ixpdata records
13 published records for vendor ixpdata.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-732 Incorrect Permission Assignment for Critical Resource2
- CWE-269 Improper Privilege Management2
- CWE-312 Cleartext Storage of Sensitive Information1
- CWE-319 Cleartext Transmission of Sensitive Information1
- CWE-326 Inadequate Encryption Strength1
- CWE-338 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)1
The weakness classes this vendor ships most often: where to look.
CWEAll records
13 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2019-19897No exploit | In IXP EasyInstall 6.2.13723, there is Remote Code Execution via the Agent Service.ixpdata · easyinstall · CWE-78 | Critical9.8 | — | 5.6% | Jan 23, 2020 |
40Plan | CVE-2019-19896No exploit | In IXP EasyInstall 6.2.13723, there is Remote Code Execution via weak permissions on the Engine Service share.ixpdata · easyinstall · CWE-276 | Critical9.9 | — | 3.0% | Jan 23, 2020 |
39Monitor | CVE-2023-30131No exploit | An issue discovered in IXP EasyInstall 6.6.14884.0 allows attackers to run arbitrary commands, gain escalated privilege, and cause other unsixpdata · easyinstall · CWE-94 | Critical9.8 | — | 0.8% | Oct 19, 2023 |
35Monitor | CVE-2022-35120No exploit | IXPdata EasyInstall 6.6.14725 contains an access control issue.ixpdata · easyinstall · CWE-312 | High8.8 | — | 0.2% | Dec 1, 2022 |
32Monitor | CVE-2023-27791No exploit | An issue found in IXP Data Easy Install 6.6.148840 allows a remote attacker to escalate privileges via insecure PRNG.ixpdata · easyinstall · CWE-338 | High8.1 | — | 0.7% | Oct 19, 2023 |
31Monitor | CVE-2019-19893No exploit | In IXP EasyInstall 6.2.13723, there is Directory Traversal on TCP port 8000 via the Engine Service by an unauthenticated attacker, who can aixpdata · easyinstall · CWE-22 | High7.5 | — | 2.5% | Jan 23, 2020 |
31Monitor | CVE-2019-19895No exploit | In IXP EasyInstall 6.2.13723, there is Lateral Movement (using the Agent Service) against other users on a client system.ixpdata · easyinstall · CWE-732 | High7.8 | — | 0.4% | Jan 23, 2020 |
31Monitor | CVE-2023-27792No exploit | An issue found in IXP Data Easy Install v.6.6.14884.0 allows an attacker to escalate privileges via lack of permissions applied to sub direcixpdata · easyinstall · CWE-862 | High7.8 | — | 0.2% | Oct 19, 2023 |
31Monitor | CVE-2023-27793No exploit | An issue discovered in IXP Data Easy Install v.6.6.14884.0 allows local attackers to gain escalated privileges via weak encoding of sensitivixpdata · easyinstall · CWE-269 | High7.8 | — | 0.2% | Oct 19, 2023 |
31Monitor | CVE-2023-27795No exploit | An issue found in IXP Data Easy Install v.6.6.14884.0 allows a local attacker to gain privileges via a static XOR key.ixpdata · easyinstall · CWE-269 | High7.8 | — | 0.2% | Oct 19, 2023 |
31Monitor | CVE-2023-30132No exploit | An issue discovered in IXP Data EasyInstall 6.6.14907.0 allows attackers to gain escalated privileges via static Cryptographic Key.ixpdata · easyinstall · CWE-326 | High7.8 | — | 0.2% | Oct 19, 2023 |
30Monitor | CVE-2019-19898No exploit | In IXP EasyInstall 6.2.13723, there are cleartext credentials in network communication on TCP port 20050 when using the Administrator consolixpdata · easyinstall · CWE-319 | High7.5 | — | 0.7% | Jan 23, 2020 |
22Monitor | CVE-2019-19894No exploit | In IXP EasyInstall 6.2.13723, it is possible to temporarily disable UAC by using the Agent Service on a client system.ixpdata · easyinstall · CWE-732 | Medium5.5 | — | 0.3% | Jan 23, 2020 |
- CVE-2019-1989741Plan
In IXP EasyInstall 6.2.13723, there is Remote Code Execution via the Agent Service.
CriticalCVSS 9.8No exploitEPSS 6%ixpdata · easyinstallJan 23, 2020
- CVE-2019-1989640Plan
In IXP EasyInstall 6.2.13723, there is Remote Code Execution via weak permissions on the Engine Service share.
CriticalCVSS 9.9No exploitEPSS 3%ixpdata · easyinstallJan 23, 2020
- CVE-2023-3013139Monitor
An issue discovered in IXP EasyInstall 6.6.14884.0 allows attackers to run arbitrary commands, gain escalated privilege, and cause other uns
CriticalCVSS 9.8No exploitEPSS 1%ixpdata · easyinstallOct 19, 2023
- CVE-2022-3512035Monitor
IXPdata EasyInstall 6.6.14725 contains an access control issue.
HighCVSS 8.8No exploitEPSS 0%ixpdata · easyinstallDec 1, 2022
- CVE-2023-2779132Monitor
An issue found in IXP Data Easy Install 6.6.148840 allows a remote attacker to escalate privileges via insecure PRNG.
HighCVSS 8.1No exploitEPSS 1%ixpdata · easyinstallOct 19, 2023
- CVE-2019-1989331Monitor
In IXP EasyInstall 6.2.13723, there is Directory Traversal on TCP port 8000 via the Engine Service by an unauthenticated attacker, who can a
HighCVSS 7.5No exploitEPSS 3%ixpdata · easyinstallJan 23, 2020
- CVE-2019-1989531Monitor
In IXP EasyInstall 6.2.13723, there is Lateral Movement (using the Agent Service) against other users on a client system.
HighCVSS 7.8No exploitEPSS 0%ixpdata · easyinstallJan 23, 2020
- CVE-2023-2779231Monitor
An issue found in IXP Data Easy Install v.6.6.14884.0 allows an attacker to escalate privileges via lack of permissions applied to sub direc
HighCVSS 7.8No exploitEPSS 0%ixpdata · easyinstallOct 19, 2023
- CVE-2023-2779331Monitor
An issue discovered in IXP Data Easy Install v.6.6.14884.0 allows local attackers to gain escalated privileges via weak encoding of sensitiv
HighCVSS 7.8No exploitEPSS 0%ixpdata · easyinstallOct 19, 2023
- CVE-2023-2779531Monitor
An issue found in IXP Data Easy Install v.6.6.14884.0 allows a local attacker to gain privileges via a static XOR key.
HighCVSS 7.8No exploitEPSS 0%ixpdata · easyinstallOct 19, 2023
- CVE-2023-3013231Monitor
An issue discovered in IXP Data EasyInstall 6.6.14907.0 allows attackers to gain escalated privileges via static Cryptographic Key.
HighCVSS 7.8No exploitEPSS 0%ixpdata · easyinstallOct 19, 2023
- CVE-2019-1989830Monitor
In IXP EasyInstall 6.2.13723, there are cleartext credentials in network communication on TCP port 20050 when using the Administrator consol
HighCVSS 7.5No exploitEPSS 1%ixpdata · easyinstallJan 23, 2020
- CVE-2019-1989422Monitor
In IXP EasyInstall 6.2.13723, it is possible to temporarily disable UAC by using the Agent Service on a client system.
MediumCVSS 5.5No exploitEPSS 0%ixpdata · easyinstallJan 23, 2020