nzbget CVE Vulnerabilities & CVE List (2)

Products (CPE): — CVEs: 2

nzbget vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to nzbget, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 12 of 2 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2023-49102 NZBGet 21.1 allows authenticated remote code execution because the unarchive programs (7za and unrar) preserve executable file permissions. An attacker with the Control capability can execute a file by setting the value of SevenZipCommand or UnrarCmd. NOTE: This vulnerability only affects products that are no longer supported by the maintainer. [email protected] 8.8 1.50% 2023-11-22 2026-06-17
CVE-2008-2266 uulib/uunconc.c in UUDeview 0.5.20, as used in nzbget before 0.3.0 and possibly other products, allows local users to overwrite arbitrary files via a symlink attack on a temporary filename generated by the tempnam function. NOTE: this may be a CVE-2004-2265 regression. [email protected] 4.4 0.32% 2008-05-16 2026-06-16
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence