Filtered by vendor Ixsystems Subscriptions
Filtered by product Freenas Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2010-20059 1 Ixsystems 1 Freenas 2025-08-21 N/A
FreeNAS 0.7.2 prior to revision 5543 includes an unauthenticated command‐execution backdoor in its web interface. The exec_raw.php script exposes a cmd parameter that is passed directly to the underlying shell without sanitation.
CVE-2020-11650 1 Ixsystems 4 Freenas, Freenas Firmware, Truenas and 1 more 2024-11-21 7.5 High
An issue was discovered in iXsystems FreeNAS (and TrueNAS) 11.2 before 11.2-u8 and 11.3 before 11.3-U1. It allows a denial of service. The login authentication component has no limits on the length of an authentication message or the rate at which such messages are sent.