Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown

CVE-2018-18471

Disclosure Date: June 19, 2019 (last updated February 15, 2024)
/api/2.0/rest/aggregator/xml in Axentra firmware, used by NETGEAR Stora, Seagate GoFlex Home, and MEDION LifeCloud, has an XXE vulnerability that can be chained with an SSRF bug to gain remote command execution as root. It can be triggered by anyone who knows the IP address of the affected device.
0
Attacker Value
Unknown

CVE-2006-3077

Disclosure Date: June 19, 2006 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in guestbook.cfm in aXentGuestbook 1.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the startrow parameter.
0
Attacker Value
Unknown

CVE-2006-3080

Disclosure Date: June 19, 2006 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in viewposts.cfm in aXentForum II and earlier allows remote attackers to inject arbitrary web script or HTML via the startrow parameter.
0
Attacker Value
Unknown

CVE-2001-0645

Disclosure Date: September 20, 2001 (last updated February 22, 2025)
Symantec/AXENT NetProwler 3.5.x contains several default passwords, which could allow remote attackers to (1) access to the management tier via the "admin" password, or (2) connect to a MySQL ODBC from the management tier using a blank password.
0
Attacker Value
Unknown

CVE-2000-0394

Disclosure Date: May 18, 2000 (last updated February 22, 2025)
NetProwler 3.0 allows remote attackers to cause a denial of service by sending malformed IP packets that trigger NetProwler's Man-in-the-Middle signature.
0
Attacker Value
Unknown

CVE-1999-0905

Disclosure Date: October 21, 1999 (last updated February 22, 2025)
Denial of service in Axent Raptor firewall via malformed zero-length IP options.
0