Vulnerabilities (CVE)

Filtered by vendor Idera Subscribe
Filtered by product Uptime Infrastructure Monitor
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-9263 1 Idera 1 Uptime Infrastructure Monitor 2018-11-05 7.5 HIGH 9.8 CRITICAL
An issue was discovered in post2file.php in Up.Time Monitoring Station 7.5.0 (build 16) and 7.4.0 (build 13). It allows an attacker to upload an arbitrary file, such as a .php file that can execute arbitrary OS commands.
CVE-2017-11470 1 Idera 1 Uptime Infrastructure Monitor 2017-07-24 7.5 HIGH 9.8 CRITICAL
IDERA Uptime Monitor 7.8 has SQL injection in /gadgets/definitions/uptime.CapacityWhatifGadget/getxenmetrics.php via the element parameter.
CVE-2017-11471 1 Idera 1 Uptime Infrastructure Monitor 2017-07-24 7.5 HIGH 9.8 CRITICAL
IDERA Uptime Monitor 7.8 has SQL injection in /gadgets/definitions/uptime.CapacityWhatIfGadget/getmetrics.php via the element parameter.