Products: 2
Vulnerabilities: 5
Known Exploited: 0
0
Critical Level Threats
2
High Level Threats
3
Medium Level Threats
0
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2020-17494
Untangle Firewall NG before 16.0 uses MD5 for passwords.
Last Modified: Nov 21, 2024
Published: Nov 12, 2020
CVE-2019-18646
The Untangle NG firewall 14.2.0 is vulnerable to authenticated inline-query SQL injection within the timeDataDynamicColumn parameter when logged in as an admin user.
Last Modified: Nov 21, 2024
Published: Nov 14, 2019
CVE-2019-18647
The Untangle NG firewall 14.2.0 is vulnerable to an authenticated command injection when logged in as an admin user.
Last Modified: Nov 21, 2024
Published: Nov 14, 2019
CVE-2019-18648
When logged in as an admin user, the Untangle NG firewall 14.2.0 is vulnerable to reflected XSS at multiple places and specific user input fields.
Last Modified: Nov 21, 2024
Published: Nov 14, 2019
CVE-2019-18649
When logged in as an admin user, the Title input field (under Reports) within Untangle NG firewall 14.2.0 is vulnerable to stored XSS.
Last Modified: Nov 21, 2024
Published: Nov 14, 2019
Items Per Page
