VYPR

Vendor CVEs

Librenms

All CVEs

107 total · sorted by risk
  • CVE-2018-20434CriApr 24, 2019
    risk 0.72cvss 9.8epss 0.71

    LibreNMS 1.46 allows remote attackers to execute arbitrary OS commands by using the $_POST['community'] parameter to html/pages/addhost.inc.php during creation of a new device, and then making a /ajax_output.php?id=capture&format=text&type=snmpwalk&hostname=localhost request…

  • CVE-2019-10665CriSep 9, 2019
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in LibreNMS through 1.47. The scripts that handle the graphing options (html/includes/graphs/common.inc.php and html/includes/graphs/graphs.inc.php) do not sufficiently validate or encode several fields of user supplied input. Some parameters are filtered…

  • CVE-2024-51092CriMay 8, 2026
    risk 0.63cvss 9.1epss 0.07

    LibreNMS before 24.10.0 allows a remote attacker to execute arbitrary code via OS command injection involving AboutController.php's index(), SettingsController.php's update(), and PollDevice.php's initRrdDirectory().

  • CVE-2019-10668CriSep 9, 2019
    risk 0.59cvss 9.1epss 0.02

    An issue was discovered in LibreNMS through 1.47. A number of scripts import the Authentication libraries, but do not enforce an actual authentication check. Several of these scripts disclose information or expose functions that are of a sensitive nature and are not expected to…

  • CVE-2022-4070CriNov 20, 2022
    risk 0.57cvss 9.8epss 0.01

    Insufficient Session Expiration in GitHub repository librenms/librenms prior to 22.10.0.

  • CVE-2022-29712CriJun 2, 2022
    risk 0.57cvss 9.8epss 0.02

    LibreNMS v22.3.0 was discovered to contain multiple command injection vulnerabilities via the service_ip, hostname, and service_param parameters.

  • CVE-2019-12463HigSep 9, 2019
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in LibreNMS 1.50.1. The scripts that handle graphing options (includes/html/graphs/common.inc.php and includes/html/graphs/graphs.inc.php) do not sufficiently validate or encode several fields of user supplied input. Some parameters are filtered with…

  • CVE-2019-10671HigSep 9, 2019
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in LibreNMS through 1.47. It does not parameterize all user supplied input within database queries, resulting in SQL injection. An authenticated attacker can subvert these database queries to extract or manipulate data, as demonstrated by the graph.php…

  • CVE-2019-10669HigSep 9, 2019
    risk 0.56cvss 7.2epss 0.81

    An issue was discovered in LibreNMS through 1.47. There is a command injection vulnerability in html/includes/graphs/device/collectd.inc.php where user supplied parameters are filtered with the mysqli_escape_real_string function. This function is not the appropriate function to…

  • CVE-2026-26988CriFeb 20, 2026
    risk 0.53cvss 9.1epss 0.07

    LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring tool. Versions 25.12.0 and below contain an SQL Injection vulnerability in the ajax_table.php endpoint. The application fails to properly sanitize or parameterize user input when processing IPv6 address…

  • CVE-2019-12465HigSep 9, 2019
    risk 0.53cvss 8.1epss 0.01

    An issue was discovered in LibreNMS 1.50.1. A SQL injection flaw was identified in the ajax_rulesuggest.php file where the term parameter is used insecurely in a database query for showing columns of a table, as demonstrated by an ajax_rulesuggest.php?debug=1&term= request.

  • CVE-2019-10666HigSep 9, 2019
    risk 0.53cvss 8.1epss 0.01

    An issue was discovered in LibreNMS through 1.47. Several of the scripts perform dynamic script inclusion via the include() function on user supplied input without sanitizing the values by calling basename() or a similar function. An attacker can leverage this to execute PHP…

  • CVE-2026-26990HigFeb 20, 2026
    risk 0.51cvss 8.8epss 0.04

    LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring tool. Versions 25.12.0 and below have a Time-Based Blind SQL Injection vulnerability in address-search.inc.php via the address parameter. When a crafted subnet prefix is supplied, the prefix value is…

  • CVE-2022-3525HigNov 20, 2022
    risk 0.50cvss 8.8epss 0.01

    Deserialization of Untrusted Data in GitHub repository librenms/librenms prior to 22.10.0.

  • CVE-2020-35700HigFeb 8, 2021
    risk 0.50cvss 8.8epss 0.02

    A second-order SQL injection issue in Widgets/TopDevicesController.php (aka the Top Devices dashboard widget) of LibreNMS before 21.1.0 allows remote authenticated attackers to execute arbitrary SQL commands via the sort_order parameter against the /ajax/form/widget-settings…

  • CVE-2020-15877HigJul 21, 2020
    risk 0.50cvss 8.8epss 0.02

    An issue was discovered in LibreNMS before 1.65.1. It has insufficient access control for normal users because of "'guard' => 'admin'" instead of "'middleware' => ['can:admin']" in routes/web.php.

