Filtered by vendor Extremenetworks Subscriptions
Filtered by product Extremexos Subscriptions
Total 7 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-27453 1 Extremenetworks 1 Extremexos 2024-11-21 8.6 High
In Extreme XOS through 22.6.1.4, a read-only user can escalate privileges to root via a crafted HTTP POST request to the python method of the Machine-to-Machine Interface (MMI).
CVE-2017-14332 1 Extremenetworks 1 Extremexos 2024-11-21 N/A
Extreme EXOS 15.7, 16.x, 21.x, and 22.x allows remote attackers to hijack sessions by determining SessionID values.
CVE-2017-14331 1 Extremenetworks 1 Extremexos 2024-11-21 N/A
Extreme EXOS 16.x, 21.x, and 22.x allows administrators to bypass the "exsh restricted shell" protection mechanism and obtain an interactive shell.
CVE-2017-14330 1 Extremenetworks 1 Extremexos 2024-11-21 N/A
Extreme EXOS 16.x, 21.x, and 22.x allows administrators to obtain a root shell via vectors involving a privileged process.
CVE-2017-14329 1 Extremenetworks 1 Extremexos 2024-11-21 N/A
Extreme EXOS 16.x, 21.x, and 22.x allows administrators to obtain a root shell via vectors involving an exsh debug shell.
CVE-2017-14328 1 Extremenetworks 1 Extremexos 2024-11-21 7.5 High
Extreme EXOS 15.7, 16.x, 21.x, and 22.x allows remote attackers to trigger a buffer overflow leading to a reboot.
CVE-2017-14327 1 Extremenetworks 1 Extremexos 2024-11-21 N/A
Extreme EXOS 16.x, 21.x, and 22.x allows administrators to read arbitrary files.