ateme CVE Vulnerabilities & CVE List (4)

Products (CPE): — CVEs: 4

ateme vulnerability overview

Aggregates CVE and security vulnerability intelligence across all ateme-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Disclosed issues often relate to vendor risk ssrf and vendor risk denial of service; exposure may include vendor impact application crash in vendor surface production workloads and vendor surface software deployment contexts.

Vulnerability distribution trend (last 24 months)

Showing 14 of 4 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2024-58338 Anevia Flamingo XL 3.2.9 contains a restricted shell vulnerability that allows remote attackers to escape the sandboxed environment through the traceroute command. Attackers can exploit the traceroute command to inject shell commands and gain full root access to the device by bypassing the restricted login environment. [email protected] 8.6 0.06% 2025-12-30 2026-01-16
CVE-2023-53983 Anevia Flamingo XL/XS 3.6.20 contains a critical vulnerability with weak default administrative credentials that can be easily guessed. Attackers can leverage these hard-coded credentials to gain full remote system control without complex authentication mechanisms. [email protected] 9.3 0.53% 2025-12-30 2026-01-16
CVE-2023-53893 Ateme TITAN File 3.9.12.4 contains an authenticated server-side request forgery vulnerability in the job callback URL parameter that allows attackers to bypass network restrictions. Attackers can exploit the unvalidated parameter to initiate file, service, and network enumeration by forcing the application to make HTTP, DNS, or file requests to arbitrary destinations. [email protected] 5.3 0.04% 2025-12-15 2025-12-18
CVE-2023-36252 An issue in Ateme Flamingo XL v.3.6.20 and XS v.3.6.5 allows a remote authenticated attacker to execute arbitrary code and cause a denial of service via a the session expiration function. [email protected] 8.8 1.64% 2023-06-26 2024-12-03
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence