Netadmin

    Dashboard / Vendors

    Products: 2
    Vulnerabilities: 3
    Known Exploited: 0
    0
    Critical Level Threats
    1
    High Level Threats
    1
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2024-51026

    The NetAdmin IAM system (version 4.0.30319) has a Cross Site Scripting (XSS) vulnerability in the /BalloonSave.ashx endpoint, where it is possible to inject a malicious payload into the Content= field.

    Last Modified: Apr 15, 2026
    Published: Nov 11, 2024

    CVE-2024-48955

    Broken access control in NetAdmin 4.030319 returns data with functionalities on the endpoint that "assembles" the functionalities menus, the return of this call is not encrypted and as the system does not validate the session authorization, an attacker can copy the content of the browser of a user with greater privileges having access to the functionalities of the user that the code was copied.

    Last Modified: Apr 15, 2026
    Published: Oct 29, 2024

    CVE-2024-9513

    Netadmin Software NetAdmin IAM HTTP POST Request ReturnUserQuestionsFilled information exposure

    Last Modified: Nov 13, 2024
    Published: Oct 04, 2024
    Items Per Page
    Netadmin Vulnerabilities & Security CVEs | CVE-DB