Home/Product/ipfire
Product

ipfire

32 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2019-25400
all versions
IPFire 2.21 Core Update 127 contains multiple reflected cross-site scripting vulnerabilities in the fwhosts.cgi script that allow
5.4MEDIUM
CVE-2019-25399
all versions
IPFire 2.21 Core Update 127 contains multiple stored cross-site scripting vulnerabilities in the extrahd.cgi script that allow att
6.4MEDIUM
CVE-2019-25398
all versions
IPFire 2.21 Core Update 127 contains multiple cross-site scripting vulnerabilities in the ovpnmain.cgi script that allow attackers
6.1MEDIUM
CVE-2019-25397
all versions
IPFire 2.21 Core Update 127 contains multiple reflected cross-site scripting vulnerabilities in the hosts.cgi script that allow at
6.1MEDIUM
CVE-2019-25396
all versions
IPFire 2.21 Core Update 127 contains a reflected cross-site scripting vulnerability in the updatexlrator.cgi script that allows at
6.1MEDIUM
CVE-2025-34317
<= 2.29
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authenti
5.4MEDIUM
CVE-2025-34316
< 2.29
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authenti
5.4MEDIUM
CVE-2025-34315
< 2.29
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authenti
5.4MEDIUM
CVE-2025-34314
< 2.29
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authenti
5.4MEDIUM
CVE-2025-34313
< 2.29
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authenti
5.4MEDIUM
CVE-2025-34312
< 2.29
IPFire versions prior to 2.29 (Core Update 198) contain a command injection vulnerability that allows an authenticated attacker t
8.8HIGH
CVE-2025-34311
< 2.29
IPFire versions prior to 2.29 (Core Update 198) contain a command injection vulnerability that allows an authenticated attacker t
8.8HIGH
CVE-2025-34310
< 2.29
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authenti
5.4MEDIUM
CVE-2025-34309
< 2.29
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authenti
5.4MEDIUM
CVE-2025-34308
< 2.29
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authenti
5.4MEDIUM
CVE-2025-34307
< 2.29
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authenti
5.4MEDIUM
CVE-2025-34306
< 2.29
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authentic
5.4MEDIUM
CVE-2025-34305
< 2.29
IPFire versions prior to 2.29 (Core Update 198) contain multiple stored cross-site scripting (XSS) vulnerabilities caused by a bug
5.4MEDIUM
CVE-2025-34304
< 2.29
IPFire versions prior to 2.29 (Core Update 198) contain a SQL injection vulnerability that allows an authenticated attacker to man
6.5MEDIUM
CVE-2025-34303
< 2.29
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authentic
5.4MEDIUM
CVE-2025-34302
< 2.29
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authentic
5.4MEDIUM
CVE-2025-34301
< 2.29
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authentic
5.4MEDIUM
CVE-2025-50975
all versions
IPFire 2.29 web-based firewall interface (firewall.cgi) fails to sanitize several rule parameters such as PROT, SRC_PORT, TGT_PORT
5.4MEDIUM
CVE-2025-50976
all versions
IPFire 2.29 DNS management interface (dns.cgi) fails to properly sanitize user-supplied input in the NAMESERVER, REMARK, and TLS_H
6.1MEDIUM
CVE-2025-50974
all versions
The Calamaris log exporter CGI (/cgi-bin/logs.cgi/calamaris.dat) in IPFire 2.29 does not properly sanitize user-supplied input bef
6.5MEDIUM
CVE-2022-36368
< 2.27
Multiple stored cross-site scripting vulnerabilities in the web user interface of IPFire versions prior to 2.27 allows a remote au
4.8MEDIUM
CVE-2020-19204
all versions
An authenticated Stored Cross-Site Scriptiong (XSS) vulnerability exists in Lightning Wire Labs IPFire 2.21 (x86_64) - Core Update
5.4MEDIUM
CVE-2020-21142
all versions
Cross Site Scripting (XSS) vulnerabilty in IPFire 2.23 via the IPfire web UI in the mail.cgi.
6.1MEDIUM
CVE-2020-19202
all versions
An authenticated Stored XSS (Cross-site Scripting) exists in the "captive.cgi" Captive Portal via the "Title of Login Page" text b
5.4MEDIUM
CVE-2021-33393
< 2.25
lfs/backup in IPFire 2.25-core155 does not ensure that /var/ipfire/backup/bin/backup.pl is owned by the root account. It might be
8.8HIGH
CVE-2018-16232
all versions
An authenticated command injection vulnerability exists in IPFire Firewall before 2.21 Core Update 124 in backup.cgi. This allows
8.8HIGH
CVE-2017-9757
<= 2.19
IPFire 2.19 has a Remote Command Injection vulnerability in ids.cgi via the OINKCODE parameter, which is mishandled by a shell. Th
8.8HIGH
threatengine.sh