Search Results (25 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2014-9430 1 Smoothwall 1 Smoothwall 2025-04-12 N/A
Cross-site scripting (XSS) vulnerability in httpd/cgi-bin/vpn.cgi/vpnconfig.dat in Smoothwall Express 3.0 SP3 allows remote attackers to inject arbitrary web script or HTML via the COMMENT parameter in an Add action.
CVE-2014-9431 1 Smoothwall 1 Smoothwall 2025-04-12 N/A
Multiple cross-site request forgery (CSRF) vulnerabilities in Smoothwall Express 3.1 and 3.0 SP3 allow remote attackers to hijack the authentication of administrators for requests that change the (1) admin or (2) dial password via a request to httpd/cgi-bin/changepw.cgi.
CVE-2003-0209 2 Smoothwall, Sourcefire 2 Smoothwall, Snort 2025-04-03 N/A
Integer overflow in the TCP stream reassembly module (stream4) for Snort 2.0 and earlier allows remote attackers to execute arbitrary code via large sequence numbers in packets, which enable a heap-based buffer overflow.
CVE-2011-1085 1 Smoothwall 1 Smoothwall Express 2024-11-21 8.8 High
CSRF vulnerability in Smoothwall Express 3.
CVE-2011-1084 1 Smoothwall 1 Smoothwall Express 2024-11-21 6.1 Medium
A cross-site scripting (XSS) vulnerability in Smoothwall Express 3.