Skip to content
Noroxi

MiniTool records

7 published records for vendor minitool.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
5
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 22
  2. 23

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

All records

7 records
  • MiniTool Power Data Recovery 11.6 contains an insecure installation process that allows attackers to achieve remote code execution through a

    HighCVSS 8.1No exploitEPSS 1%

    minitool · power data recoverySep 19, 2023

  • MiniTool Partition Wizard 12.8 contains an insecure installation mechanism that allows attackers to achieve remote code execution through a

    HighCVSS 8.1No exploitEPSS 1%

    minitool · partition wizardSep 19, 2023

  • MiniTool Partition Wizard 12.8 contains an insecure update mechanism that allows attackers to achieve remote code execution through a man in

    HighCVSS 8.1No exploitEPSS 1%

    minitool · partition wizardSep 19, 2023

  • MiniTool Shadow Maker version 4.1 contains an insecure installation process that allows attackers to achieve remote code execution through a

    HighCVSS 8.1No exploitEPSS 1%

    minitool · shadowmakerSep 19, 2023

  • MiniTool Movie Maker 7.0 contains an insecure installation process that allows attackers to achieve remote code execution through a man in t

    HighCVSS 8.1No exploitEPSS 1%

    minitool · movie makerSep 19, 2023

  • MiniTool Partition Wizard v12.0 contains an unquoted service path which allows attackers to escalate privileges to the system level.

    HighCVSS 7.8No exploitEPSS 0%

    minitool · partition wizardMay 20, 2022

  • MiniTool Power Data Recovery version 11.6 and before contains an insecure in-app payment system that allows attackers to steal highly sensit

    MediumCVSS 5.9No exploitEPSS 0%

    minitool · power data recoverySep 19, 2023