Vulnerabilities > Freenas

DATE CVE VULNERABILITY TITLE RISK
2018-01-08 CVE-2014-5334 7PK - Security Features vulnerability in Freenas 9.3
FreeNAS before 9.3-M3 has a blank admin password, which allows remote attackers to gain root privileges by leveraging a WebGui login.
network
low complexity
freenas CWE-254
critical
10.0
2009-08-11 CVE-2009-2739 Cross-Site Scripting vulnerability in Freenas 0.686.3/0.686.4/0.69
Cross-site scripting (XSS) vulnerability in FreeNAS before 0.69.2 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
network
freenas CWE-79
4.3
2009-08-11 CVE-2009-2738 Cross-Site Scripting vulnerability in Freenas 0.69.1
Cross-site request forgery (CSRF) vulnerability in the WebGUI in FreeNAS before 0.7RC1 allows remote attackers to hijack the authentication of users for unspecified requests via unknown vectors.
network
freenas CWE-79
4.3