Skip to content
Noroxi

freenas records

3 published records for vendor freenas.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 18

Bar: total · dark part: CISA KEV.

Attack profile

All records

3 records
  • FreeNAS before 9.3-M3 has a blank admin password, which allows remote attackers to gain root privileges by leveraging a WebGui login.

    CriticalCVSS 9.8No exploitEPSS 5%

    freenas · freenasJan 8, 2018

  • CVE-2009-2738
    17Monitor

    Cross-site request forgery (CSRF) vulnerability in the WebGUI in FreeNAS before 0.7RC1 allows remote attackers to hijack the authentication

    MediumCVSS 4.3No exploitEPSS 1%

    freenas · freenasAug 11, 2009

  • CVE-2009-2739
    17Monitor

    Cross-site scripting (XSS) vulnerability in FreeNAS before 0.69.2 allows remote attackers to inject arbitrary web script or HTML via unknown

    MediumCVSS 4.3No exploitEPSS 1%

    freenas · freenasAug 11, 2009