infoblox kayıtları
infoblox üreticisine ait 26 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 5
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-284 Improper Access Control2
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')2
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-287 Improper Authentication2
- CWE-427 Uncontrolled Search Path Element1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
26 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
54Planlayın | CVE-2004-0460İstismar yok | Buffer overflow in the logging capability for the DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13 allows remote attackers to cause isc · dhcpd | Kritik10,0 | — | %45,3 | 6 Ağu 2004 |
50Planlayın | CVE-2025-32814Kavram kanıtı | An issue was discovered in Infoblox NETMRI before 7.6.1.infoblox · netmri · CWE-89 | Kritik9,8 | — | %36,4 | 22 May 2025 |
45Planlayın | CVE-2004-0461İstismar yok | The DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13, when compiled in environments that do not provide the vsnprintf function, usesisc · dhcpd | Kritik10,0 | — | %16,8 | 6 Ağu 2004 |
42Planlayın | CVE-2014-3418Kavram kanıtı | config/userAdmin/login.tdf in Infoblox NetMRI before 6.8.5 allows remote attackers to execute arbitrary commands via shell metacharacters ininfoblox · netmri · CWE-78 | Kritik10,0 | — | %7,2 | 15 Tem 2014 |
41Planlayın | CVE-2025-32813Kavram kanıtı | An issue was discovered in Infoblox NETMRI before 7.6.1.infoblox · netmri · CWE-77 | Yüksek7,2 | — | %43,9 | 22 May 2025 |
41Planlayın | CVE-2015-2033İstismar yok | Anyterm Daemon in Infoblox Network Automation NetMRI before NETMRI-23483 allows remote attackers to execute arbitrary commands with root priinfoblox · netmri · CWE-287 | Kritik10,0 | — | %3,0 | 20 Şub 2015 |
39İzleyin | CVE-2024-37566İstismar yok | Infoblox NIOS through 8.6.4 has Improper Authentication for Grids.infoblox · nios · CWE-284 | Kritik9,8 | — | %0,5 | 27 Şub 2025 |
39İzleyin | CVE-2024-36047İstismar yok | Infoblox NIOS through 8.6.4 and 9.x through 9.0.3 has Improper Input Validation.infoblox · nios · CWE-20 | Kritik9,8 | — | %0,4 | 27 Şub 2025 |
39İzleyin | CVE-2024-36046İstismar yok | Infoblox NIOS through 8.6.4 executes with more privileges than required.infoblox · nios · CWE-269 | Kritik9,8 | — | %0,4 | 27 Şub 2025 |
38İzleyin | CVE-2025-32815Kavram kanıtı | An issue was discovered in Infoblox NETMRI before 7.6.1.infoblox · netmri · CWE-287 | Orta6,5 | — | %39,7 | 22 May 2025 |
38İzleyin | CVE-2024-52874İstismar yok | In Infoblox NETMRI before 7.6.1, authenticated users can perform SQL injection attacks.infoblox · netmri · CWE-89 | Yüksek8,8 | — | %10,2 | 22 May 2025 |
36İzleyin | CVE-2024-37567İstismar yok | Infoblox NIOS through 8.6.4 has Improper Access Control for Grids.infoblox · nios · CWE-284 | Kritik9,1 | — | %0,4 | 27 Şub 2025 |
35İzleyin | CVE-2023-37249İstismar yok | Infoblox NIOS through 8.5.1 has a faulty component that accepts malicious input without sanitization, resulting in shell access.infoblox · nios · CWE-78 | Yüksek8,8 | — | %0,7 | 25 Ağu 2023 |
35İzleyin | CVE-2025-61880İstismar yok | In Infoblox NIOS through 9.0.7, insecure deserialization can result in remote code execution.infoblox · nios · CWE-502 | Yüksek8,8 | — | %0,6 | 12 Şub 2026 |
31İzleyin | CVE-2022-32972İstismar yok | Infoblox BloxOne Endpoint for Windows through 2.2.7 allows DLL injection that can result in local privilege escalation.infoblox · bloxone endpoint · CWE-427 | Yüksek7,8 | — | %0,2 | 17 Şub 2023 |
30İzleyin | CVE-2025-61879İstismar yok | In Infoblox NIOS through 9.0.7, a High-Privileged User Can Trigger an Arbitrary File Write via the Account Creation Mechanism.infoblox · nios · CWE-73 | Yüksek7,7 | — | %0,3 | 12 Şub 2026 |
