CVE-2015-4420
- EPSS 1.19%
- Veröffentlicht 18.06.2015 18:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple cross-site scripting (XSS) vulnerabilities in Opsview 4.6.2 and earlier allow remote attackers to inject arbitrary web script or HTML via a (1) crafted check plugin, the (2) description in a host profile, or the (3) plugin_args parameter to ...
CVE-2013-7254
- EPSS 0.3%
- Veröffentlicht 03.01.2014 18:54:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in Opsview before 4.4.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVE-2013-7255
- EPSS 0.25%
- Veröffentlicht 03.01.2014 18:54:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Open redirect vulnerability in Opsview before 4.4.2 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
CVE-2013-7256
- EPSS 0.12%
- Veröffentlicht 03.01.2014 18:54:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Cross-site request forgery (CSRF) vulnerability in Opsview before 4.4.2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
CVE-2013-5694
- EPSS 1.94%
- Veröffentlicht 05.11.2013 20:55:29
- Zuletzt bearbeitet 11.04.2025 00:51:21
SQL injection vulnerability in status/service/acknowledge in Opsview before 4.4.1 allows remote attackers to execute arbitrary SQL commands via the service_selection parameter.
CVE-2013-5695
- EPSS 0.23%
- Veröffentlicht 05.11.2013 20:55:29
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple cross-site scripting (XSS) vulnerabilities in Opsview before 4.4.1 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to admin/auditlog/, (2) PATH_INFO to info/host/ or (3) viewport/, (4) back parameter to...