MidnightBSD

Advisories for opmantek

CVE-2016-5642 LOW

Opmantek NMIS before 8.5.12G has XSS via SNMP.

CVSS 2.0

Severity: LOW

Problem Type: CWE-79,

Products Affected

Vendor Product Version
opmantek network_management_information_system *
CVE-2016-6534 MEDIUM

Opmantek NMIS before 4.3.7c has command injection via man, finger, ping, trace, and nslookup in the tools.pl CGI script. Versions before 8.5.12G might be affected in non-default configurations.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-77,

Products Affected

Vendor Product Version
opmantek network_management_information_system *