Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
axon vulnerabilities and exploits
(subscribe to this query)
383
VMScore
CVE-2009-4038
Multiple cross-site scripting (XSS) vulnerabilities in NCH Software Axon Virtual PBX 2.10 and 2.11 allow remote malicious users to inject arbitrary web script or HTML via the (1) onok or (2) oncancel parameter to the logon program. NOTE: the provenance of this information is unkn...
Nch Axon Virtual Pbx 2.10
Nch Axon Virtual Pbx 2.11
356
VMScore
CVE-2021-37440
NCH Axon PBX v2.22 and previous versions allows path traversal for file disclosure via the logprop?file=/.. substring.
Nch Axon Pbx
578
VMScore
CVE-2021-37441
NCH Axon PBX v2.22 and previous versions allows path traversal for file deletion via the logdelete?file=/.. substring.
Nch Axon Pbx
312
VMScore
CVE-2021-37453
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and previous versions via the extension name (stored).
Nchsoftware Axon Pbx
312
VMScore
CVE-2021-37454
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and previous versions via the line name (stored).
Nchsoftware Axon Pbx
312
VMScore
CVE-2021-37455
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and previous versions via the outbound dialing plan (stored).
Nchsoftware Axon Pbx
312
VMScore
CVE-2021-37456
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and previous versions via the blacklist IP address (stored).
Nchsoftware Axon Pbx
312
VMScore
CVE-2021-37457
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and previous versions via the SipRule field (stored).
Nchsoftware Axon Pbx
312
VMScore
CVE-2021-37458
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and previous versions via the primary phone field (stored).
Nchsoftware Axon Pbx
312
VMScore
CVE-2021-37459
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and previous versions via the customer name field (stored).
Nchsoftware Axon Pbx
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-4463
CVE-2024-3400
deserialization
CVE-2024-21788
CVE-2023-42433
CVE-2024-21841
CVE-2024-22095
local file inclusion
memory leak
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »