İçeriğe atla
Noroxi

drobo kayıtları

drobo üreticisine ait 15 yayımlanmış kayıt.

Tüm kayıtlar

15 kayıt
  • CVE-2018-14699
    48Planlayın

    System command injection in the /DroboAccess/enable_user endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attacker

    KritikCVSS 9,8Kavram kanıtıEPSS %29

    drobo · 5n2 firmware3 Ara 2018

  • CVE-2018-14701
    45Planlayın

    System command injection in the /DroboAccess/delete_user endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attacker

    KritikCVSS 9,8İstismar yokEPSS %20

    drobo · 5n2 firmware3 Ara 2018

  • CVE-2018-14706
    44Planlayın

    System command injection in the /DroboPix/api/drobopix/demo endpoint on Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attac

    KritikCVSS 9,8İstismar yokEPSS %17

    drobo · 5n2 firmware3 Ara 2018

  • CVE-2018-14709
    40Planlayın

    Incorrect access control in the Dashboard API on Drobo 5N2 NAS version 4.0.5-13.28.96115 allows attackers to bypass authentication due to in

    KritikCVSS 9,8İstismar yokEPSS %2

    drobo · 5n2 firmware3 Ara 2018

  • CVE-2018-14705
    40Planlayın

    Lack of Authentication/Authorization on Administrative Web Pages

    KritikCVSS 9,8İstismar yokEPSS %2

    drobo · 5n2 firmware24 Şub 2020

  • CVE-2018-14703
    39İzleyin

    Incorrect access control in the /mysql/api/droboapp/data endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attacker

    KritikCVSS 9,8İstismar yokEPSS %1

    drobo · 5n2 firmware3 Ara 2018

  • CVE-2018-14708
    39İzleyin

    An insecure transport protocol used by Drobo Dashboard API on Drobo 5N2 NAS version 4.0.5-13.28.96115 allows attackers to intercept network

    KritikCVSS 9,8İstismar yokEPSS %1

    drobo · 5n2 firmware3 Ara 2018

  • CVE-2018-14707
    38İzleyin

    Directory traversal in the Drobo Pix web application on Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attackers to upload f

    YüksekCVSS 7,5İstismar yokEPSS %28

    drobo · 5n2 firmware3 Ara 2018

  • CVE-2018-14702
    30İzleyin

    Incorrect access control in the /drobopix/api/drobo.php endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attackers

    YüksekCVSS 7,5İstismar yokEPSS %1

    drobo · 5n2 firmware3 Ara 2018

  • CVE-2018-14696
    30İzleyin

    Incorrect access control in the /mysql/api/drobo.php endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attackers to

    YüksekCVSS 7,5İstismar yokEPSS %1

    drobo · 5n2 firmware3 Ara 2018

  • CVE-2018-14700
    30İzleyin

    Incorrect access control in the /mysql/api/logfile.php endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attackers

    YüksekCVSS 7,5İstismar yokEPSS %1

    drobo · 5n2 firmware3 Ara 2018

  • CVE-2018-14695
    30İzleyin

    Incorrect access control in the /mysql/api/diags.php endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attackers to

    YüksekCVSS 7,5İstismar yokEPSS %1

    drobo · 5n2 firmware3 Ara 2018

  • CVE-2018-14704
    24İzleyin

    Cross-site scripting in the MySQL API error page in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows attackers to execute JavaScript via a mal

    OrtaCVSS 6,1İstismar yokEPSS %1

    drobo · 5n2 firmware3 Ara 2018

  • CVE-2018-14698
    24İzleyin

    Cross-site scripting in the /DroboAccess/delete_user endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows attackers to execute JavaScr

    OrtaCVSS 6,1İstismar yokEPSS %1

    drobo · 5n2 firmware3 Ara 2018

  • CVE-2018-14697
    24İzleyin

    Cross-site scripting in the /DroboAccess/enable_user endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows attackers to execute JavaScr

    OrtaCVSS 6,1İstismar yokEPSS %1

    drobo · 5n2 firmware3 Ara 2018