CVE-2015-4046: Alienvault Open Source Security Information Management
High severity, CVSS 7.2. EPSS: 2.7% chance of exploitation in the next 30 days.
The asset discovery scanner in AlienVault OSSIM before 5.0.1 allows remote authenticated users to execute arbitrary commands via the assets array parameter to netscan/do_scan.php.
Affected products
- Alienvault Open Source Security Information Management: up to and including 5.0
Published 2017-05-23. Last modified 2026-06-17.