Sentinel
This hub aggregates every CVE we track for Sentinel, a product in the security products space. Use it to gauge the current risk picture and drill into individual advisories.
12
CVEs tracked
1
Critical
5
High
0
In CISA KEV
Severity distribution
HIGH5MEDIUM5LOW1CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
1
0
2024-082026-07
Latest CVEs
The 12 most recently published vulnerabilities affecting Sentinel.
- CVE-2026-0611Spacelabs Healthcare Sentinel 10.5.x < 11.6.0 Unauthenticated RCE via .NET Remoting9.8
- CVE-2021-44139Sentinel 1.8.2 is vulnerable to Server-side request forgery (SSRF).7.5
- CVE-2019-19879HashiCorp Sentinel up to 0.10.1 incorrectly parsed negation in certain policy expressions. Fixed in 0.10.2.7.5
- CVE-2018-7675Potential Information Disclosure in Sentinel2.8
- CVE-2017-5185A vulnerability was discovered in NetIQ Sentinel Server 8.0 before 8.0.1 that may allow remote denial of service.7.5
- CVE-2017-5184A vulnerability was discovered in NetIQ Sentinel Server 8.0 before 8.0.1 that may allow leakage of information (account enumeration).5.3
- CVE-2016-1605Directory traversal vulnerability in the ReportViewServlet servlet in the server in NetIQ Sentinel 7.4.x before 7.4.2 allows remote attackers to read arbitrary files via a PREVIEW value for the fil...6.5
- CVE-2014-3460Directory traversal vulnerability in the DumpToFile method in the NQMcsVarSet ActiveX control in Agent Manager in NetIQ Sentinel allows remote attackers to create arbitrary files, and consequently ...6.8
- CVE-2011-5225Cross-site scripting (XSS) vulnerability in wordpress_sentinel.php in the Sentinel plugin 1.0.0 for WordPress allows remote attackers to inject arbitrary web script or HTML via unknown vectors.4.3
- CVE-2011-5224SQL injection vulnerability in the Sentinel plugin 1.0.0 for WordPress allows remote attackers to execute arbitrary SQL commands via unspecified vectors.7.5
- CVE-2011-5226Cross-site request forgery (CSRF) vulnerability in wordpress_sentinel.php in the Sentinel plugin 1.0.0 for WordPress allows remote attackers to hijack the authentication of an administrator for req...6.8
- CVE-2011-1913SQL injection vulnerability in the login form in the web interface in Mercator SENTINEL 2.0 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.7.5
Product normalization is registry-driven with AI assist and human review. How it works