Vulnerabilities (CVE)

Filtered by vendor Freenas Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-5334 1 Freenas 1 Freenas 2024-02-04 10.0 HIGH 9.8 CRITICAL
FreeNAS before 9.3-M3 has a blank admin password, which allows remote attackers to gain root privileges by leveraging a WebGui login.
CVE-2009-2739 1 Freenas 1 Freenas 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in FreeNAS before 0.69.2 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
CVE-2009-2738 1 Freenas 1 Freenas 2024-02-04 4.3 MEDIUM N/A
Cross-site request forgery (CSRF) vulnerability in the WebGUI in FreeNAS before 0.7RC1 allows remote attackers to hijack the authentication of users for unspecified requests via unknown vectors.