CVEs (10)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
In Infoblox NIOS through 9.0.7, insecure deserialization can result in remote code execution. |
In Infoblox NIOS through 9.0.7, a High-Privileged User Can Trigger an Arbitrary File Write via the Account Creation Mechanism. |
Infoblox NIOS through 8.6.4 has Improper Access Control for Grids. |
Infoblox NIOS through 8.6.4 has Improper Authentication for Grids. |
Infoblox NIOS through 8.6.4 and 9.x through 9.0.3 has Improper Input Validation. |
Infoblox NIOS through 8.6.4 executes with more privileges than required. |
A stored cross-site scripting (XSS) vulnerability in Infoblox NIOS v8.5.2-409296 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the VLAN View Name field. |
Infoblox NIOS through 8.5.1 has a faulty component that accepts malicious input without sanitization, resulting in shell access. |
Infoblox NIOS before 8.5.2 allows entity expansion during an XML upload operation, a related issue to CVE-2003-1564. |
A privilege escalation vulnerability in the "support access" feature on Infoblox NIOS 6.8 through 8.4.1 could allow a locally authenticated administrator to temporarily gain additional privileges on an affected device an...Show more |