28İzleyin | CVE-2004-0606İstismar yok | Cross-site scripting (XSS) vulnerability in Infoblox DNS One running firmware 2.4.0-8 and earlier allows remote attackers to execute arbitrainfoblox · dns one appliance | Orta6,8 | — | %2,3 | 6 Ara 2004 |
28İzleyin | CVE-2014-3419İstismar yok | Infoblox NetMRI before 6.8.5 has a default password of admin for the "root" MySQL database account, which makes it easier for local users toinfoblox · netmri · CWE-255 | Yüksek7,2 | — | %0,5 | 15 Tem 2014 |
26İzleyin | CVE-2020-15303İstismar yok | Infoblox NIOS before 8.5.2 allows entity expansion during an XML upload operation, a related issue to CVE-2003-1564.infoblox · nios · CWE-776 | Orta6,5 | — | %0,9 | 28 Haz 2021 |
26İzleyin | CVE-2018-10239İstismar yok | A privilege escalation vulnerability in the "support access" feature on Infoblox NIOS 6.8 through 8.4.1 could allow a locally authenticated infoblox · nios · CWE-264 | Orta6,7 | — | %0,4 | 17 Haz 2019 |
25İzleyin | CVE-2016-6484İstismar yok | CRLF injection vulnerability in Infoblox Network Automation NetMRI before 7.1.1 allows remote attackers to inject arbitrary HTTP headers andinfoblox · netmri · CWE-93 | Orta6,1 | — | %1,8 | 23 Oca 2017 |
24İzleyin | CVE-2024-54188İstismar yok | Infoblox NETMRI before 7.6.1 has a vulnerability allowing remote authenticated users to read arbitrary files with root access.infoblox · netmri · CWE-200 | Orta5,3 | — | %9,0 | 22 May 2025 |
24İzleyin | CVE-2018-6643Kavram kanıtı | Infoblox NetMRI 7.1.1 has Reflected Cross-Site Scripting via the /api/docs/index.php query parameter.infoblox · netmri · CWE-79 | Orta6,1 | — | %0,8 | 28 Ağu 2018 |
21İzleyin | CVE-2002-2213İstismar yok | The DNS resolver in unspecified versions of Infoblox DNS One, when resolving recursive DNS queries for arbitrary hosts, allows remote attackinfoblox · dns one | Orta5,0 | — | %2,4 | 31 Ara 2002 |
21İzleyin | CVE-2022-28975İstismar yok | A stored cross-site scripting (XSS) vulnerability in Infoblox NIOS v8.5.2-409296 allows attackers to execute arbitrary web scripts or HTML vinfoblox · nios · CWE-79 | Orta5,4 | — | %0,3 | 9 Oca 2024 |
- CVE-2004-046054Planlayın
Buffer overflow in the logging capability for the DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13 allows remote attackers to cause
KritikCVSS 10,0İstismar yokEPSS %45isc · dhcpd6 Ağu 2004
- CVE-2025-3281450Planlayın
An issue was discovered in Infoblox NETMRI before 7.6.1.
KritikCVSS 9,8Kavram kanıtıEPSS %36infoblox · netmri22 May 2025
- CVE-2004-046145Planlayın
The DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13, when compiled in environments that do not provide the vsnprintf function, uses
KritikCVSS 10,0İstismar yokEPSS %17isc · dhcpd6 Ağu 2004
- CVE-2014-341842Planlayın
config/userAdmin/login.tdf in Infoblox NetMRI before 6.8.5 allows remote attackers to execute arbitrary commands via shell metacharacters in
KritikCVSS 10,0Kavram kanıtıEPSS %7infoblox · netmri15 Tem 2014
- CVE-2025-3281341Planlayın
An issue was discovered in Infoblox NETMRI before 7.6.1.
YüksekCVSS 7,2Kavram kanıtıEPSS %44infoblox · netmri22 May 2025
- CVE-2015-203341Planlayın
Anyterm Daemon in Infoblox Network Automation NetMRI before NETMRI-23483 allows remote attackers to execute arbitrary commands with root pri
KritikCVSS 10,0İstismar yokEPSS %3infoblox · netmri20 Şub 2015
- CVE-2024-3756639İzleyin
Infoblox NIOS through 8.6.4 has Improper Authentication for Grids.
KritikCVSS 9,8İstismar yokEPSS %0infoblox · nios27 Şub 2025
- CVE-2024-3604739İzleyin
Infoblox NIOS through 8.6.4 and 9.x through 9.0.3 has Improper Input Validation.
