İçeriğe atla
Noroxi

OpenNebula kayıtları

opennebula üreticisine ait 7 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
5
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

7 kayıt
  • CVE-2022-37425
    39İzleyin

    The FILES directive inside a VM template allows execution of uploaded files when the template is instantiated, resulting in a Remote Code Execution (RCE) attack

    KritikCVSS 9,8İstismar yokEPSS %2

    opennebula · opennebula28 Eki 2022

  • CVE-2022-37426
    30İzleyin

    Unrestricted Upload of File with Dangerous Type vulnerability in OpenNebula OpenNebula core on Linux allows File Content Injection.

    YüksekCVSS 7,5İstismar yokEPSS %1

    opennebula · opennebula28 Eki 2022

  • CVE-2022-37424
    26İzleyin

    The FILES Directive allows arbitrary files from the frontend system (including sensitive files) to be included when a VM is started from that template, which ma

    OrtaCVSS 6,5İstismar yokEPSS %1

    opennebula · opennebula28 Eki 2022

  • CVE-2025-56537
    24İzleyin

    A stored cross-site scripting (XSS) vulnerability in opennebula v6.10.0.1 and fixed in v.7.0 allows attackers to execute arbitrary web scrip

    OrtaCVSS 6,1Kavram kanıtıEPSS %0

    opennebula · opennebula29 Nis 2026

  • CVE-2025-56534
    24İzleyin

    A cross-site scripting (XSS) vulnerability in the custom authenticator driver of opennebula v6.10.0.1 allows attackers to execute arbitrary

    OrtaCVSS 6,1Kavram kanıtıEPSS %0

    opennebula · opennebula29 Nis 2026

  • CVE-2025-56535
    24İzleyin

    A cross-site scripting (XSS) vulnerability in opennebula v6.10.0.1 allows attackers to execute arbitrary web scripts or HTML via injecting a

    OrtaCVSS 6,1Kavram kanıtıEPSS %0

    opennebula · opennebula29 Nis 2026

  • CVE-2025-56536
    24İzleyin

    A stored cross-site scripting (XSS) vulnerability in opennebula v6.10.0.1 allows attackers to execute arbitrary web scripts or HTML via inje

    OrtaCVSS 6,1Kavram kanıtıEPSS %0

    opennebula · opennebula29 Nis 2026