VYPR
Vendor

Prophecyinternational

Products
2
CVEs
4
Across products
4
Status
Private

Products

2

Recent CVEs

4
  • CVE-2011-5247HigJan 8, 2020
    risk 0.49cvss 7.5epss 0.01

    Snare for Linux before 1.7.0 has password disclosure because the rendered page contains the field RemotePassword.

  • CVE-2019-11364HigAug 29, 2019
    risk 0.47cvss 7.2epss 0.02

    An OS Command Injection vulnerability in Snare Central before 7.4.5 allows remote authenticated attackers to inject arbitrary OS commands via the ServerConf/DataManagement/DiskManager.php FORMNAS_share parameter.

  • CVE-2019-11363HigAug 29, 2019
    risk 0.47cvss 7.2epss 0.01

    A SQL injection vulnerability in Snare Central before 7.4.5 allows remote authenticated attackers to execute arbitrary SQL commands via the AgentConsole/UserGroupQuery.php ShowUser parameter.

  • CVE-2011-5250MedJan 8, 2020
    risk 0.42cvss 6.5epss 0.01

    Snare for Linux before 1.7.0 has CSRF in the web interface.