Vulnerability index

Browse CVEs

11 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Groundwork Monitor MEDIUM 6.8
CVE-2013-3513

Multiple cross-site request forgery (CSRF) vulnerabilities in the Noma component in GroundWork Monitor Enterprise 6.7.0 allow remote attackers to hij…

Mitigation only
Fix from $1,600 2013-05-08
Groundwork Monitor MEDIUM 6.5
CVE-2013-3509

html/System-NeDi.php in the NeDi component in GroundWork Monitor Enterprise 6.7.0 allows remote authenticated users to execute arbitrary commands via…

Mitigation only
Fix from $1,600 2013-05-08
Groundwork Monitor MEDIUM 6.5
CVE-2013-3510

Multiple SQL injection vulnerabilities in GroundWork Monitor Enterprise 6.7.0 allow remote authenticated users to execute arbitrary SQL commands via …

Mitigation only
Fix from $1,600 2013-05-08
Groundwork Monitor MEDIUM 6.5
CVE-2013-3512

The Cacti component in GroundWork Monitor Enterprise 6.7.0 does not properly perform authorization checks, which allows remote authenticated users to…

Mitigation only
Fix from $1,600 2013-05-08
Groundwork Monitor MEDIUM 5.8
CVE-2013-3511

Open redirect vulnerability in the NeDi component in GroundWork Monitor Enterprise 6.7.0 allows remote attackers to redirect users to arbitrary web s…

No fix yet
Fix from $1,600 2013-05-08
Groundwork Monitor HIGH 7.5
CVE-2013-3499

GroundWork Monitor Enterprise 6.7.0 performs authentication on the basis of the HTTP Referer header, which allows remote attackers to obtain administ…

Mitigation only
Fix from $1,950 2013-05-08
Groundwork Monitor HIGH 7.5
CVE-2013-3500

The Foundation webapp admin interface in GroundWork Monitor Enterprise 6.7.0 uses the nagios account as the owner of writable files under /usr/local/…

Mitigation only
Fix from $1,950 2013-05-08
Groundwork Monitor HIGH 7.5
CVE-2013-3506

cgi-bin/performance/perfchart.cgi in the Performance component in GroundWork Monitor Enterprise 6.7.0 does not properly restrict XML content, which a…

Mitigation only
Fix from $1,950 2013-05-08
Groundwork Monitor MEDIUM 6.5
CVE-2013-3502EPSS 54%

monarch_scan.cgi in the MONARCH component in GroundWork Monitor Enterprise 6.7.0 allows remote authenticated users to execute arbitrary commands, and…

No fix yet
Fix from $1,600 2013-05-08
Groundwork Monitor MEDIUM 6.5
CVE-2013-3508

html/System-Files.php in the System File Overview feature in the NeDi component in GroundWork Monitor Enterprise 6.7.0 allows remote authenticated us…

Mitigation only
Fix from $1,600 2013-05-08
Groundwork Monitor MEDIUM 5.5
CVE-2013-3504

Directory traversal vulnerability in monarch.cgi in the MONARCH component in GroundWork Monitor Enterprise 6.7.0 allows remote authenticated users to…

Mitigation only
Fix from $1,600 2013-05-08