softonic records
3 published records for vendor softonic.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-269 Improper Privilege Management1
- CWE-426 Untrusted Search Path1
The weakness classes this vendor ships most often: where to look.
CWEAll records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2017-11748No exploit | VIT Spider Player 2.5.3 has an untrusted search path, allowing DLL hijacking via a Trojan horse dwmapi.dll, olepro32.dll, dsound.dll, or AUDsoftonic · spider player · CWE-426 | High7.8 | — | 0.8% | Jul 30, 2017 |
31Monitor | CVE-2020-21046No exploit | A local privilege escalation vulnerability was identified within the "luminati_net_updater_win_eagleget_com" service in EagleGet Downloader softonic · eagleget · CWE-269 | High7.8 | — | 0.4% | Jun 24, 2022 |
18Monitor | CVE-2009-3857Proof of concept | Buffer overflow in Softonic International SciTE 1.72 allows user-assisted remote attackers to cause a denial of service (application crash) softonic · scite · CWE-119 | Medium4.3 | — | 2.0% | Nov 4, 2009 |
- CVE-2017-1174831Monitor
VIT Spider Player 2.5.3 has an untrusted search path, allowing DLL hijacking via a Trojan horse dwmapi.dll, olepro32.dll, dsound.dll, or AUD
HighCVSS 7.8No exploitEPSS 1%softonic · spider playerJul 30, 2017
- CVE-2020-2104631Monitor
A local privilege escalation vulnerability was identified within the "luminati_net_updater_win_eagleget_com" service in EagleGet Downloader
HighCVSS 7.8No exploitEPSS 0%softonic · eaglegetJun 24, 2022
- CVE-2009-385718Monitor
Buffer overflow in Softonic International SciTE 1.72 allows user-assisted remote attackers to cause a denial of service (application crash)
MediumCVSS 4.3Proof of conceptEPSS 2%softonic · sciteNov 4, 2009