Vulnerabilities > Opennebula

DATE CVE VULNERABILITY TITLE RISK
2022-10-28 CVE-2022-37424 Files or Directories Accessible to External Parties vulnerability in Opennebula
Files or Directories Accessible to External Parties vulnerability in OpenNebula on Linux allows File Discovery.
network
low complexity
opennebula CWE-552
6.5
2022-10-28 CVE-2022-37425 Command Injection vulnerability in Opennebula
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in OpenNebula OpenNebula core on Linux allows Remote Code Inclusion.
network
low complexity
opennebula CWE-77
critical
9.8
2022-10-28 CVE-2022-37426 Unrestricted Upload of File with Dangerous Type vulnerability in Opennebula
Unrestricted Upload of File with Dangerous Type vulnerability in OpenNebula OpenNebula core on Linux allows File Content Injection.
network
low complexity
opennebula CWE-434
7.5