Skip to content
Noroxi

Overwolf records

5 published records for vendor overwolf.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

5 records
  • Overwolf Client 0.169.0.22 allows XSS, with resultant Remote Code Execution, via an overwolfstore:// URL.

    CriticalCVSS 9.6No exploitEPSS 8%

    overwolf · overwolfJul 19, 2021

  • Overwolf before 0.149.2.30 mishandles Symbolic Links during updates, causing elevation of privileges.

    HighCVSS 8.8No exploitEPSS 3%

    overwolf · overwolfJul 24, 2020

  • In the client in Overwolf 0.149.2.30, a channel can be accessed or influenced by an actor that is not an endpoint.

    HighCVSS 8.1No exploitEPSS 3%

    overwolf · overwolfOct 16, 2020

  • CVE-2024-7834
    31Monitor

    Local privilege escalation in Overwolf

    HighCVSS 7.8No exploitEPSS 0%

    overwolf · overwolfSep 4, 2024

  • Untrusted search path vulnerability in The Installer of Overwolf 2.168.0.n and earlier allows an attacker to gain privileges and execute arb

    HighCVSS 7.8No exploitEPSS 0%

    overwolf · overwolfMay 24, 2021