Products: 2
Vulnerabilities: 3
Known Exploited: 0
0
Critical Level Threats
1
High Level Threats
1
Medium Level Threats
1
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2024-51026
The NetAdmin IAM system (version 4.0.30319) has a Cross Site Scripting (XSS) vulnerability in the /BalloonSave.ashx endpoint, where it is possible to inject a malicious payload into the Content= field.
Last Modified: Apr 15, 2026
Published: Nov 11, 2024
CVE-2024-48955
Broken access control in NetAdmin 4.030319 returns data with functionalities on the endpoint that "assembles" the functionalities menus, the return of this call is not encrypted and as the system does not validate the session authorization, an attacker can copy the content of the browser of a user with greater privileges having access to the functionalities of the user that the code was copied.
Last Modified: Apr 15, 2026
Published: Oct 29, 2024
CVE-2024-9513
Netadmin Software NetAdmin IAM HTTP POST Request ReturnUserQuestionsFilled information exposure
Last Modified: Nov 13, 2024
Published: Oct 04, 2024
Items Per Page
