Barracudadrive provides cloud storage and file-sharing services, and its vulnerability profile centers on web-application input-handling weaknesses, specifically cross-site scripting flaws. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Barracudadrive over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-4335MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in BarracudaDrive 6.7.2 allow remote attackers to inject arbitrary web script or HTML via the (1) host or (2) password parameter | Jun 19, 2014 | 4.3 | 17 | NO | NO |
CVE-2014-2526MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in BarracudaDrive before 6.7 allow remote attackers to inject arbitrary web script or HTML via the (1) sForumName or (2) sDescri | Mar 25, 2014 | 6.1 | 17 | NO | NO |
CVE-2014-3808MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in BarracudaDrive before 6.7.2 allow remote attackers to inject arbitrary web script or HTML via the (1) role parameter to roles | May 21, 2014 | 4.3 | 14 | NO | NO |
CVE-2014-3807MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in BarracudaDrive 6.7.2 allow remote attackers to inject arbitrary web script or HTML via the (1) blog, (2) bloggeruser, or (3) | May 21, 2014 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Barracudadrive.
Media articles that mention a CVE ID that affects a product developed by Barracudadrive — matched by CVE ID, not by vendor name.