Skip to content
Noroxi

kramerav records

8 published records for vendor kramerav.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

8 records
  • CVE-2021-35064
    60This week

    KramerAV VIAWare, all tested versions, allow privilege escalation through misconfiguration of sudo.

    CriticalCVSS 9.8Proof of conceptEPSS 71%

    kramerav · viawareJul 12, 2021

  • KRAMER VIAware through August 2021 allows remote attackers to execute arbitrary code because ajaxPages/writeBrowseFilePathAjax.php accepts a

    CriticalCVSS 9.8Proof of conceptEPSS 54%

    kramerav · viawareAug 31, 2021

  • Kramer VIAware 2.5.0719.1034 has Incorrect Access Control.

    CriticalCVSS 9.8Proof of conceptEPSS 23%

    kramerav · viawareOct 9, 2019

  • KramerAV VIA GO² < 4.0.1.1326 is vulnerable to unauthenticated file upload resulting in Remote Code Execution (RCE).

    CriticalCVSS 9.8No exploitEPSS 1%

    kramerav · via go2 firmwareMay 31, 2023

  • KramerAV VIA GO² < 4.0.1.1326 is vulnerable to SQL Injection.

    CriticalCVSS 9.8No exploitEPSS 1%

    kramerav · via go2 firmwareMay 31, 2023

  • KramerAV VIA Connect (2) and VIA Go (2) devices with a version prior to 4.0.1.1326 exhibit a vulnerability that enables remote manipulation

    CriticalCVSS 9.1No exploitEPSS 1%

    kramerav · via go2 firmwareAug 9, 2023

  • In instances where the screen is visible and remote mouse connection is enabled, KramerAV VIA Connect (2) and VIA Go (2) devices with a vers

    HighCVSS 7.8No exploitEPSS 0%

    kramerav · via go2 firmwareAug 9, 2023

  • KramerAV VIA GO² < 4.0.1.1326 is vulnerable to Unauthenticated arbitrary file read.

    HighCVSS 7.5No exploitEPSS 1%

    kramerav · via go2 firmwareMay 31, 2023