MiniTool records
7 published records for vendor minitool.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 5
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
32Monitor | CVE-2023-38356No exploit | MiniTool Power Data Recovery 11.6 contains an insecure installation process that allows attackers to achieve remote code execution through aminitool · power data recovery · CWE-295 | High8.1 | — | 0.8% | Sep 19, 2023 |
32Monitor | CVE-2023-38351No exploit | MiniTool Partition Wizard 12.8 contains an insecure installation mechanism that allows attackers to achieve remote code execution through a minitool · partition wizard · CWE-295 | High8.1 | — | 0.8% | Sep 19, 2023 |
32Monitor | CVE-2023-38352No exploit | MiniTool Partition Wizard 12.8 contains an insecure update mechanism that allows attackers to achieve remote code execution through a man inminitool · partition wizard · CWE-295 | High8.1 | — | 0.8% | Sep 19, 2023 |
32Monitor | CVE-2023-38354No exploit | MiniTool Shadow Maker version 4.1 contains an insecure installation process that allows attackers to achieve remote code execution through aminitool · shadowmaker · CWE-295 | High8.1 | — | 0.8% | Sep 19, 2023 |
32Monitor | CVE-2023-38355No exploit | MiniTool Movie Maker 7.0 contains an insecure installation process that allows attackers to achieve remote code execution through a man in tminitool · movie maker · CWE-295 | High8.1 | — | 0.8% | Sep 19, 2023 |
31Monitor | CVE-2022-29320No exploit | MiniTool Partition Wizard v12.0 contains an unquoted service path which allows attackers to escalate privileges to the system level.minitool · partition wizard · CWE-428 | High7.8 | — | 0.4% | May 20, 2022 |
23Monitor | CVE-2023-38353No exploit | MiniTool Power Data Recovery version 11.6 and before contains an insecure in-app payment system that allows attackers to steal highly sensitminitool · power data recovery · CWE-295 | Medium5.9 | — | 0.4% | Sep 19, 2023 |
- CVE-2023-3835632Monitor
MiniTool Power Data Recovery 11.6 contains an insecure installation process that allows attackers to achieve remote code execution through a
HighCVSS 8.1No exploitEPSS 1%minitool · power data recoverySep 19, 2023
- CVE-2023-3835132Monitor
MiniTool Partition Wizard 12.8 contains an insecure installation mechanism that allows attackers to achieve remote code execution through a
HighCVSS 8.1No exploitEPSS 1%minitool · partition wizardSep 19, 2023
- CVE-2023-3835232Monitor
MiniTool Partition Wizard 12.8 contains an insecure update mechanism that allows attackers to achieve remote code execution through a man in
HighCVSS 8.1No exploitEPSS 1%minitool · partition wizardSep 19, 2023
- CVE-2023-3835432Monitor
MiniTool Shadow Maker version 4.1 contains an insecure installation process that allows attackers to achieve remote code execution through a
HighCVSS 8.1No exploitEPSS 1%minitool · shadowmakerSep 19, 2023
- CVE-2023-3835532Monitor
MiniTool Movie Maker 7.0 contains an insecure installation process that allows attackers to achieve remote code execution through a man in t
HighCVSS 8.1No exploitEPSS 1%minitool · movie makerSep 19, 2023
- CVE-2022-2932031Monitor
MiniTool Partition Wizard v12.0 contains an unquoted service path which allows attackers to escalate privileges to the system level.
HighCVSS 7.8No exploitEPSS 0%minitool · partition wizardMay 20, 2022
- CVE-2023-3835323Monitor
MiniTool Power Data Recovery version 11.6 and before contains an insecure in-app payment system that allows attackers to steal highly sensit
MediumCVSS 5.9No exploitEPSS 0%minitool · power data recoverySep 19, 2023