Vulnerabilities (CVE)

Filtered by vendor Free Subscribe
Filtered by product Freebox Os
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-9405 1 Free 1 Freebox Os 2024-02-04 3.5 LOW 5.4 MEDIUM
A Cross-Site Scripting (XSS) vulnerability exists in the description field of an Download RSS item or Contacts in Freebox OS Web interface 3.0.2, which allows malicious users to execute arbitrary code.
CVE-2014-9382 1 Free 1 Freebox Os 2024-02-04 4.3 MEDIUM 6.5 MEDIUM
Freebox OS Web interface 3.0.2 has CSRF which can allow VPN user account creation