Skip to content
Noroxi

roxy-wi records

20 published records for vendor roxy-wi.

All records

20 records
  • CVE-2022-31137
    66This week

    Unauthenticated Remote Code Execution in Roxy-WI

    CriticalCVSS 9.8WeaponizedEPSS 91%

    roxy-wi · roxy-wiJul 8, 2022

  • Unauthenticated Remote Code Execution in Roxy-wi

    CriticalCVSS 9.8Proof of conceptEPSS 53%

    roxy-wi · roxy-wiJul 6, 2022

  • Roxy-WI Vulnerable to Unauthenticated Remote Code Execution via ssl_cert Upload

    CriticalCVSS 9.8Proof of conceptEPSS 28%

    roxy-wi · roxy-wiJul 15, 2022

  • Authentication Bypass in Roxy-wi

    CriticalCVSS 9.8Proof of conceptEPSS 20%

    roxy-wi · roxy-wiJul 6, 2022

  • Roxy-WI through 5.2.2.0 allows SQL Injection via check_login.

    CriticalCVSS 9.8No exploitEPSS 1%

    roxy-wi · roxy-wiAug 7, 2021

  • Roxy-WI has a Command Injection via diff parameter in config comparison allows authenticated RCE

    HighCVSS 8.8No exploitEPSS 3%

    roxy-wi · roxy-wiMar 17, 2026

  • OS Command Injection via Port Scan Functionality in Roxy-WI

    HighCVSS 8.8No exploitEPSS 3%

    roxy-wi · roxy-wiAug 29, 2024

  • Roxy-WI through 5.2.2.0 allows command injection via /app/funct.py and /api/api_funct.py.

    HighCVSS 8.8No exploitEPSS 2%

    roxy-wi · roxy-wiAug 7, 2021

  • Roxy-WI vulnerable to path traversal and arbitrary file writing

    HighCVSS 8.9No exploitEPSS 1%

    roxy-wi · roxy-wiApr 23, 2026

  • Roxy-WI through 5.2.2.0 allows authenticated SQL injection via select_servers.

    HighCVSS 8.8No exploitEPSS 1%

    roxy-wi · roxy-wiAug 7, 2021

  • Roxy-WI has SQL Injection in haproxy_section_save Endpoint via Unsanitized server_ip Parameter

    HighCVSS 8.9No exploitEPSS 1%

    roxy-wi · roxy-wiApr 23, 2026

  • Roxy-WI has a Command Injection via grep parameter in logs.py allows authenticated RCE

    HighCVSS 7.5No exploitEPSS 2%

    roxy-wi · roxy-wiJan 15, 2026

  • Roxy-WI is a Web interface for managing Haproxy, Nginx, Apache, and Keepalived servers.

    HighCVSS 7.5No exploitEPSS 1%

    roxy-wi · roxy-wiMar 13, 2023

  • Roxy-WI has Path Traversal vulnerability

    HighCVSS 7.5No exploitEPSS 1%

    roxy-wi · roxy-wiMar 13, 2023

  • Roxy-WI has Pre-Authentication LDAP Injection that Leads to Authentication Bypass

    HighCVSS 7.7No exploitEPSS 1%

    roxy-wi · roxy-wiApr 20, 2026

  • Roxy-WI has an arbitrary file read vulnerability

    HighCVSS 7.7No exploitEPSS 1%

    roxy-wi · roxy-wiApr 23, 2026

  • Roxy-WI Vulnerable to Authenticated Remote Code Execution via OS Command Injection in find-in-config Endpoint

    HighCVSS 7.4No exploitEPSS 1%

    roxy-wi · roxy-wiApr 23, 2026

  • Path Traversal Vulnerability in hap-wi/roxy-wi

    MediumCVSS 6.5No exploitEPSS 1%

    roxy-wi · roxy-wiApr 17, 2023

  • Roxy-WI Vulnerable to Authenticated Arbitrary File Read via Path Traversal in Config Version Viewer

    MediumCVSS 5.7No exploitEPSS 0%

    roxy-wi · roxy-wiApr 20, 2026

  • Roxy-WI vulnerable to Limited Path Traversal in name parameter

    MediumCVSS 5.3No exploitEPSS 1%

    roxy-wi · roxy-wiMar 15, 2023