Skip to main content

Vendor/product archive

objectfirst / ootbi CVEs

Beta · best-effort

3 CVEs tagged to objectfirst / ootbi1 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2022-44796

Published Nov 7, 2022

An issue was discovered in Object First Ootbi BETA build 1.0.7.712. The authorization service has a flow that allows getting access to the Web UI without knowing credentials. For…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2022-44795

Published Nov 7, 2022

An issue was discovered in Object First Ootbi BETA build 1.0.7.712. A flaw was found in the Web Service, which could lead to local information disclosure. The command that creates…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-44794

Published Nov 7, 2022

An issue was discovered in Object First Ootbi BETA build 1.0.7.712. Management protocol has a flow which allows a remote attacker to execute arbitrary Bash code with root privileg…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1