numara records
6 published records for vendor numara.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 3
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Recurring classes
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
6 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
42Plan | CVE-2007-1173No exploit | Multiple buffer overflows in the CentennialIPTransferServer service (XFERWAN.EXE), as used by (1) Centennial Discovery 2006 Feature Pack 1, centennial · discovery | Critical10.0 | — | 7.8% | May 16, 2007 |
38Monitor | CVE-2007-2514No exploit | Stack-based buffer overflow in XferWan.exe as used in multiple products including (1) Symantec Discovery 6.5, (2) Numara Asset Manager 8.0, numara · asset manager | Critical9.3 | — | 4.7% | Jun 6, 2007 |
31Monitor | CVE-2008-1214No exploit | MRcgi/MRProcessIncomingForms.pl in Numara FootPrints 8.1 on Linux allows remote attackers to execute arbitrary code via shell metacharacterslinux · linux kernel · CWE-94 | High7.5 | — | 2.9% | Mar 7, 2008 |
28Monitor | CVE-2007-2950No exploit | Centennial Discovery 2006 Feature Pack 1, which is used by (1) Numara Asset Manager 8.0 and (2) Symantec Discovery 6.5, uses insecure permiscentennial · discovery | High7.2 | — | 0.4% | Jul 23, 2007 |
17Monitor | CVE-2008-1213No exploit | Cross-site scripting (XSS) vulnerability in Numara FootPrints for Linux 8.1 allows remote attackers to inject arbitrary web script or HTML vlinux · linux kernel · CWE-79 | Medium4.3 | — | 1.6% | Mar 7, 2008 |
8Monitor | CVE-2015-5448No exploit | HP Asset Manager 9.40 and 9.41 before 9.41.11103 P4-rev1 and 9.50 before 9.50.11925 P3 allows local users to obtain sensitive information vinumara · asset manager · CWE-200 | Low2.1 | — | 0.4% | Oct 25, 2015 |
- CVE-2007-117342Plan
Multiple buffer overflows in the CentennialIPTransferServer service (XFERWAN.EXE), as used by (1) Centennial Discovery 2006 Feature Pack 1,
CriticalCVSS 10.0No exploitEPSS 8%centennial · discoveryMay 16, 2007
- CVE-2007-251438Monitor
Stack-based buffer overflow in XferWan.exe as used in multiple products including (1) Symantec Discovery 6.5, (2) Numara Asset Manager 8.0,
CriticalCVSS 9.3No exploitEPSS 5%numara · asset managerJun 6, 2007
- CVE-2008-121431Monitor
MRcgi/MRProcessIncomingForms.pl in Numara FootPrints 8.1 on Linux allows remote attackers to execute arbitrary code via shell metacharacters
HighCVSS 7.5No exploitEPSS 3%linux · linux kernelMar 7, 2008
- CVE-2007-295028Monitor
Centennial Discovery 2006 Feature Pack 1, which is used by (1) Numara Asset Manager 8.0 and (2) Symantec Discovery 6.5, uses insecure permis
HighCVSS 7.2No exploitEPSS 0%centennial · discoveryJul 23, 2007
- CVE-2008-121317Monitor
Cross-site scripting (XSS) vulnerability in Numara FootPrints for Linux 8.1 allows remote attackers to inject arbitrary web script or HTML v
MediumCVSS 4.3No exploitEPSS 2%linux · linux kernelMar 7, 2008
- CVE-2015-54488Monitor
HP Asset Manager 9.40 and 9.41 before 9.41.11103 P4-rev1 and 9.50 before 9.50.11925 P3 allows local users to obtain sensitive information vi
LowCVSS 2.1No exploitEPSS 0%numara · asset managerOct 25, 2015