Gestioip
5 CVEs tracked since 2025. Since Jan 2025, none of them reached CISA KEV.
Gestioip CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2025-01 | 5 | 0 |
Products
The products that kept showing up in Gestioip's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 6 most recently published vulnerabilities affecting Gestioip.
- CVE-2013-10039GestioIP 3.0 ip_checkhost.cgi RCE—
- CVE-2024-50861The ip_mod_dns_key_form.cgi request in GestioIP v3.5.7 is vulnerable to Stored XSS. An attacker can inject malicious code into the "TSIG Key" field, which is saved in the database and triggers XSS ...6.1
- CVE-2024-50859The ip_import_acl_csv request in GestioIP v3.5.7 is vulnerable to Reflected XSS. When a user uploads an improperly formatted file, the content may be reflected in the HTML response, allowing the at...4.8
- CVE-2024-50858Multiple endpoints in GestioIP v3.5.7 are vulnerable to Cross-Site Request Forgery (CSRF). An attacker can execute actions via the admin's browser by hosting a malicious URL, leading to data modifi...8.8
- CVE-2024-50857The ip_do_job request in GestioIP v3.5.7 is vulnerable to Cross-Site Scripting (XSS). It allows data exfiltration and enables CSRF attacks. The vulnerability requires specific user permissions with...4.8
- CVE-2024-48760An issue in GestioIP v3.5.7 allows a remote attacker to execute arbitrary code via the file upload function. The attacker can upload a malicious perlcmd.cgi file that overwrites the original upload...9.8
The record
- Peak rank
- #165 in Jan 2025
- Busiest month shown
- Jan 2025, 5 CVEs
- Months with a KEV entry
- 0 since Jan 2025
- Monthly snapshots
- 1 since 2025