Librenms

Librenms

101 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0%
  • Veröffentlicht 18.11.2025 23:01:40
  • Zuletzt bearbeitet 20.11.2025 16:17:59

LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring tool. Prior to version 25.11.0, a weak password policy vulnerability was identified in the user management functionality of the LibreNMS application. This vulnerability allows ad...

  • EPSS 0%
  • Veröffentlicht 18.11.2025 23:01:21
  • Zuletzt bearbeitet 20.11.2025 16:17:47

LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring tool. Prior to version 25.11.0, a reflected cross-site scripting (XSS) vulnerability was identified in the LibreNMS application at the /maps/nodeimage endpoint. The Image Name pa...

Exploit
  • EPSS 0%
  • Veröffentlicht 16.10.2025 17:54:09
  • Zuletzt bearbeitet 23.10.2025 12:31:34

LibreNMS is a community-based GPL-licensed network monitoring system. The alert rule name in the Alerts > Alert Rules page is not properly sanitized, and can be used to inject HTML code. This vulnerability is fixed in 25.10.0.

Exploit
  • EPSS 0.01%
  • Veröffentlicht 16.10.2025 17:50:28
  • Zuletzt bearbeitet 23.10.2025 12:31:17

LibreNMS is a community-based GPL-licensed network monitoring system. LibreNMS <= 25.8.0 contains a Stored Cross-Site Scripting (XSS) vulnerability in the Alert Transports management functionality. When an administrator creates a new Alert Transport...

Exploit
  • EPSS 0%
  • Veröffentlicht 13.10.2025 21:43:49
  • Zuletzt bearbeitet 20.10.2025 17:27:06

LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. Prior to 25.7.0, there is a reflected-XSS in `report_this` function in `librenms/includes/functions.php`. The `report_this` function had improper filtering (`htmlentities` fu...

Exploit
  • EPSS 0.01%
  • Veröffentlicht 18.08.2025 17:27:52
  • Zuletzt bearbeitet 10.09.2025 14:23:14

librenms is a community-based GPL-licensed network monitoring system. A stored Cross-Site Scripting (XSS) vulnerability exists in LibreNMS (<= 25.6.0) in the Alert Template creation feature. This allows a user with the admin role to inject malicious ...

Exploit
  • EPSS 0.02%
  • Veröffentlicht 22.07.2025 21:33:59
  • Zuletzt bearbeitet 05.08.2025 17:52:39

LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring which includes support for a wide range of network hardware and operating systems. LibreNMS versions 25.6.0 and below contain an architectural vulnerability in the ajax_form.php ...

Exploit
  • EPSS 0%
  • Veröffentlicht 17.05.2025 15:51:17
  • Zuletzt bearbeitet 28.05.2025 13:19:14

LibreNMS is PHP/MySQL/SNMP based network monitoring software. LibreNMS v25.4.0 and prior suffers from a Stored Cross-Site Scripting (XSS) Vulnerability in the `group name` parameter of the `http://localhost/poller/groups` form. This vulnerability all...

Exploit
  • EPSS 0.15%
  • Veröffentlicht 16.01.2025 23:15:08
  • Zuletzt bearbeitet 28.04.2025 16:44:31

librenms is a community-based GPL-licensed network monitoring system. Affected versions are subject to a stored XSS on the parameters (Replace $DEVICE_ID with your specific $DEVICE_ID value):`/device/$DEVICE_ID/edit` -> param: display. Librenms versi...

Exploit
  • EPSS 0.16%
  • Veröffentlicht 16.01.2025 23:15:08
  • Zuletzt bearbeitet 25.03.2025 15:13:40

librenms is a community-based GPL-licensed network monitoring system. Affected versions are subject to a stored XSS on the parameter: `/ajax_form.php` -> param: descr. Librenms version up to 24.10.1 allow remote attackers to inject malicious scripts....