Smoothwall records
28 published records for vendor smoothwall.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 16
- With a fix record
- 3.6%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')23
- CWE-352 Cross-Site Request Forgery (CSRF)3
- CWE-264 Permissions, Privileges, and Access Controls1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
28 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
52Plan | CVE-2003-0209Proof of concept | Integer overflow in the TCP stream reassembly module (stream4) for Snort 2.0 and earlier allows remote attackers to execute arbitrary code vsmoothwall · smoothwall | Critical10.0 | — | 38.6% | May 5, 2003 |
35Monitor | CVE-2011-1085No exploit | CSRF vulnerability in Smoothwall Express 3.smoothwall · smoothwall express · CWE-352 | High8.8 | — | 0.5% | Feb 7, 2020 |
28Monitor | CVE-2011-5284Proof of concept | Cross-site request forgery (CSRF) vulnerability in the web management interface in httpd/cgi-bin/shutdown.cgi in Smoothwall Express 3.1 and smoothwall · smoothwall · CWE-352 | Medium6.8 | — | 2.3% | Dec 31, 2014 |
27Monitor | CVE-2014-9431No exploit | Multiple cross-site request forgery (CSRF) vulnerabilities in Smoothwall Express 3.1 and 3.0 SP3 allow remote attackers to hijack the authensmoothwall · smoothwall · CWE-352 | Medium6.8 | — | 0.9% | Dec 31, 2014 |
24Monitor | CVE-2011-1084No exploit | A cross-site scripting (XSS) vulnerability in Smoothwall Express 3.smoothwall · smoothwall express · CWE-79 | Medium6.1 | — | 0.6% | Feb 7, 2020 |
22Monitor | CVE-2009-0803No exploit | SmoothWall SmoothGuardian, as used in SmoothWall Firewall, NetworkGuardian, and SchoolGuardian 2008, when transparent interception mode is esmoothwall · networkguardian · CWE-264 | Medium5.4 | — | 2.4% | Mar 4, 2009 |
21Monitor | CVE-2019-25379No exploit | Smoothwall Express 3.1 'urlfilter.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium5.3 | — | 0.3% | Feb 16, 2026 |
21Monitor | CVE-2019-25395No exploit | Smoothwall Express 3.1 'preferences.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium5.3 | — | 0.2% | Feb 16, 2026 |
21Monitor | CVE-2019-25394No exploit | Smoothwall Express 3.1 'modem.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium5.3 | — | 0.2% | Feb 16, 2026 |
20Monitor | CVE-2026-27508No exploit | Smoothwall Express < 3.1 Update 13 Reflected XSS in redirect.cgi via url Parametersmoothwall · smoothwall express · CWE-79 | Medium5.1 | — | 0.3% | Mar 30, 2026 |
20Monitor | CVE-2019-25382No exploit | Smoothwall Express 3.1 'time.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium5.1 | — | 0.3% | Feb 16, 2026 |
20Monitor | CVE-2019-25387No exploit | Smoothwall Express 3.1 'xtaccess.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium5.1 | — | 0.3% | Feb 16, 2026 |
20Monitor | CVE-2019-25388No exploit | Smoothwall Express 3.1 'ipblock.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium5.1 | — | 0.3% | Feb 16, 2026 |
20Monitor | CVE-2019-25389No exploit | Smoothwall Express 3.1 'timedaccess.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium5.1 | — | 0.3% | Feb 16, 2026 |
20Monitor | CVE-2019-25392No exploit | Smoothwall Express 3.1 'iptools.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium5.1 | — | 0.3% | Feb 16, 2026 |
20Monitor | CVE-2019-25393No exploit | Smoothwall Express 3.1 'smoothinfo.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium5.1 | — | 0.2% | Feb 16, 2026 |
20Monitor | CVE-2026-26352No exploit | Smoothwall Express < 3.1 Update 13 Stored XSS in vpnmain.cgi via VPN_IP Parametersmoothwall · smoothwall express · CWE-79 | Medium5.1 | — | 0.2% | Mar 30, 2026 |
20Monitor | CVE-2019-25378No exploit | Smoothwall Express 3.1 'proxy.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium5.1 | — | 0.2% | Feb 16, 2026 |
20Monitor | CVE-2019-25380No exploit | Smoothwall Express 3.1 'dhcp.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium5.1 | — | 0.2% | Feb 16, 2026 |
20Monitor | CVE-2019-25381No exploit | Smoothwall Express 3.1 'hosts.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium5.1 | — | 0.2% | Feb 16, 2026 |
20Monitor | CVE-2019-25383No exploit | Smoothwall Express 3.1 'apcupsd.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium5.1 | — | 0.2% | Feb 16, 2026 |
20Monitor | CVE-2019-25384No exploit | Smoothwall Express 3.1 'portfw.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium5.1 | — | 0.2% | Feb 16, 2026 |
20Monitor | CVE-2019-25385No exploit | Smoothwall Express 3.1 'outgoing.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium5.1 | — | 0.2% | Feb 16, 2026 |
20Monitor | CVE-2019-25386No exploit | Smoothwall Express 3.1 'dmzholes.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium5.1 | — | 0.2% | Feb 16, 2026 |
19Monitor | CVE-2019-25390No exploit | Smoothwall Express 3.1 'interfaces.cgi' Cross-Site Scriptingsmoothwall · smoothwall express · CWE-79 | Medium4.8 | — | 0.2% | Feb 16, 2026 |
- CVE-2003-020952Plan
Integer overflow in the TCP stream reassembly module (stream4) for Snort 2.0 and earlier allows remote attackers to execute arbitrary code v
CriticalCVSS 10.0Proof of conceptEPSS 39%smoothwall · smoothwallMay 5, 2003
- CVE-2011-108535Monitor
CSRF vulnerability in Smoothwall Express 3.
HighCVSS 8.8No exploitEPSS 0%smoothwall · smoothwall expressFeb 7, 2020
- CVE-2011-528428Monitor
Cross-site request forgery (CSRF) vulnerability in the web management interface in httpd/cgi-bin/shutdown.cgi in Smoothwall Express 3.1 and
MediumCVSS 6.8Proof of conceptEPSS 2%smoothwall · smoothwallDec 31, 2014
- CVE-2014-943127Monitor
Multiple cross-site request forgery (CSRF) vulnerabilities in Smoothwall Express 3.1 and 3.0 SP3 allow remote attackers to hijack the authen
MediumCVSS 6.8No exploitEPSS 1%smoothwall · smoothwallDec 31, 2014
- CVE-2011-108424Monitor
A cross-site scripting (XSS) vulnerability in Smoothwall Express 3.
MediumCVSS 6.1No exploitEPSS 1%smoothwall · smoothwall expressFeb 7, 2020
- CVE-2009-080322Monitor
SmoothWall SmoothGuardian, as used in SmoothWall Firewall, NetworkGuardian, and SchoolGuardian 2008, when transparent interception mode is e
MediumCVSS 5.4No exploitEPSS 2%smoothwall · networkguardianMar 4, 2009
- CVE-2019-2537921Monitor
Smoothwall Express 3.1 'urlfilter.cgi' Cross-Site Scripting
MediumCVSS 5.3No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026
- CVE-2019-2539521Monitor
Smoothwall Express 3.1 'preferences.cgi' Cross-Site Scripting
MediumCVSS 5.3No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026
- CVE-2019-2539421Monitor
Smoothwall Express 3.1 'modem.cgi' Cross-Site Scripting
MediumCVSS 5.3No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026
- CVE-2026-2750820Monitor
Smoothwall Express < 3.1 Update 13 Reflected XSS in redirect.cgi via url Parameter
MediumCVSS 5.1No exploitEPSS 0%smoothwall · smoothwall expressMar 30, 2026
- CVE-2019-2538220Monitor
Smoothwall Express 3.1 'time.cgi' Cross-Site Scripting
MediumCVSS 5.1No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026
- CVE-2019-2538720Monitor
Smoothwall Express 3.1 'xtaccess.cgi' Cross-Site Scripting
MediumCVSS 5.1No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026
- CVE-2019-2538820Monitor
Smoothwall Express 3.1 'ipblock.cgi' Cross-Site Scripting
MediumCVSS 5.1No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026
- CVE-2019-2538920Monitor
Smoothwall Express 3.1 'timedaccess.cgi' Cross-Site Scripting
MediumCVSS 5.1No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026
- CVE-2019-2539220Monitor
Smoothwall Express 3.1 'iptools.cgi' Cross-Site Scripting
MediumCVSS 5.1No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026
- CVE-2019-2539320Monitor
Smoothwall Express 3.1 'smoothinfo.cgi' Cross-Site Scripting
MediumCVSS 5.1No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026
- CVE-2026-2635220Monitor
Smoothwall Express < 3.1 Update 13 Stored XSS in vpnmain.cgi via VPN_IP Parameter
MediumCVSS 5.1No exploitEPSS 0%smoothwall · smoothwall expressMar 30, 2026
- CVE-2019-2537820Monitor
Smoothwall Express 3.1 'proxy.cgi' Cross-Site Scripting
MediumCVSS 5.1No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026
- CVE-2019-2538020Monitor
Smoothwall Express 3.1 'dhcp.cgi' Cross-Site Scripting
MediumCVSS 5.1No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026
- CVE-2019-2538120Monitor
Smoothwall Express 3.1 'hosts.cgi' Cross-Site Scripting
MediumCVSS 5.1No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026
- CVE-2019-2538320Monitor
Smoothwall Express 3.1 'apcupsd.cgi' Cross-Site Scripting
MediumCVSS 5.1No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026
- CVE-2019-2538420Monitor
Smoothwall Express 3.1 'portfw.cgi' Cross-Site Scripting
MediumCVSS 5.1No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026
- CVE-2019-2538520Monitor
Smoothwall Express 3.1 'outgoing.cgi' Cross-Site Scripting
MediumCVSS 5.1No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026
- CVE-2019-2538620Monitor
Smoothwall Express 3.1 'dmzholes.cgi' Cross-Site Scripting
MediumCVSS 5.1No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026
- CVE-2019-2539019Monitor
Smoothwall Express 3.1 'interfaces.cgi' Cross-Site Scripting
MediumCVSS 4.8No exploitEPSS 0%smoothwall · smoothwall expressFeb 16, 2026