VYPR

Dome Firewall

by Comodo

CVEs (30)

  • CVE-2019-25414MedFeb 19, 2026
    risk 0.40cvss 6.1epss 0.00

    Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by manipulating the ID parameter. Attackers can craft requests to the /manage/ips/appid/ endpoint with script payloads in the ID…

  • CVE-2019-25413MedFeb 19, 2026
    risk 0.40cvss 6.1epss 0.00

    Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by manipulating the ID parameter. Attackers can craft requests to the /manage/ips/rules/ endpoint with script payloads in the ID…

  • CVE-2019-25412MedFeb 19, 2026
    risk 0.40cvss 6.1epss 0.00

    Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts by submitting unsanitized input through the NTP_SERVER_LIST parameter. Attackers can send POST requests to the /korugan/time endpoint with script…

  • CVE-2019-25411MedFeb 19, 2026
    risk 0.40cvss 6.1epss 0.00

    Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts by manipulating the GATEWAY_GREEN parameter. Attackers can send POST requests to the DHCP configuration endpoint with script payloads to execute…

  • CVE-2019-25410MedFeb 19, 2026
    risk 0.40cvss 6.1epss 0.00

    Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts through the source and destination parameters. Attackers can submit POST requests to the policy routing endpoint with script payloads in these…

  • CVE-2019-25409MedFeb 19, 2026
    risk 0.40cvss 6.1epss 0.00

    Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts by manipulating the destination parameter. Attackers can send POST requests to the routing endpoint with script payloads in the destination…

  • CVE-2019-25408MedFeb 19, 2026
    risk 0.40cvss 6.1epss 0.00

    Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts by submitting crafted input to the netmask_addr parameter. Attackers can send POST requests to the netwizard2 endpoint with script payloads in the…

  • CVE-2019-25407MedFeb 19, 2026
    risk 0.40cvss 6.1epss 0.00

    Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts by submitting crafted input to the backup schedule interface. Attackers can send POST requests to the backupschedule endpoint with JavaScript code…

  • CVE-2019-25406MedFeb 19, 2026
    risk 0.40cvss 6.1epss 0.00

    Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts by manipulating the organization parameter. Attackers can send POST requests to the korugan/cmclient endpoint with script payloads in the…

  • CVE-2019-25402MedFeb 19, 2026
    risk 0.40cvss 6.1epss 0.00

    Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by submitting crafted input to the username parameter. Attackers can send POST requests to the login endpoint with script payloads…

Page 2 of 2