Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
axon vulnerabilities and exploits
(subscribe to this query)
5.4
CVSSv3
CVE-2021-37459
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and previous versions via the customer name field (stored).
Nchsoftware Axon Pbx
5.4
CVSSv3
CVE-2021-37460
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and previous versions via /planprop?id= (reflected).
Nchsoftware Axon Pbx
5.4
CVSSv3
CVE-2021-37461
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and previous versions via /extensionsinstruction?id= (reflected).
Nchsoftware Axon Pbx
5.4
CVSSv3
CVE-2021-37462
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and previous versions via /ipblacklist?errorip= (reflected).
Nchsoftware Axon Pbx
7.8
CVSSv3
CVE-2018-11551
AXON PBX 2.02 contains a DLL hijacking vulnerability that could allow an unauthenticated, remote malicious user to execute arbitrary code on a targeted system. The vulnerability exists because a DLL file is loaded by 'pbxsetup.exe' improperly.
Nch Axon Pbx 2.02
9.8
CVSSv3
CVE-2018-17538
Axon (formerly TASER International) Evidence Sync 3.15.89 is vulnerable to process injection. NOTE: the vendor's position is that this CVE is not associated with information that supports any finding of any type of vulnerability
Axon Evidence Sync 3.15.89
6.1
CVSSv3
CVE-2018-11552
There is a reflected XSS vulnerability in AXON PBX 2.02 via the "AXON->Auto-Dialer->Agents->Name" field. The vulnerability exists due to insufficient filtration of user-supplied data. A remote attacker can execute arbitrary HTML and script code in a browser in ...
Nch Axon Pbx 2.02
7.5
CVSSv3
CVE-2021-21732
A mobile phone of ZTE is impacted by improper access control vulnerability. Due to improper permission settings, third-party applications can read some files in the proc file system without authorization. Attackers could exploit this vulnerability to obtain sensitive information....
Zte Axon 11 5g Firmware
5.5
CVSSv3
CVE-2021-21742
There is an information leak vulnerability in the message service app of a ZTE mobile phone. Due to improper parameter settings, attackers could use this vulnerability to obtain some sensitive information of users by accessing specific pages.
Zte Axon 30 Pro Message Service 5.3.1.2103091059
7.1
CVSSv3
CVE-2022-39071
There is an unauthorized access vulnerability in some ZTE mobile phones. If a malicious application is installed on the phone, it could overwrite some system configuration files and user installers without user permission.
Zte Blade A52 Firmware
Zte Blade A51 Firmware
Zte Blade A3 Lite Firmware
Zte Blade A5 2020 Firmware
Zte Blade L210 Firmware
Zte Blade A7s Firmware
Zte Blade A31 Firmware
Zte Blade A31 Plus Firmware
Zte Blade A5 2019 Firmware
Zte Blade A71 Firmware
Zte Blade A72 Firmware
Zte Blade V20 Smart Firmware
Zte Blade V30 Firmware
Zte Blade V30 Vita Firmware
Zte V40 Pro Firmware
Zte Blade V40 Vita Firmware
Zte Axon 40 Ultra Firmware
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-23692
malicious code
XML injection
CVE-2024-28020
CVE-2024-35252
CVE-2024-5833
CVE-2024-30066
injection
CVE-2024-23282
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »