Перейти к содержимому
Noroxi

Записи alienvault

36 опубликованных записей вендора alienvault.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
5 · 13,9 %
Pre-auth RCE
15
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

36 записей
  • CVE-2014-3804
    62На этой неделе

    The av-centerd SOAP service in AlienVault OSSIM before 4.7.0 allows remote attackers to execute arbitrary commands via a crafted (1) update_

    КритическаяCVSS 10,0Готовый эксплойтEPSS 72 %

    alienvault · open source security information management13 июн. 2014 г.

  • CVE-2016-8582
    56В плане

    A vulnerability exists in gauge.php of AlienVault OSSIM and USM before 5.3.2 that allows an attacker to execute an arbitrary SQL query and r

    КритическаяCVSS 9,8Готовый эксплойтEPSS 57 %

    alienvault · open source security information and event management28 окт. 2016 г.

  • CVE-2014-5210
    44В плане

    The av-centerd SOAP service in AlienVault OSSIM before 4.7.0 allows remote attackers to execute arbitrary commands via a crafted (1) remote_

    КритическаяCVSS 10,0Proof of conceptEPSS 15 %

    alienvault · open source security information management21 авг. 2014 г.

  • CVE-2014-3805
    44В плане

    The av-centerd SOAP service in AlienVault OSSIM before 4.7.0 allows remote attackers to execute arbitrary commands via a crafted (1) get_lic

    КритическаяCVSS 10,0Proof of conceptEPSS 13 %

    alienvault · open source security information management13 июн. 2014 г.

  • CVE-2017-6972
    43В плане

    AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 have an error in privilege dropping and unnecessarily execute the NfSen Perl co

    КритическаяCVSS 9,8Proof of conceptEPSS 15 %

    alienvault · ossim22 мар. 2017 г.

  • CVE-2014-4151
    42В плане

    The av-centerd SOAP service in AlienVault OSSIM before 4.8.0 allows remote attackers to create arbitrary files and execute arbitrary code vi

    КритическаяCVSS 10,0Эксплойта нетEPSS 7 %

    alienvault · open source security information management18 июн. 2014 г.

  • CVE-2014-4152
    42В плане

    The av-centerd SOAP service in AlienVault OSSIM before 4.8.0 allows remote attackers to execute arbitrary code via a crafted remote_task req

    КритическаяCVSS 10,0Эксплойта нетEPSS 6 %

    alienvault · open source security information management18 июн. 2014 г.

  • CVE-2016-8580
    41В плане

    PHP object injection vulnerabilities exist in multiple widget files in AlienVault OSSIM and USM before 5.3.2.

    КритическаяCVSS 9,8Proof of conceptEPSS 7 %

    alienvault · open source security information and event management28 окт. 2016 г.

  • CVE-2016-7955
    41В плане

    The logcheck function in session.inc in AlienVault OSSIM before 5.3.1, when an action has been created, and USM before 5.3.1 allows remote a

    КритическаяCVSS 9,8Эксплойта нетEPSS 6 %

    alienvault · ossim15 мар. 2017 г.

  • CVE-2014-5158
    41В плане

    The (1) av-centerd SOAP service and (2) backup command in the ossim-framework service in AlienVault OSSIM before 4.6.0 allows remote attacke

    КритическаяCVSS 10,0Эксплойта нетEPSS 4 %

    alienvault · open source security information management21 авг. 2014 г.

  • CVE-2017-6971
    40В плане

    AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 allow remote authenticated users to execute arbitrary commands in a privileged

    ВысокаяCVSS 8,8Proof of conceptEPSS 16 %

    alienvault · ossim22 мар. 2017 г.

  • CVE-2018-7279
    40В плане

    A remote code execution issue was discovered in AlienVault USM and OSSIM before 5.5.1.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    alienvault · open source security information management14 мар. 2018 г.

  • CVE-2015-3446
    38Наблюдать

    The Framework Daemon in AlienVault Unified Security Management before 4.15 allows remote attackers to execute arbitrary Python code via a cr

    КритическаяCVSS 9,3Эксплойта нетEPSS 2 %

    alienvault · unified security management1 мая 2015 г.

  • CVE-2013-5967
    36Наблюдать

    Multiple SQL injection vulnerabilities in AlienVault Open Source Security Information Management (OSSIM) 4.3 and earlier allow remote attack

    ВысокаяCVSS 7,5Готовый эксплойтEPSS 19 %

    alienvault · open source security information management9 окт. 2013 г.

  • CVE-2017-6970
    34Наблюдать

    AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 allow local users to execute arbitrary commands in a privileged context via an

    ВысокаяCVSS 8,4Proof of conceptEPSS 2 %

    alienvault · ossim22 мар. 2017 г.

  • CVE-2014-4153
    33Наблюдать

    The av-centerd SOAP service in AlienVault OSSIM before 4.8.0 allows remote attackers to read arbitrary files via a crafted get_file request.

    ВысокаяCVSS 7,8Proof of conceptEPSS 7 %

    alienvault · open source security information management18 июн. 2014 г.

  • CVE-2014-5383
    32Наблюдать

    SQL injection vulnerability in AlienVault OSSIM before 4.7.0 allows remote authenticated users to execute arbitrary SQL commands via unspeci

    СредняяCVSS 6,5Готовый эксплойтEPSS 21 %

    alienvault · open source security information management21 авг. 2014 г.

  • CVE-2009-4372
    31Наблюдать

    AlienVault Open Source Security Information Management (OSSIM) 2.1.5, and possibly other versions before 2.1.5-4, allows remote attackers to

    ВысокаяCVSS 7,5Proof of conceptEPSS 5 %

    alienvault · open source security information management21 дек. 2009 г.

  • CVE-2009-4373
    31Наблюдать

    Unrestricted file upload vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information Management (OS

    ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %

    alienvault · open source security information management21 дек. 2009 г.

  • CVE-2013-6056
    31Наблюдать

    OSSIM before 4.3.3.1 has tele_compress.php path traversal vulnerability

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    alienvault · open source security information management27 янв. 2020 г.

  • CVE-2009-4374
    30Наблюдать

    Directory traversal vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information Management (OSSIM)

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    alienvault · open source security information management21 дек. 2009 г.

  • CVE-2013-5321
    30Наблюдать

    Multiple SQL injection vulnerabilities in AlienVault Open Source Security Information Management (OSSIM) 4.1 allow remote attackers to execu

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    alienvault · open source security information management20 авг. 2013 г.

  • CVE-2014-5159
    30Наблюдать

    SQL injection vulnerability in the ossim-framework service in AlienVault OSSIM before 4.6.0 allows remote attackers to execute arbitrary SQL

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    alienvault · open source security information management21 авг. 2014 г.

  • CVE-2009-4375
    30Наблюдать

    SQL injection vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information Management (OSSIM) 2.1.5,

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    alienvault · open source security information management21 дек. 2009 г.

  • CVE-2016-8581
    29Наблюдать

    A persistent XSS vulnerability exists in the User-Agent header of the login process of AlienVault OSSIM and USM before 5.3.2 that allows an

    СредняяCVSS 6,1Готовый эксплойтEPSS 17 %

    alienvault · open source security information and event management28 окт. 2016 г.