Vulnerabilities > Netapp > Oncommand Balance

DATE CVE VULNERABILITY TITLE RISK
2015-02-06 CVE-2014-9353 Permissions, Privileges, and Access Controls vulnerability in Netapp Oncommand Balance 4.2
NetApp OnCommand Balance before 4.2P2 contains a "default privileged account," which allows remote attackers to gain privileges via unspecified vectors.
network
low complexity
netapp CWE-264
critical
10.0
2010-08-05 CVE-2010-1871 Expression Language Injection vulnerability in multiple products
JBoss Seam 2 (jboss-seam2), as used in JBoss Enterprise Application Platform 4.3.0 for Red Hat Linux, does not properly sanitize inputs for JBoss Expression Language (EL) expressions, which allows remote attackers to execute arbitrary code via a crafted URL.
network
low complexity
redhat netapp CWE-917
8.8