Smoothwall
smoothwall
28 CVEs • 5 products
Products (5)
Click to collapseToggle
Products (5)
Click to collapse
CVEs (28)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Smoothwall 1Smoothwall Express Apr 14, 2026 Mar 30, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express versions prior to 3.1 Update 13 contain a reflected cross-site scripting vulnerability in the /redirect.cgi endpoint due to improper sanitation of the url parameter. Attackers can craft malicious URLs...Show more |
1Smoothwall 1Smoothwall Express Apr 14, 2026 Mar 30, 2026 5.1 MEDIUM· v4 5.4 MEDIUM· v3 N/A· v2 Smoothwall Express versions prior to 3.1 Update 13 contain a stored cross-site scripting vulnerability in the /cgi-bin/vpnmain.cgi script due to improper sanitation of the VPN_IP parameter. Authenticated attackers can in...Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 5.3 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple stored cross-site scripting vulnerabilities in the preferences.cgi script that allow attackers to inject malicious scripts through the HOSTNAME, KEYMAP, a...Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 5.3 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple stored cross-site scripting vulnerabilities in the modem.cgi script that allow attackers to inject malicious scripts through POST parameters. Attackers ca...Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by exploiting insufficient input validation. Attac...Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by manipulating the IP parameter. Attackers can se...Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 4.8 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple reflected cross-site scripting vulnerabilities in the interfaces.cgi script that allow attackers to inject malicious scripts through multiple parameters i...Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by manipulating the MACHINES parameter. Attackers...Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by submitting crafted input to the ipblock.cgi end...Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by submitting crafted input to the xtaccess.cgi en...Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple reflected cross-site scripting vulnerabilities in the dmzholes.cgi script that allow attackers to inject malicious scripts through unvalidated parameters....Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts by manipulating the MACHINE and MACHINECOMMENT parameters. Attacke...Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple reflected cross-site scripting vulnerabilities in the portfw.cgi script that allow attackers to inject malicious scripts through unvalidated parameters. A...Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple reflected cross-site scripting vulnerabilities in the apcupsd.cgi script that allow attackers to inject malicious scripts through multiple POST parameters...Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by manipulating the NTP_SERVER parameter. Attacker...Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple reflected cross-site scripting vulnerabilities in the hosts.cgi script that allow attackers to inject malicious scripts through unvalidated parameters. At...Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple reflected cross-site scripting vulnerabilities in the dhcp.cgi script that allow attackers to inject malicious scripts through multiple parameters. Attack...Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 5.3 MEDIUM· v4 7.2 HIGH· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains stored and reflected cross-site scripting vulnerabilities in the urlfilter.cgi endpoint that allow attackers to inject malicious scripts. Attackers can submit POST...Show more |
1Smoothwall 1Smoothwall Express Feb 20, 2026 Feb 16, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple cross-site scripting vulnerabilities in the proxy.cgi endpoint that allow attackers to inject malicious scripts through parameters including CACHE_SIZE, M...Show more |
CSRF vulnerability in Smoothwall Express 3. |