Isl's vulnerability footprint is confined to a focused security-focused product line, primarily its ARP-Guard offering, which addresses ARP spoofing and network-layer threats in enterprise environments. The observed weakness classes—cross-site scripting and SQL injection—reflect the web interface and data-handling components typical of network security appliances; current severity, exploitation, and exposure metrics are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Isl over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-18663CRITICAL A SQL injection vulnerability in a /login/forgot1 POST request in ARP-GUARD 4.0.0-5 allows unauthenticated remote attackers to execute arbitrary SQL commands via the user_id parame | Nov 4, 2019 | 9.8 | 28 | NO | NO |
CVE-2023-39575MEDIUM A reflected cross-site scripting (XSS) vulnerability in the url_str URL parameter of ISL ARP Guard v4.0.2 allows attackers to execute arbitrary web scripts or HTML via a crafted pa | Sep 20, 2023 | 5.4 | 16 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Isl.
Media articles that mention a CVE ID that affects a product developed by Isl — matched by CVE ID, not by vendor name.