Записи Overwolf
5 опубликованных записей вендора overwolf.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-427 Uncontrolled Search Path Element2
- CWE-59 Improper Link Resolution Before File Access ('Link Following')1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2021-33501Эксплойта нет | Overwolf Client 0.169.0.22 allows XSS, with resultant Remote Code Execution, via an overwolfstore:// URL.overwolf · overwolf · CWE-79 | Критическая9,6 | — | 7,9 % | 19 июл. 2021 г. |
36Наблюдать | CVE-2020-15932Эксплойта нет | Overwolf before 0.149.2.30 mishandles Symbolic Links during updates, causing elevation of privileges.overwolf · overwolf · CWE-59 | Высокая8,8 | — | 2,9 % | 24 июл. 2020 г. |
33Наблюдать | CVE-2020-25214Эксплойта нет | In the client in Overwolf 0.149.2.30, a channel can be accessed or influenced by an actor that is not an endpoint.overwolf · overwolf | Высокая8,1 | — | 3,1 % | 16 окт. 2020 г. |
31Наблюдать | CVE-2024-7834Эксплойта нет | Local privilege escalation in Overwolfoverwolf · overwolf · CWE-427 | Высокая7,8 | — | 0,3 % | 4 сент. 2024 г. |
31Наблюдать | CVE-2021-20726Эксплойта нет | Untrusted search path vulnerability in The Installer of Overwolf 2.168.0.n and earlier allows an attacker to gain privileges and execute arboverwolf · overwolf · CWE-427 | Высокая7,8 | — | 0,3 % | 24 мая 2021 г. |
- CVE-2021-3350140В плане
Overwolf Client 0.169.0.22 allows XSS, with resultant Remote Code Execution, via an overwolfstore:// URL.
КритическаяCVSS 9,6Эксплойта нетEPSS 8 %overwolf · overwolf19 июл. 2021 г.
- CVE-2020-1593236Наблюдать
Overwolf before 0.149.2.30 mishandles Symbolic Links during updates, causing elevation of privileges.
ВысокаяCVSS 8,8Эксплойта нетEPSS 3 %overwolf · overwolf24 июл. 2020 г.
- CVE-2020-2521433Наблюдать
In the client in Overwolf 0.149.2.30, a channel can be accessed or influenced by an actor that is not an endpoint.
ВысокаяCVSS 8,1Эксплойта нетEPSS 3 %overwolf · overwolf16 окт. 2020 г.
- CVE-2024-783431Наблюдать
Local privilege escalation in Overwolf
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %overwolf · overwolf4 сент. 2024 г.
- CVE-2021-2072631Наблюдать
Untrusted search path vulnerability in The Installer of Overwolf 2.168.0.n and earlier allows an attacker to gain privileges and execute arb
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %overwolf · overwolf24 мая 2021 г.