Vulnerabilities (CVE)

Filtered by vendor Extremenetworks Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-16847 1 Extremenetworks 1 Extreme Management Center 2020-08-11 4.3 MEDIUM 6.1 MEDIUM
Extreme Analytics in Extreme Management Center before 8.5.0.169 allows unauthenticated reflected XSS via a parameter in a GET request, aka CFD-4887.
CVE-2020-13819 1 Extremenetworks 1 Extreme Management Center 2020-08-06 4.3 MEDIUM 6.1 MEDIUM
Extreme EAC Appliance 8.4.1.24 allows unauthenticated reflected XSS via a parameter in a GET request.
CVE-2020-13820 1 Extremenetworks 1 Extreme Management Center 2020-08-04 4.3 MEDIUM 6.1 MEDIUM
Extreme Management Center 8.4.1.24 allows unauthenticated reflected XSS via a parameter in a GET request.
CVE-2017-14331 1 Extremenetworks 1 Extremexos 2019-10-03 7.2 HIGH 6.7 MEDIUM
Extreme EXOS 16.x, 21.x, and 22.x allows administrators to bypass the "exsh restricted shell" protection mechanism and obtain an interactive shell.
CVE-2017-14329 1 Extremenetworks 1 Extremexos 2019-10-03 7.2 HIGH 6.7 MEDIUM
Extreme EXOS 16.x, 21.x, and 22.x allows administrators to obtain a root shell via vectors involving an exsh debug shell.
CVE-2017-14330 1 Extremenetworks 1 Extremexos 2019-10-03 7.2 HIGH 6.7 MEDIUM
Extreme EXOS 16.x, 21.x, and 22.x allows administrators to obtain a root shell via vectors involving a privileged process.
CVE-2017-14327 1 Extremenetworks 1 Extremexos 2017-11-08 4.9 MEDIUM 4.4 MEDIUM
Extreme EXOS 16.x, 21.x, and 22.x allows administrators to read arbitrary files.