← Back

Exagrid

exagrid

3 CVEs • 18 products

Products (18)

Click to collapse
Toggle
Ex3000
ex3000
Ex5000
ex5000
Ex7000
ex7000
Ex10000e
ex10000e
Ex13000e
ex13000e
Ex21000e
ex21000e
Ex32000e
ex32000e
Ex40000e
ex40000e

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Exagrid
1Backup Appliance Firmware
Jun 17, 2026
Jun 3, 2019
N/A· v4
9.8 CRITICAL· v3
5.0 MEDIUM· v2
ExaGrid appliances with firmware version v4.8.1.1044.P50 have a /monitor/data/Upgrade/ directory traversal vulnerability, which allows remote attackers to view and retrieve verbose logging information. Files within this...Show more
ExaGrid appliances with firmware version v4.8.1.1044.P50 have a /monitor/data/Upgrade/ directory traversal vulnerability, which allows remote attackers to view and retrieve verbose logging information. Files within this directory were observed to contain sensitive run-time information, including Base64 encoded 'support' credentials, leading to administrative access of the device.Show less
1Exagrid
8Ex10000e Firmware
Ex13000e FirmwareEx21000e Firmware+5 more
May 13, 2026
Apr 21, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
ExaGrid appliances with firmware before 4.8 P26 have a default SSH public key in the authorized_keys file for root, which allows remote attackers to obtain SSH access by leveraging knowledge of a private key from another...Show more
ExaGrid appliances with firmware before 4.8 P26 have a default SSH public key in the authorized_keys file for root, which allows remote attackers to obtain SSH access by leveraging knowledge of a private key from another installation or a firmware image.Show less
1Exagrid
8Ex10000e Firmware
Ex13000e FirmwareEx21000e Firmware+5 more
May 13, 2026
Apr 21, 2017
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
ExaGrid appliances with firmware before 4.8 P26 have a default password of (1) inflection for the root shell account and (2) support for the support account in the web interface, which allows remote attackers to obtain a...Show more
ExaGrid appliances with firmware before 4.8 P26 have a default password of (1) inflection for the root shell account and (2) support for the support account in the web interface, which allows remote attackers to obtain administrative access via an SSH or HTTP session.Show less