Products: 1
    Vulnerabilities: 4
    Known Exploited: 0
    0
    Critical Level Threats
    3
    High Level Threats
    0
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-67442

    EVE-NG 6.4.0-13-PRO is vulnerable to Directory Traversal. The /api/export interface allows authenticated users to export lab files. This interface lacks effective input validation and filtering when processing file path parameters submitted by users.

    Last Modified: Jan 02, 2026
    Published: Dec 19, 2025

    CVE-2024-2391

    EVE-NG Lab cross site scripting

    Last Modified: Feb 26, 2025
    Published: Mar 12, 2024

    CVE-2022-31366

    An arbitrary file upload vulnerability in the apiImportLabs function in api_labs.php of EVE-NG 2.0.3-112 Community allows attackers to execute arbitrary code via a crafted UNL file.

    Last Modified: May 08, 2025
    Published: Oct 20, 2022

    CVE-2022-27903

    An OS Command Injection vulnerability in the configuration parser of Eve-NG Professional through 4.0.1-65 and Eve-NG Community through 2.0.3-112 allows a remote authenticated attacker to execute commands as root by editing virtualization command parameters of imported UNL files.

    Last Modified: Nov 21, 2024
    Published: May 04, 2022
    Items Per Page
    Eve-Ng Vulnerabilities & Security CVEs | CVE-DB