📦 Openitcockpit

by It Novum

🔍 What is Openitcockpit?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2020-10788

CRITICAL CVSS 9.1 Mar 25, 2020

openITCOCKPIT versions before 3.7.3 use a hardcoded API key (1fea123e07f730f76e661bced33a94152378611e) for WebSocket connections instead of generating random keys. This allows attackers to bypass auth...

CVE-2020-10789

CRITICAL CVSS 9.8 Mar 25, 2020

This vulnerability allows attackers to execute arbitrary operating system commands on openITCOCKPIT monitoring systems through the web-based terminal. Attackers can inject shell metacharacters into th...

CVE-2026-24892

HIGH CVSS 7.5 Feb 20, 2026

openITCOCKPIT Community Edition 5.3.1 and earlier contains an unsafe PHP deserialization vulnerability in changelog processing. While no current exploit path exists, the unrestricted unserialize() cal...

CVE-2026-24891

HIGH CVSS 7.5 Feb 20, 2026

CVE-2026-24891 is an unsafe deserialization vulnerability in openITCOCKPIT monitoring tool that allows PHP Object Injection when untrusted systems can submit Gearman job payloads. This affects version...

CVE-2023-36663

HIGH CVSS 8.8 Jun 25, 2023

CVE-2023-36663 is an SQL injection vulnerability in openITCOCKPIT's API interface that allows authenticated users to execute arbitrary SQL commands via the sort parameter. This affects openITCOCKPIT v...