Skip to content
Noroxi

OpenVAS records

7 published records for vendor openvas.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

7 records
  • CVE-2011-0018
    39Monitor

    The email function in manage_sql.c in OpenVAS Manager 1.0.x through 1.0.3 and 2.0.x through 2.0rc2 allows remote authenticated users to exec

    CriticalCVSS 9.0Proof of conceptEPSS 9%

    openvas · openvas managerJan 28, 2011

  • CVE-2011-1597
    36Monitor

    OpenVAS Manager v2.0.3 allows plugin remote code execution.

    HighCVSS 8.8No exploitEPSS 2%

    openvas · openvas managerFeb 5, 2020

  • CVE-2013-6765
    32Monitor

    OpenVAS Manager 3.0 before 3.0.7 and 4.0 before 4.0.4 allows remote attackers to bypass the OMP authentication restrictions and execute OMP

    HighCVSS 7.5Proof of conceptEPSS 7%

    openvas · openvas managerMay 19, 2014

  • CVE-2012-5520
    31Monitor

    The send_to_sourcefire function in manage_sql.c in OpenVAS Manager 3.x before 3.0.4 allows remote attackers to execute arbitrary commands vi

    HighCVSS 7.5No exploitEPSS 3%

    openvas · openvas managerNov 26, 2012

  • CVE-2014-9220
    31Monitor

    SQL injection vulnerability in OpenVAS Manager before 4.0.6 and 5.x before 5.0.7 allows remote attackers to execute arbitrary SQL commands v

    HighCVSS 7.5No exploitEPSS 2%

    openvas · openvas managerDec 2, 2014

  • CVE-2013-6766
    30Monitor

    OpenVAS Administrator 1.2 before 1.2.2 and 1.3 before 1.3.2 allows remote attackers to bypass the OAP authentication restrictions and execut

    HighCVSS 7.5No exploitEPSS 2%

    openvas · openvas administratorMay 19, 2014

  • CVE-2011-3351
    28Monitor

    openvas-scanner before 2011-09-11 creates a temporary file insecurely when generating OVAL system characteristics document with the ovaldi i

    HighCVSS 7.1No exploitEPSS 0%

    openvas · openvas-scannerNov 25, 2019