GOG kayıtları
gog üreticisine ait 17 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 1 · %5,9
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-732 Incorrect Permission Assignment for Critical Resource6
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-279 Incorrect Execution-Assigned Permissions1
- CWE-281 Improper Preservation of Permissions1
- CWE-288 Authentication Bypass Using an Alternate Path or Channel1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
17 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2020-7352Silahlaştırılmış | GOG Galaxy GalaxyClientService Privilege Escalationgog · galaxy · CWE-264 | Yüksek8,8 | — | %3,8 | 6 Ağu 2020 |
31İzleyin | CVE-2020-15528İstismar yok | An issue was discovered in GOG Galaxy Client 2.0.17.gog · galaxy · CWE-732 | Yüksek7,8 | — | %1,3 | 4 Tem 2020 |
31İzleyin | CVE-2020-15529İstismar yok | An issue was discovered in GOG Galaxy Client 2.0.17.gog · galaxy · CWE-667 | Yüksek7,8 | — | %1,0 | 4 Tem 2020 |
31İzleyin | CVE-2019-15511Kavram kanıtı | An exploitable local privilege escalation vulnerability exists in the GalaxyClientService installed by GOG Galaxy.gog · galaxy · CWE-306 | Yüksek7,8 | — | %0,7 | 21 Kas 2019 |
31İzleyin | CVE-2020-24574İstismar yok | The client (aka GalaxyClientService.exe) in GOG GALAXY through 2.0.41 (as of 12:58 AM Eastern, 9/26/21) allows local privilege escalation frgog · galaxy · CWE-798 | Yüksek7,8 | — | %0,6 | 21 Ağu 2020 |
31İzleyin | CVE-2018-4048İstismar yok | An exploitable local privilege elevation vulnerability exists in the file system permissions of the `Temp` directory in GOG Galaxy 1.2.48.36gog · galaxy · CWE-668 | Yüksek7,8 | — | %0,6 | 30 May 2019 |
31İzleyin | CVE-2018-3974İstismar yok | An exploitable local privilege elevation vulnerability exists in the file system permissions of GOG Galaxy's install directory.gog · galaxy · CWE-732 | Yüksek7,8 | — | %0,5 | 2 Nis 2019 |
31İzleyin | CVE-2022-31262Kavram kanıtı | An exploitable local privilege escalation vulnerability exists in GOG Galaxy 2.0.46.gog · galaxy · CWE-281 | Yüksek7,8 | — | %0,5 | 17 Ağu 2022 |
31İzleyin | CVE-2021-26807İstismar yok | GalaxyClient version 2.0.28.9 loads unsigned DLLs such as zlib1.dll, libgcc_s_dw2-1.dll and libwinpthread-1.dll from PATH, which allows an agog · galaxy · CWE-426 | Yüksek7,8 | — | %0,5 | 30 Nis 2021 |
31İzleyin | CVE-2018-4050İstismar yok | An exploitable local privilege escalation vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOSgog · galaxy · CWE-732 | Yüksek7,8 | — | %0,4 | 1 Nis 2019 |
31İzleyin | CVE-2020-11827İstismar yok | In GOG Galaxy 1.2.67, there is a service that is vulnerable to weak file/service permissions: GalaxyClientService.exe.gog · galaxy · CWE-732 | Yüksek7,8 | — | %0,3 | 14 Tem 2020 |
31İzleyin | CVE-2018-4049İstismar yok | An exploitable local privilege elevation vulnerability exists in the file system permissions of GOG Galaxy's “Games” directory, version 1.2.gog · galaxy · CWE-732 | Yüksek7,8 | — | %0,3 | 2 Nis 2019 |
26İzleyin | CVE-2023-50914İstismar yok | A Privilege Escalation issue in the inter-process communication procedure from GOG Galaxy (Beta) 2.0.67.2 through v2.0.71.2 allows authenticCWE-279 | Orta6,7 | — | %0,7 | 30 Nis 2024 |
26İzleyin | CVE-2023-50915İstismar yok | An issue exists in GalaxyClientService.exe in GOG Galaxy (Beta) 2.0.67.2 through 2.0.71.2 that could allow authenticated users to overwrite CWE-288 | Orta6,5 | — | %0,7 | 30 Nis 2024 |
22İzleyin | CVE-2018-4052İstismar yok | An exploitable local information leak vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS.gog · galaxy · CWE-200 | Orta5,5 | — | %0,4 | 2 Nis 2019 |
22İzleyin | CVE-2018-4053İstismar yok | An exploitable local denial-of-service vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS.gog · galaxy · CWE-20 | Orta5,5 | — | %0,3 | 2 Nis 2019 |
22İzleyin | CVE-2018-4051İstismar yok | An exploitable local privilege escalation vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOSgog · galaxy · CWE-732 | Orta5,5 | — | %0,3 | 2 Nis 2019 |
- CVE-2020-735236İzleyin
GOG Galaxy GalaxyClientService Privilege Escalation
YüksekCVSS 8,8SilahlaştırılmışEPSS %4gog · galaxy6 Ağu 2020
- CVE-2020-1552831İzleyin
An issue was discovered in GOG Galaxy Client 2.0.17.
