Vulnerabilities > Loadbalancer

DATE CVE VULNERABILITY TITLE RISK
2023-05-12 CVE-2020-13377 Path Traversal vulnerability in Loadbalancer Enterprise VA MAX 8.3.3/8.3.8
The web-services interface of Loadbalancer.org Enterprise VA MAX through 8.3.8 could allow an authenticated, remote, low-privileged attacker to conduct directory traversal attacks and obtain read and write access to sensitive files.
network
low complexity
loadbalancer CWE-22
8.1
2023-05-12 CVE-2020-13378 OS Command Injection vulnerability in Loadbalancer Enterprise VA MAX 8.3.3/8.3.8
Loadbalancer.org Enterprise VA MAX through 8.3.8 has an OS Command Injection vulnerability that allows a remote authenticated attacker to execute arbitrary code.
network
low complexity
loadbalancer CWE-78
8.8
2018-11-20 CVE-2018-18864 Cross-site Scripting vulnerability in Loadbalancer Enterprise VA MAX
Loadbalancer.org Enterprise VA MAX before 8.3.3 has XSS because Apache HTTP Server logs are displayed.
network
low complexity
loadbalancer CWE-79
critical
9.6