  • CVE-2018-20678HigMar 28, 2019
    risk 0.50cvss 8.8epss 0.01

    LibreNMS through 1.47 allows SQL injection via the html/ajax_table.php sort[hostname] parameter, exploitable by authenticated users during a search.

  • CVE-2019-12464HigSep 9, 2019
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in LibreNMS 1.50.1. An authenticated user can perform a directory traversal attack against the /pdf.php file with a partial filename in the report parameter, to cause local file inclusion resulting in code execution.

  • CVE-2024-49754HigNov 15, 2024
    risk 0.47cvss 7.5epss 0.71

    LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. A Stored Cross-Site Scripting (XSS) vulnerability in the API-Access page allows authenticated users to inject arbitrary JavaScript through the "token" parameter when creating a new API token. This…

  • CVE-2020-36947HigJan 27, 2026
    risk 0.46cvss 7.1epss 0.00

    LibreNMS 1.46 contains an authenticated SQL injection vulnerability in the MAC accounting graph endpoint that allows remote attackers to extract database information. Attackers can exploit the vulnerability by manipulating the 'sort' parameter with crafted SQL injection…

  • CVE-2024-47525HigOct 1, 2024
    risk 0.44cvss 7.5epss 0.27

    LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. A Stored Cross-Site Scripting (XSS) vulnerability in the "Alert Rules" feature allows authenticated users to inject arbitrary JavaScript through the "Title" field. This vulnerability can lead to the…

  • CVE-2026-30480MedApr 14, 2026
    risk 0.42cvss 6.5epss 0.00

    A Local File Inclusion (LFI) vulnerability in the NFSen module (nfsen.inc.php) of LibreNMS 22.11.0-23-gd091788f2 allows authenticated attackers to include arbitrary PHP files from the server filesystem via path traversal sequences in the nfsen parameter.

  • CVE-2025-54138HigJul 22, 2025
    risk 0.42cvss 7.5epss 0.01

    LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring which includes support for a wide range of network hardware and operating systems. LibreNMS versions 25.6.0 and below contain an architectural vulnerability in the ajax_form.php endpoint that permits Remote…

  • CVE-2024-47527HigOct 1, 2024
    risk 0.42cvss 7.5epss 0.01

    LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. A Stored Cross-Site Scripting (XSS) vulnerability in the "Device Dependencies" feature allows authenticated users to inject arbitrary JavaScript through the device name ("hostname" parameter). This…

  • CVE-2024-47523HigOct 1, 2024
    risk 0.42cvss 7.5epss 0.01

    LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. A Stored Cross-Site Scripting (XSS) vulnerability in the "Alert Transports" feature allows authenticated users to inject arbitrary JavaScript through the "Details" section (which contains multiple fields…

  • CVE-2024-32479HigApr 22, 2024
    risk 0.42cvss 7.1epss 0.34

    LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. Prior to version 24.4.0, there is improper sanitization on the `Service` template name, which can lead to stored Cross-site Scripting. Version 24.4.0 fixes this vulnerability.

  • CVE-2024-32480HigApr 22, 2024
    risk 0.41cvss 7.2epss 0.20

    LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. Versions prior to 24.4.0 are vulnerable to SQL injection. The `order` parameter is obtained from `$request`. After performing a string check, the value is directly incorporated into an SQL statement and…

  • CVE-2024-32461HigApr 22, 2024
    risk 0.41cvss 7.1epss 0.19

    LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. A SQL injection vulnerability in POST /search/search=packages in LibreNMS prior to version 24.4.0 allows a user with global read privileges to execute SQL commands via the package parameter. With this…

  • CVE-2026-6204HigApr 13, 2026
    risk 0.40cvss 7.2epss 0.08

    LibreNMS versions before 26.3.0 are affected by an authenticated remote code execution vulnerability by abusing the Binary Locations config and the Netcommand feature. Successful exploitation requires administrative privileges. Exploitation could result in compromise of the…

  • CVE-2024-47524HigOct 1, 2024
    risk 0.40cvss 7.2epss 0.01

    LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. User with Admin role can create a Device Groups, the application did not properly sanitize the user input in the Device Groups name, when user see the detail of the Device Group, if java script code is…

  • CVE-2019-10670MedSep 9, 2019
    risk 0.40cvss 6.1epss 0.01

    An issue was discovered in LibreNMS through 1.47. Many of the scripts rely on the function mysqli_escape_real_string for filtering data. However, this is particularly ineffective when returning user supplied input in an HTML or a JavaScript context, resulting in unsafe data…

  • CVE-2022-0588HigFeb 15, 2022
    risk 0.39cvss 7.1epss 0.01

    Missing Authorization in Packagist librenms/librenms prior to 22.2.0.

