RSS   Vulnerabilities for 'Freenas'   RSS

2018-01-08
 
CVE-2014-5334

CWE-254
 

 
FreeNAS before 9.3-M3 has a blank admin password, which allows remote attackers to gain root privileges by leveraging a WebGui login.

 
2009-08-11
 
CVE-2009-2739

CWE-79
 

 
Cross-site scripting (XSS) vulnerability in FreeNAS before 0.69.2 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.

 
 
CVE-2009-2738

CWE-79
 

 
Cross-site request forgery (CSRF) vulnerability in the WebGUI in FreeNAS before 0.7RC1 allows remote attackers to hijack the authentication of users for unspecified requests via unknown vectors.

 


Copyright 2024, cxsecurity.com

 

Back to Top