica Proxy before 4.30.000000 Community Edition allows Directory Traversal via the fw.progrss.details.php popup parameter.

Fix: 4.30.000000+
Fix from $1,950 2020-06-22
Artica Proxy HIGH 7.2
CVE-2020-10818

Artica Proxy 4.26 allows remote command execution for an authenticated user via shell metacharacters in the "Modify the hostname" field.

No fix yet
Fix from $1,950 2020-03-22
Artica Proxy HIGH 7.2
CVE-2019-7300

Artica Proxy 3.06.200056 allows remote attackers to execute arbitrary commands as root by reading the ressources/settings.inc ldap_admin and ldap_pas…

No fix yet
Fix from $1,950 2019-02-01
Artica Proxy CRITICAL 9.0
CVE-2017-17055EPSS 9%

Artica Web Proxy before 3.06.112911 allows remote attackers to execute arbitrary code as root by conducting a cross-site scripting (XSS) attack invol…

Fix: 3.06.112911+
Fix from $2,300 2017-12-07