8
I Use This!
High Activity
Analyzed 1 day ago. based on code collected 2 days ago.
 

Security

Vulnerabilities per Version

Learn more about BDSAs
 
 

Major Versions

1yr
3yr
5yr
10yr
All
click and drag to zoom
 
 
Security Vulnerabilities for Version:
Severities:
Type
Identifier Related Record Severity Date Published Description Versions Affected
CVE-2019-18649 Medium Nov 14, 2019 When logged in as an admin user, the Title input field (under Reports) within Untangle NG firewall 14.2.0 is vulnerable to stored XSS.
14.2.0
CVE-2019-18648 Medium Nov 14, 2019 When logged in as an admin user, the Untangle NG firewall 14.2.0 is vulnerable to reflected XSS at multiple places and specific user input fields.
14.2.0
CVE-2019-18647 High Nov 14, 2019 The Untangle NG firewall 14.2.0 is vulnerable to an authenticated command injection when logged in as an admin user.
14.2.0
CVE-2019-18646 High Nov 14, 2019 The Untangle NG firewall 14.2.0 is vulnerable to authenticated inline-query SQL injection within the timeDataDynamicColumn parameter when logged in as more...
14.2.0
BDSA-2024-9880 High Dec 20, 2024 Arista NG Firewall ReportEntry SQL Injection Arbitrary File Read and Write Vulnerability. This vulnerability allows remote attackers to create arbitrar more...
BDSA-2024-9878 High Dec 20, 2024 Arista NG Firewall custom_handler Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr more...
BDSA-2024-9872 Medium Dec 20, 2024 Arista NG Firewall uvm_login Incorrect Authorization Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileg more...
BDSA-2024-9871 Medium Dec 20, 2024 Arista NG Firewall ExecManagerImpl Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitra more...
BDSA-2020-3333 Medium Nov 13, 2020 Untangle Firewall NG is vulnerable to compromise via password cracking due to unsalted **MD5** password storage. An attacker with access to the Google more...