Bluecatnetworks maintains the Device Registration Portal, a narrowly scoped product used in DNS and IPAM infrastructure management where vulnerabilities have centered on XML external entity reference handling. The observed weakness class reflects risks endemic to XML parsing in administrative interfaces; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Bluecatnetworks over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-4226HIGH Directory traversal vulnerability in the BlueCat Networks Proteus IPAM appliance 2.0.2.0 (Adonis DNS/DHCP appliance 5.0.2.8) allows remote authenticated administrators, with certai | Aug 8, 2007 | 7.1 | 32 | NO | YES |
CVE-2007-4390HIGH The Command Line Interface (CLI), aka Adonis Administration Console, on the BlueCat Networks Adonis DNS/DHCP appliance 5.0.2.8 allows local admin users to gain root privileges on t | Aug 17, 2007 | 7.2 | 29 | NO | YES |
CVE-2023-23595HIGH BlueCat Device Registration Portal 2.2 allows XXE attacks that exfiltrate single-line files. A single-line file might contain credentials, such as "machine example.com login daniel | Jan 15, 2023 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Bluecatnetworks.
Media articles that mention a CVE ID that affects a product developed by Bluecatnetworks — matched by CVE ID, not by vendor name.