Isl Arp-Guard vulnerabilities
2 known vulnerabilities affecting isl/arp-guard.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2019-18663P2CRITICALCVSS 9.8v4.0.0-52019-11-04
CVE-2019-18663 [CRITICAL] CWE-89 CVE-2019-18663: A SQL injection vulnerability in a /login/forgot1 POST request in ARP-GUARD 4.0.0-5 allows unauthent
A SQL injection vulnerability in a /login/forgot1 POST request in ARP-GUARD 4.0.0-5 allows unauthenticated remote attackers to execute arbitrary SQL commands via the user_id parameter.
nvd
CVE-2023-39575P4MEDIUMCVSS 5.4fixed in 4.0.4-12023-09-20
CVE-2023-39575 [MEDIUM] CWE-79 CVE-2023-39575: A reflected cross-site scripting (XSS) vulnerability in the url_str URL parameter of ISL ARP Guard v
A reflected cross-site scripting (XSS) vulnerability in the url_str URL parameter of ISL ARP Guard v4.0.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
nvd