KritikCVSS 9,8İstismar yokEPSS %0infoblox · nios27 Şub 2025
- CVE-2024-3604639İzleyin
Infoblox NIOS through 8.6.4 executes with more privileges than required.
KritikCVSS 9,8İstismar yokEPSS %0infoblox · nios27 Şub 2025
- CVE-2025-3281538İzleyin
An issue was discovered in Infoblox NETMRI before 7.6.1.
OrtaCVSS 6,5Kavram kanıtıEPSS %40infoblox · netmri22 May 2025
- CVE-2024-5287438İzleyin
In Infoblox NETMRI before 7.6.1, authenticated users can perform SQL injection attacks.
YüksekCVSS 8,8İstismar yokEPSS %10infoblox · netmri22 May 2025
- CVE-2024-3756736İzleyin
Infoblox NIOS through 8.6.4 has Improper Access Control for Grids.
KritikCVSS 9,1İstismar yokEPSS %0infoblox · nios27 Şub 2025
- CVE-2023-3724935İzleyin
Infoblox NIOS through 8.5.1 has a faulty component that accepts malicious input without sanitization, resulting in shell access.
YüksekCVSS 8,8İstismar yokEPSS %1infoblox · nios25 Ağu 2023
- CVE-2025-6188035İzleyin
In Infoblox NIOS through 9.0.7, insecure deserialization can result in remote code execution.
YüksekCVSS 8,8İstismar yokEPSS %1infoblox · nios12 Şub 2026
- CVE-2022-3297231İzleyin
Infoblox BloxOne Endpoint for Windows through 2.2.7 allows DLL injection that can result in local privilege escalation.
YüksekCVSS 7,8İstismar yokEPSS %0infoblox · bloxone endpoint17 Şub 2023
- CVE-2025-6187930İzleyin
In Infoblox NIOS through 9.0.7, a High-Privileged User Can Trigger an Arbitrary File Write via the Account Creation Mechanism.
YüksekCVSS 7,7İstismar yokEPSS %0infoblox · nios12 Şub 2026
- CVE-2004-060628İzleyin
Cross-site scripting (XSS) vulnerability in Infoblox DNS One running firmware 2.4.0-8 and earlier allows remote attackers to execute arbitra
OrtaCVSS 6,8İstismar yokEPSS %2infoblox · dns one appliance6 Ara 2004
- CVE-2014-341928İzleyin
Infoblox NetMRI before 6.8.5 has a default password of admin for the "root" MySQL database account, which makes it easier for local users to
YüksekCVSS 7,2İstismar yokEPSS %0infoblox · netmri15 Tem 2014
- CVE-2020-1530326İzleyin
Infoblox NIOS before 8.5.2 allows entity expansion during an XML upload operation, a related issue to CVE-2003-1564.
OrtaCVSS 6,5İstismar yokEPSS %1infoblox · nios28 Haz 2021
- CVE-2018-1023926İzleyin
A privilege escalation vulnerability in the "support access" feature on Infoblox NIOS 6.8 through 8.4.1 could allow a locally authenticated
OrtaCVSS 6,7İstismar yokEPSS %0infoblox · nios17 Haz 2019
- CVE-2016-648425İzleyin
CRLF injection vulnerability in Infoblox Network Automation NetMRI before 7.1.1 allows remote attackers to inject arbitrary HTTP headers and
OrtaCVSS 6,1İstismar yokEPSS %2infoblox · netmri23 Oca 2017
- CVE-2024-5418824İzleyin
Infoblox NETMRI before 7.6.1 has a vulnerability allowing remote authenticated users to read arbitrary files with root access.
OrtaCVSS 5,3İstismar yokEPSS %9infoblox · netmri22 May 2025
- CVE-2018-664324İzleyin
Infoblox NetMRI 7.1.1 has Reflected Cross-Site Scripting via the /api/docs/index.php query parameter.
OrtaCVSS 6,1Kavram kanıtıEPSS %1infoblox · netmri28 Ağu 2018
- CVE-2002-221321İzleyin
The DNS resolver in unspecified versions of Infoblox DNS One, when resolving recursive DNS queries for arbitrary hosts, allows remote attack
OrtaCVSS 5,0İstismar yokEPSS %2infoblox · dns one31 Ara 2002
- CVE-2022-2897521İzleyin
A stored cross-site scripting (XSS) vulnerability in Infoblox NIOS v8.5.2-409296 allows attackers to execute arbitrary web scripts or HTML v
OrtaCVSS 5,4İstismar yokEPSS %0infoblox · nios9 Oca 2024