YüksekCVSS 7,8İstismar yokEPSS %1gog · galaxy4 Tem 2020
- CVE-2020-1552931İzleyin
An issue was discovered in GOG Galaxy Client 2.0.17.
YüksekCVSS 7,8İstismar yokEPSS %1gog · galaxy4 Tem 2020
- CVE-2019-1551131İzleyin
An exploitable local privilege escalation vulnerability exists in the GalaxyClientService installed by GOG Galaxy.
YüksekCVSS 7,8Kavram kanıtıEPSS %1gog · galaxy21 Kas 2019
- CVE-2020-2457431İzleyin
The client (aka GalaxyClientService.exe) in GOG GALAXY through 2.0.41 (as of 12:58 AM Eastern, 9/26/21) allows local privilege escalation fr
YüksekCVSS 7,8İstismar yokEPSS %1gog · galaxy21 Ağu 2020
- CVE-2018-404831İzleyin
An exploitable local privilege elevation vulnerability exists in the file system permissions of the `Temp` directory in GOG Galaxy 1.2.48.36
YüksekCVSS 7,8İstismar yokEPSS %1gog · galaxy30 May 2019
- CVE-2018-397431İzleyin
An exploitable local privilege elevation vulnerability exists in the file system permissions of GOG Galaxy's install directory.
YüksekCVSS 7,8İstismar yokEPSS %1gog · galaxy2 Nis 2019
- CVE-2022-3126231İzleyin
An exploitable local privilege escalation vulnerability exists in GOG Galaxy 2.0.46.
YüksekCVSS 7,8Kavram kanıtıEPSS %1gog · galaxy17 Ağu 2022
- CVE-2021-2680731İzleyin
GalaxyClient version 2.0.28.9 loads unsigned DLLs such as zlib1.dll, libgcc_s_dw2-1.dll and libwinpthread-1.dll from PATH, which allows an a
YüksekCVSS 7,8İstismar yokEPSS %0gog · galaxy30 Nis 2021
- CVE-2018-405031İzleyin
An exploitable local privilege escalation vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS
YüksekCVSS 7,8İstismar yokEPSS %0gog · galaxy1 Nis 2019
- CVE-2020-1182731İzleyin
In GOG Galaxy 1.2.67, there is a service that is vulnerable to weak file/service permissions: GalaxyClientService.exe.
YüksekCVSS 7,8İstismar yokEPSS %0gog · galaxy14 Tem 2020
- CVE-2018-404931İzleyin
An exploitable local privilege elevation vulnerability exists in the file system permissions of GOG Galaxy's “Games” directory, version 1.2.
YüksekCVSS 7,8İstismar yokEPSS %0gog · galaxy2 Nis 2019
- CVE-2023-5091426İzleyin
A Privilege Escalation issue in the inter-process communication procedure from GOG Galaxy (Beta) 2.0.67.2 through v2.0.71.2 allows authentic
OrtaCVSS 6,7İstismar yokEPSS %130 Nis 2024
- CVE-2023-5091526İzleyin
An issue exists in GalaxyClientService.exe in GOG Galaxy (Beta) 2.0.67.2 through 2.0.71.2 that could allow authenticated users to overwrite
OrtaCVSS 6,5İstismar yokEPSS %130 Nis 2024
- CVE-2018-405222İzleyin
An exploitable local information leak vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS.
OrtaCVSS 5,5İstismar yokEPSS %0gog · galaxy2 Nis 2019
- CVE-2018-405322İzleyin
An exploitable local denial-of-service vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS.
OrtaCVSS 5,5İstismar yokEPSS %0gog · galaxy2 Nis 2019
- CVE-2018-405122İzleyin
An exploitable local privilege escalation vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS
OrtaCVSS 5,5İstismar yokEPSS %0gog · galaxy2 Nis 2019