Vulnerabilities > Fibranet > Monitorix > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-01-27 CVE-2021-3325 Monitorix 3.13.0 allows remote attackers to bypass Basic Authentication in a default installation (i.e., an installation without a hosts_deny option).
network
low complexity
fibranet fedoraproject
critical
9.8
2019-12-31 CVE-2013-7070 Injection vulnerability in Fibranet Monitorix
The handle_request function in lib/HTTPServer.pm in Monitorix before 3.3.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the URI.
network
low complexity
fibranet CWE-74
critical
9.8