apcupsd records
4 published records for vendor apcupsd.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 25%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-427 Uncontrolled Search Path Element1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
42Plan | CVE-2003-0098No exploit | Unknown vulnerability in apcupsd before 3.8.6, and 3.10.x before 3.10.5, allows remote attackers to gain root privileges, possibly via formaapcupsd · apcupsd | Critical10.0 | — | 5.2% | Mar 3, 2003 |
41Plan | CVE-2019-12585No exploit | Apcupsd 0.3.91_5, as used in pfSense through 2.4.4-RELEASE-p3 and other products, has an Arbitrary Command Execution issue in apcupsd_statusapcupsd · apcupsd · CWE-78 | Critical9.8 | — | 5.0% | Jun 2, 2019 |
33Monitor | CVE-2017-7884No exploit | In Adam Kropelin adk0212 APC UPS Daemon through 3.14.14, the default installation of APCUPSD allows a local authenticated, but unprivileged,apcupsd · apc ups daemon · CWE-427 | High8.4 | — | 0.4% | Jun 16, 2017 |
25Monitor | CVE-2019-12584No exploit | Apcupsd 0.3.91_5, as used in pfSense through 2.4.4-RELEASE-p3 and other products, has an XSS issue in apcupsd_status.php.apcupsd · apcupsd · CWE-79 | Medium6.1 | — | 2.6% | Jun 2, 2019 |
- CVE-2003-009842Plan
Unknown vulnerability in apcupsd before 3.8.6, and 3.10.x before 3.10.5, allows remote attackers to gain root privileges, possibly via forma
CriticalCVSS 10.0No exploitEPSS 5%apcupsd · apcupsdMar 3, 2003
- CVE-2019-1258541Plan
Apcupsd 0.3.91_5, as used in pfSense through 2.4.4-RELEASE-p3 and other products, has an Arbitrary Command Execution issue in apcupsd_status
CriticalCVSS 9.8No exploitEPSS 5%apcupsd · apcupsdJun 2, 2019
- CVE-2017-788433Monitor
In Adam Kropelin adk0212 APC UPS Daemon through 3.14.14, the default installation of APCUPSD allows a local authenticated, but unprivileged,
HighCVSS 8.4No exploitEPSS 0%apcupsd · apc ups daemonJun 16, 2017
- CVE-2019-1258425Monitor
Apcupsd 0.3.91_5, as used in pfSense through 2.4.4-RELEASE-p3 and other products, has an XSS issue in apcupsd_status.php.
MediumCVSS 6.1No exploitEPSS 3%apcupsd · apcupsdJun 2, 2019