Zevenet develops the Zen Load Balancer, a focused networking appliance for request distribution and load balancing that sits in the data-path of production services. The durable signal in its vulnerability profile centers on command-injection and path-traversal weaknesses, reflecting the parsing and shell-interaction risks inherent to load-balancing control interfaces. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Zevenet over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-11491MEDIUM Monitoring::Logs in Zen Load Balancer 3.10.1 allows remote authenticated admins to conduct absolute path traversal attacks, as demonstrated by a filelog=/etc/shadow request to inde | Apr 2, 2020 | 4.9 | 25 | NO | YES |
CVE-2020-11490HIGH Manage::Certificates in Zen Load Balancer 3.10.1 allows remote authenticated admins to execute arbitrary OS commands via shell metacharacters in the index.cgi cert_issuer, cert_div | Apr 2, 2020 | 7.2 | 23 | NO | NO |
CVE-2019-7301HIGH Zen Load Balancer 3.10.1 allows remote authenticated admin users to execute arbitrary commands as root via shell metacharacters in the index.cgi?action=View_Cert certname parameter | Feb 1, 2019 | 7.2 | 20 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Zevenet.
Media articles that mention a CVE ID that affects a product developed by Zevenet — matched by CVE ID, not by vendor name.