Skip to main content
0-Doubt
NewsInvestorsQuestionnairesDeveloperHelp
AnonymousSign in
0-Doubt — neutral IT/Security research
BrowseResellersCertified analystsRFI/RFP questionnairesHow trust worksHelp & FAQAPI
  1. Home/
  2. Infoblox/
  3. Infoblox Identity Mapping

Infoblox Identity Mapping

AI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Secure coding rating: 0/100How this score is computedA product with no known CVEs starts at a neutral score and climbs the longer it goes without one; a product with known CVEs is penalized by severity instead. This one has 25 known CVEs (vendor-level match — see the CVE list below) and is tracked as ~39 days old in our catalog (a stand-in for real release date, which we don't track). The platform admin controls the formula's weights.

Maps network users to IP/MAC addresses for visibility and security operations

by Infoblox · infoblox.com · source ↗

Known CVEs (25)About this listSourced from the public NVD database, matched by vendor name. Shown here at the vendor level — we don't track per-product/version data, so a listed CVE may affect a different product from this vendor, not necessarily this one. “New” means published within the last 30 days. “Actively exploited” means CISA's Known Exploited Vulnerabilities (KEV) catalog confirms real-world exploitation, not just a theoretical severity score.

RSS ⇢
  • CVE-2025-61880 ↗HIGH 8.82026

    In Infoblox NIOS through 9.0.7, insecure deserialization can result in remote code execution.

  • CVE-2025-61879 ↗HIGH 7.72026

    In Infoblox NIOS through 9.0.7, a High-Privileged User Can Trigger an Arbitrary File Write via the Account Creation Mechanism.

  • CVE-2024-52874 ↗HIGH 8.82025

    In Infoblox NETMRI before 7.6.1, authenticated users can perform SQL injection attacks.

  • CVE-2025-32815 ↗MEDIUM 6.52025

    An issue was discovered in Infoblox NETMRI before 7.6.1. Authentication Bypass via a Hardcoded credential can occur.

  • CVE-2025-32814 ↗CRITICAL 9.82025

    An issue was discovered in Infoblox NETMRI before 7.6.1. Unauthenticated SQL Injection can occur.

  • CVE-2025-32813 ↗HIGH 7.22025

    An issue was discovered in Infoblox NETMRI before 7.6.1. Remote Unauthenticated Command Injection can occur.

  • CVE-2024-54188 ↗MEDIUM 5.32025

    Infoblox NETMRI before 7.6.1 has a vulnerability allowing remote authenticated users to read arbitrary files with root access.

  • CVE-2024-37567 ↗CRITICAL 9.12025

    Infoblox NIOS through 8.6.4 has Improper Access Control for Grids.

  • CVE-2024-37566 ↗CRITICAL 9.82025

    Infoblox NIOS through 8.6.4 has Improper Authentication for Grids.

  • CVE-2024-36047 ↗CRITICAL 9.82025

    Infoblox NIOS through 8.6.4 and 9.x through 9.0.3 has Improper Input Validation.

  • CVE-2024-36046 ↗CRITICAL 9.82025

    Infoblox NIOS through 8.6.4 executes with more privileges than required.

  • CVE-2024-46505 ↗CRITICAL 9.12025

    Infoblox BloxOne v2.4 was discovered to contain a business logic flaw due to thick client vulnerabilities.

  • CVE-2022-28975 ↗MEDIUM 5.42024

    A stored cross-site scripting (XSS) vulnerability in Infoblox NIOS v8.5.2-409296 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the VLAN View Name field.

  • CVE-2023-37249 ↗HIGH 8.82023

    Infoblox NIOS through 8.5.1 has a faulty component that accepts malicious input without sanitization, resulting in shell access.

  • CVE-2022-32972 ↗HIGH 7.82023

    Infoblox BloxOne Endpoint for Windows through 2.2.7 allows DLL injection that can result in local privilege escalation.

  • CVE-2020-15303 ↗MEDIUM 6.52021

    Infoblox NIOS before 8.5.2 allows entity expansion during an XML upload operation, a related issue to CVE-2003-1564.

  • CVE-2018-10239 ↗MEDIUM 6.72019

    A privilege escalation vulnerability in the "support access" feature on Infoblox NIOS 6.8 through 8.4.1 could allow a locally authenticated administrator to temporarily gain additional privileges on a…

  • CVE-2018-6643 ↗MEDIUM 6.12018

    Infoblox NetMRI 7.1.1 has Reflected Cross-Site Scripting via the /api/docs/index.php query parameter.

  • CVE-2016-6484 ↗MEDIUM 6.12017

    CRLF injection vulnerability in Infoblox Network Automation NetMRI before 7.1.1 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the contentType…

  • CVE-2015-2033 ↗HIGH 10.02015

    Anyterm Daemon in Infoblox Network Automation NetMRI before NETMRI-23483 allows remote attackers to execute arbitrary commands with root privileges via a crafted terminal/anyterm-module request.

  • …and 5 more

Materials

0

No datasheets, whitepapers, case studies, videos, or demos linked yet.

Other Network Access Control products

see all →
  • Auconet BICS · Auconet
  • Cipherbit OpenNAC · OpenNAC Enterprise by Cipherbit
  • Cisco Duo Device Trust · Duo Security
  • Forescout Device Compliance · Forescout
  • Genian NAC · Genians
  • Genians Execution Layer · Genians
  • Goldilock TruAirgap™ · Goldilock
  • HENZ Authus 802.1X · HENZ ICT