VendorsLoadbalancerenterprise_va_maxany version
Vulnerabilities

Loadbalancer Enterprise VA any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2018-18864
Loadbalancer.org Enterprise VA MAX before 8.3.3 has XSS because Apache HTTP Server logs are displayed.
Published 2018-11-20 · Modified
9.6EPSS 0.026
CVE-2020-13378
Loadbalancer.org Enterprise VA MAX through 8.3.8 has an OS Command Injection vulnerability that allows a remote authenticated attacker to execute arbitrary code.
Published 2023-05-12 · Modified
8.8EPSS 0.033
CVE-2020-13377
The web-services interface of Loadbalancer.org Enterprise VA MAX through 8.3.8 could allow an authenticated, remote, low-privileged attacker to conduct directory traversal attacks and obtain read and write access to sensitive files.
Published 2023-05-12 · Modified
8.1EPSS 0.015