Vulnerabilities > Openfiler

DATE CVE VULNERABILITY TITLE RISK
2023-12-11 CVE-2023-49488 Cross-site Scripting vulnerability in Openfiler 2.99.1
A cross-site scripting (XSS) vulnerability in Openfiler ESA v2.99.1 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the nic parameter.
network
low complexity
openfiler CWE-79
6.1
2020-02-07 CVE-2011-1086 Cross-site Scripting vulnerability in Openfiler 2.3
Cross-site scripting (XSS) vulnerability in admin/system.html in Openfiler 2.3 allows remote attackers to inject arbitrary web script or HTML via the device parameter.
network
low complexity
openfiler CWE-79
6.1