Alienvault / Ossim
7 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2017-6972 | AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 have an error in privilege dropping and unnecessarily execute the NfSen Perl code as root, aka Ali… | CRITICAL | 9.8 | Mar 22, 2017 |
| CVE-2017-6971 | AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 allow remote authenticated users to execute arbitrary commands in a privileged context, or launch… | HIGH | 8.8 | Mar 22, 2017 |
| CVE-2017-6970 | AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 allow local users to execute arbitrary commands in a privileged context via an NfSen socket, aka A… | HIGH | 8.4 | Mar 22, 2017 |
| CVE-2016-7955 | The logcheck function in session.inc in AlienVault OSSIM before 5.3.1, when an action has been created, and USM before 5.3.1 allows remote attackers to bypass… | CRITICAL | 9.8 | Mar 15, 2017 |
| CVE-2009-3441 | Open Source Security Information Management (OSSIM) before 2.1.2 allows remote attackers to bypass authentication, and read graphs or infrastructure informatio… | MEDIUM | 5.0 | Sep 28, 2009 |
| CVE-2009-3440 | Cross-site scripting (XSS) vulnerability in Open Source Security Information Management (OSSIM) before 2.1.2 allows remote attackers to inject arbitrary web sc… | MEDIUM | 4.3 | Sep 28, 2009 |
| CVE-2009-3439 | Multiple SQL injection vulnerabilities in Open Source Security Information Management (OSSIM) before 2.1.2 allow remote authenticated users to execute arbitrar… | MEDIUM | 6.5 | Sep 28, 2009 |
Showing 1 to 7 of 7 CVEs