Opmon
Opservices · 5 CVEs
CVE-2021-43009
MEDIUM
A Cross Site Scripting (XSS) vulnerability exists in OpServices OpMon through 9.11 via the search parameter in the requ…
Apr 8, 2022
CVE-2020-8636
CRITICAL
An issue was discovered in OpServices OpMon 9.3.2 that allows Remote Code Execution .
Feb 6, 2020
CVE-2020-7954
HIGH
An issue was discovered in OpServices OpMon 9.3.2. Starting from the apache user account, it is possible to perform pri…
Feb 6, 2020
CVE-2020-7953
HIGH
An issue was discovered in OpServices OpMon 9.3.2. Without authentication, it is possible to read server files (e.g., /…
Feb 6, 2020
CVE-2020-5841
CRITICAL
An issue was discovered in OpServices OpMon 9.3.1-1. Using password change parameters, an attacker could perform SQL in…
Jan 7, 2020
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2021-43009 | A Cross Site Scripting (XSS) vulnerability exists in OpServices OpMon through 9.11 via the search parameter in the request URL. | MEDIUM | 2.29% | Apr 8, 2022 |
| CVE-2020-8636 | An issue was discovered in OpServices OpMon 9.3.2 that allows Remote Code Execution . | CRITICAL | 4.01% | Feb 6, 2020 |
| CVE-2020-7954 | An issue was discovered in OpServices OpMon 9.3.2. Starting from the apache user account, it is possible to perform privilege escalation through the lack of co… | HIGH | 0.38% | Feb 6, 2020 |
| CVE-2020-7953 | An issue was discovered in OpServices OpMon 9.3.2. Without authentication, it is possible to read server files (e.g., /etc/passwd) due to the use of the nmap -… | HIGH | 1.17% | Feb 6, 2020 |
| CVE-2020-5841 | An issue was discovered in OpServices OpMon 9.3.1-1. Using password change parameters, an attacker could perform SQL injection without authentication. | CRITICAL | 1.24% | Jan 7, 2020 |
Showing 1 to 5 of 5 CVEs