Eventsentry
by Netikus
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2016-5077 | Med | 0.40 | 6.1 | 0.01 | Apr 10, 2017 | Netikus EventSentry before 3.2.1.44 has XSS via SNMP. | ||
| CVE-2026-24443 | 0.00 | — | 0.00 | Feb 24, 2026 | EventSentry versions prior to 6.0.1.20 contain an unverified password change vulnerability in the account management functionality of the Web Reports interface. The password change mechanism does not require validation of the current password before allowing a new password to… | |||
| CVE-2015-1180 | 0.00 | — | 0.01 | Jan 23, 2015 | Cross-site scripting (XSS) vulnerability in the Web Reports in EventSentry 3.1.0 allows remote attackers to inject arbitrary web script or HTML via the pageId parameter to networktile/bullet. |
- risk 0.40cvss 6.1epss 0.01
Netikus EventSentry before 3.2.1.44 has XSS via SNMP.
- CVE-2026-24443Feb 24, 2026risk 0.00cvss —epss 0.00
EventSentry versions prior to 6.0.1.20 contain an unverified password change vulnerability in the account management functionality of the Web Reports interface. The password change mechanism does not require validation of the current password before allowing a new password to…
- CVE-2015-1180Jan 23, 2015risk 0.00cvss —epss 0.01
Cross-site scripting (XSS) vulnerability in the Web Reports in EventSentry 3.1.0 allows remote attackers to inject arbitrary web script or HTML via the pageId parameter to networktile/bullet.