  • CVE-2022-0580HigFeb 14, 2022
    risk 0.39cvss 7.1epss 0.01

    Incorrect Authorization in Packagist librenms/librenms prior to 22.2.0.

  • CVE-2023-5591MedOct 16, 2023
    risk 0.37cvss 6.5epss 0.22

    SQL Injection in GitHub repository librenms/librenms prior to 23.10.0.

  • CVE-2022-4067MedNov 20, 2022
    risk 0.36cvss 5.4epss 0.94

    Cross-site Scripting (XSS) - Stored in GitHub repository librenms/librenms prior to 22.10.0.

  • CVE-2022-3562MedNov 20, 2022
    risk 0.36cvss 5.4epss 0.94

    Cross-site Scripting (XSS) - Stored in GitHub repository librenms/librenms prior to 22.10.0.

  • CVE-2025-23201MedJan 16, 2025
    risk 0.35cvss 5.4epss 0.00

    librenms is a community-based GPL-licensed network monitoring system. Affected versions are subject to Cross-site Scripting (XSS) on the parameters:`/addhost` -> param: community. Librenms versions up to 24.10.1 allow remote attackers to inject malicious scripts. When a user…

  • CVE-2022-0587MedFeb 15, 2022
    risk 0.35cvss 6.5epss 0.01

    Improper Authorization in Packagist librenms/librenms prior to 22.2.0.

  • CVE-2020-15873MedJul 21, 2020
    risk 0.35cvss 6.5epss 0.02

    In LibreNMS before 1.65.1, an authenticated attacker can achieve SQL Injection via the customoid.inc.php device_id POST parameter to ajax_form.php.

  • CVE-2019-10667MedSep 9, 2019
    risk 0.35cvss 5.3epss 0.01

    An issue was discovered in LibreNMS through 1.47. Information disclosure can occur: an attacker can fingerprint the exact code version installed and disclose local file paths.

  • CVE-2019-15230MedAug 28, 2019
    risk 0.35cvss 5.4epss 0.01

    LibreNMS v1.54 has XSS in the Create User, Inventory, Add Device, Notifications, Alert Rule, Create Maintenance, and Alert Template sections of the admin console. This could lead to cookie stealing and other malicious actions. This vulnerability can be exploited with an…

  • CVE-2023-48295MedNov 17, 2023
    risk 0.34cvss 6.3epss 0.01

    LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring which includes support for a wide range of network hardware and operating systems. Affected versions are subject to a cross site scripting (XSS) vulnerability in the device group popups. This issue has been…

  • CVE-2026-26987MedFeb 20, 2026
    risk 0.33cvss 6.1epss 0.00

    LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring tool. Versions 25.12.0 and below are vulnerable to Reflected XSS attacks via email field. This issue has been fixed in version 26.2.0.

  • CVE-2025-65013MedNov 18, 2025
    risk 0.33cvss 6.2epss 0.00

    LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring tool. Prior to version 25.11.0, a reflected cross-site scripting (XSS) vulnerability was identified in the LibreNMS application at the /maps/nodeimage endpoint. The Image Name parameter is reflected in the…

  • CVE-2025-62365MedOct 13, 2025
    risk 0.33cvss 6.1epss 0.00

    LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. Prior to 25.7.0, there is a reflected-XSS in `report_this` function in `librenms/includes/functions.php`. The `report_this` function had improper filtering (`htmlentities` function was incorrectly use in…

  • CVE-2025-47931MedMay 17, 2025
    risk 0.33cvss 6.1epss 0.00

    LibreNMS is PHP/MySQL/SNMP based network monitoring software. LibreNMS v25.4.0 and prior suffers from a Stored Cross-Site Scripting (XSS) Vulnerability in the `group name` parameter of the `http://localhost/poller/groups` form. This vulnerability allows attackers to inject…

  • CVE-2023-5060MedSep 19, 2023
    risk 0.33cvss 6.1epss 0.01

    Cross-site Scripting (XSS) - DOM in GitHub repository librenms/librenms prior to 23.9.1.

  • CVE-2023-4978MedSep 15, 2023
    risk 0.33cvss 6.1epss 0.01

    Cross-site Scripting (XSS) - DOM in GitHub repository librenms/librenms prior to 23.9.0.

  • CVE-2023-4347MedAug 15, 2023
    risk 0.33cvss 5.4epss 0.67

    Cross-site Scripting (XSS) - Reflected in GitHub repository librenms/librenms prior to 23.8.0.

  • CVE-2022-3561MedNov 20, 2022
    risk 0.33cvss 6.1epss 0.01

    Cross-site Scripting (XSS) - Generic in GitHub repository librenms/librenms prior to 22.10.0.

Page 1 of 3