Skip to main content

Vendor/product archive

extremenetworks / exos CVEs

Beta · best-effort

5 CVEs tagged to extremenetworks / exos1 Critical, 3 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2023-43121

Published Oct 16, 2023

A Directory Traversal vulnerability discovered in Chalet application in Extreme Networks Switch Engine (EXOS) before 32.5.1.5, before 22.7, and before 31.7.2 allows attackers to r…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-43119

Published Oct 16, 2023

An Access Control issue discovered in Extreme Networks Switch Engine (EXOS) before 32.5.1.5, also fixed in 22.7, 31.7.2 allows attackers to gain escalated privileges using crafted…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-43118

Published Oct 16, 2023

Cross Site Request Forgery (CSRF) vulnerability in Chalet application in Extreme Networks Switch Engine (EXOS) before 32.5.1.5, fixed in 31.7.2 and 32.5.1.5 allows attackers to ru…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-43120

Published Oct 16, 2023

An issue discovered in Extreme Networks Switch Engine (EXOS) before 32.5.1.5, before 22.7 and before 31.7.1 allows attackers to gain escalated privileges via crafted HTTP request.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2013-7309

Published Jan 23, 2014

The OSPF implementation in Extreme Networks EXOS does not consider the possibility of duplicate Link State ID values in Link State Advertisement (LSA) packets before performing op…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1