Vulnerabilities > Opmantek > High

DATE CVE VULNERABILITY TITLE RISK
2020-04-29 CVE-2020-11943 Unrestricted Upload of File with Dangerous Type vulnerability in Opmantek Open-Audit 3.2.2
An issue was discovered in Open-AudIT 3.2.2.
network
low complexity
opmantek CWE-434
8.8
2020-04-28 CVE-2020-12078 OS Command Injection vulnerability in Opmantek Open-Audit 3.3.1
An issue was discovered in Open-AudIT 3.3.1.
network
low complexity
opmantek CWE-78
8.8
2020-04-27 CVE-2020-11941 OS Command Injection vulnerability in Opmantek Open-Audit 3.2.2
An issue was discovered in Open-AudIT 3.2.2.
network
low complexity
opmantek CWE-78
8.8
2020-02-22 CVE-2020-8813 OS Command Injection vulnerability in multiple products
graph_realtime.php in Cacti 1.2.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in a cookie, if a guest user has the graph real-time privilege.
8.8
2019-09-13 CVE-2019-16293 OS Command Injection vulnerability in Opmantek Open-Audit
The Create Discoveries feature of Open-AudIT before 3.2.0 allows an authenticated attacker to execute arbitrary OS commands via a crafted value for a URL field.
network
low complexity
opmantek CWE-78
8.8
2017-04-10 CVE-2016-6534 Command Injection vulnerability in Opmantek Network Management Information System 4.3.6F/8.5.10G
Opmantek NMIS before 4.3.7c has command injection via man, finger, ping, trace, and nslookup in the tools.pl CGI script.
network
high complexity
opmantek CWE-77
7.5