CVE-2014-9618: Netsweeper
Critical severity, CVSS 9.8. EPSS: 72.7% chance of exploitation in the next 30 days.
The Client Filter Admin portal in Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 allows remote attackers to bypass authentication and subsequently create arbitrary profiles via a showdeny action to the default URL.
Affected products
- Netsweeper Netsweeper: up to and including 3.1.9; version 4.0.0 only; version 4.0.1 only; version 4.0.2 only; version 4.0.3 only; version 4.0.4 only; …
Published 2017-09-19. Last modified 2026-06-17.