← Vulnerability feed

Vulnerability record · CVE-2024-54188 · published 22 May 2025

CVE-2024-54188: Infoblox netmri information exposure vulnerability

Infoblox · Netmri

Infoblox NETMRI before 7.6.1 has a vulnerability allowing remote authenticated users to read arbitrary files with root access.

5.3 CVSS 3.1 Medium EPSS 9.0% · top 4.9% CWE-200 · Information exposure
5.3CVSS 3.1 base score
9.0%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
1References
17 Jun 2026Last modified by NVD

Description

Infoblox NETMRI before 7.6.1 has a vulnerability allowing remote authenticated users to read arbitrary files with root access.

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2024-54188 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2015-2033Infoblox netmri improper authentication vulnerabilityAnyterm Daemon in Infoblox Network Automation NetMRI before NETMRI-23483 allows remote attackers to execute arbitrary commands with root privileges v…EPSS 3.0%10.0CVE-2014-3418Infoblox netmri os command injection vulnerabilityconfig/userAdmin/login.tdf in Infoblox NetMRI before 6.8.5 allows remote attackers to execute arbitrary commands via shell metacharacters in the skip…EPSS 7.2%9.8CVE-2025-32814Infoblox netmri sql injection vulnerabilityAn issue was discovered in Infoblox NETMRI before 7.6.1. Unauthenticated SQL Injection can occur.EPSS 36%8.8CVE-2024-52874Infoblox netmri sql injection vulnerabilityIn Infoblox NETMRI before 7.6.1, authenticated users can perform SQL injection attacks.EPSS 10%7.2CVE-2025-32813Infoblox netmri command injection vulnerabilityAn issue was discovered in Infoblox NETMRI before 7.6.1. Remote Unauthenticated Command Injection can occur.EPSS 44%7.2CVE-2014-3419Infoblox netmri vulnerabilityInfoblox NetMRI before 6.8.5 has a default password of admin for the "root" MySQL database account, which makes it easier for local users to obtain a…EPSS 0.46%6.5CVE-2025-32815Infoblox netmri improper authentication vulnerabilityAn issue was discovered in Infoblox NETMRI before 7.6.1. Authentication Bypass via a Hardcoded credential can occur.EPSS 40%6.1CVE-2018-6643Infoblox netmri cross-site scripting vulnerabilityInfoblox NetMRI 7.1.1 has Reflected Cross-Site Scripting via the /api/docs/index.php query parameter.EPSS 0.81%

Source: NIST National Vulnerability Database (record CVE-2024-54188), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.