Show filters
47 Total Results
Displaying 11-20 of 47
Sort by:
Attacker Value
Unknown

CVE-2024-40732

Disclosure Date: July 09, 2024 (last updated July 11, 2024)
A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name parameter at /dcim/rear-ports/add/.
Attacker Value
Unknown

CVE-2024-40731

Disclosure Date: July 09, 2024 (last updated July 11, 2024)
A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name parameter at /dcim/rear-ports/{id}/edit/.
Attacker Value
Unknown

CVE-2024-40730

Disclosure Date: July 09, 2024 (last updated July 11, 2024)
A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name parameter at /dcim/interfaces/{id}/edit/.
Attacker Value
Unknown

CVE-2024-40729

Disclosure Date: July 09, 2024 (last updated July 11, 2024)
A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name parameter at /dcim/interfaces/add/.
Attacker Value
Unknown

CVE-2024-40728

Disclosure Date: July 09, 2024 (last updated July 11, 2024)
A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name parameter at /dcim/console-server-ports/{id}/edit/.
Attacker Value
Unknown

CVE-2024-40727

Disclosure Date: July 09, 2024 (last updated July 11, 2024)
A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name parameter at /dcim/console-server-ports/add/.
Attacker Value
Unknown

CVE-2024-40726

Disclosure Date: July 09, 2024 (last updated July 11, 2024)
A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name parameter at /dcim/power-ports/{id}/edit/.
Attacker Value
Unknown

CVE-2024-38972

Disclosure Date: July 09, 2024 (last updated July 11, 2024)
A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name parameter at /dcim/power-ports/add/.
Attacker Value
Unknown

CVE-2024-2422

Disclosure Date: May 30, 2024 (last updated May 31, 2024)
LenelS2 NetBox access control and event monitoring system was discovered to contain an authenticated RCE in versions prior to and including 5.6.1, which allows an attacker to execute malicious commands.
0
Attacker Value
Unknown

CVE-2024-2421

Disclosure Date: May 30, 2024 (last updated May 31, 2024)
LenelS2 NetBox access control and event monitoring system was discovered to contain an unauthenticated RCE in versions prior to and including 5.6.1, which allows an attacker to execute malicious commands with elevated permissions.
0