Skip to content
Noroxi

pexip records

55 published records for vendor pexip.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

55 records
  • Pexip Infinity before 14.2 allows remote attackers to cause a denial of service (service restart) or execute arbitrary code via vectors rela

    CriticalCVSS 9.8No exploitEPSS 4%

    pexip · pexip infinityMay 2, 2017

  • CVE-2015-4719
    39Monitor

    The client API authentication mechanism in Pexip Infinity before 10 allows remote attackers to gain privileges via a crafted request.

    CriticalCVSS 9.8No exploitEPSS 1%

    pexip · pexip infinitySep 23, 2020

  • Pexip Reverse Proxy and TURN Server before 6.1.0 has Incorrect UDP Access Control via TURN.

    CriticalCVSS 9.8No exploitEPSS 1%

    pexip · pexip infinitySep 25, 2020

  • Pexip Infinity Connect before 1.8.0 mishandles TLS certificate validation.

    CriticalCVSS 9.8No exploitEPSS 1%

    pexip · infinity connectFeb 18, 2022

  • Pexip Infinity Connect before 1.8.0 omits certain provisioning authenticity checks.

    CriticalCVSS 9.8No exploitEPSS 1%

    pexip · infinity connectFeb 18, 2022

  • Pexip Infinity 15.0 through 38.0 before 38.1 has Improper Access Control in the Secure Scheduler for Exchange service, when used with Office

    CriticalCVSS 9.1No exploitEPSS 0%

    pexip · pexip infinityDec 25, 2025

  • Pexip Infinity before 27.3 allows remote attackers to trigger a software abort, and possibly enumerate usernames, via One Touch Join.

    HighCVSS 8.2No exploitEPSS 1%

    pexip · pexip infinityJul 17, 2022

  • Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join.

    HighCVSS 8.2No exploitEPSS 1%

    pexip · pexip infinityJul 17, 2022

  • Pexip Infinity before 18 allows Remote Denial of Service (TLS handshakes in RTMP).

    HighCVSS 7.5No exploitEPSS 1%

    pexip · pexip infinitySep 25, 2020

  • Pexip Infinity before 18 allows remote Denial of Service (XML parsing).

    HighCVSS 7.5No exploitEPSS 1%

    pexip · pexip infinitySep 25, 2020

  • Pexip Infinity 22.x through 24.x before 24.2 has Improper Input Validation for call setup.

    HighCVSS 7.5No exploitEPSS 1%

    pexip · pexip infinityJul 7, 2021

  • Pexip Infinity 25.x before 25.4 has Improper Input Validation, and thus an unauthenticated remote attacker can cause a denial of service via

    HighCVSS 7.5No exploitEPSS 1%

    pexip · pexip infinityJul 7, 2021

  • Pexip Infinity before 27.0 has improper WebRTC input validation.

    HighCVSS 7.5No exploitEPSS 1%

    pexip · pexip infinityFeb 18, 2022

  • Pexip Infinity before 26 allows remote denial of service because of missing RTMP input validation.

    HighCVSS 7.5No exploitEPSS 1%

    pexip · infinityJan 15, 2022

  • Pexip Infinity before 26.2 allows temporary remote Denial of Service (abort) because of missing call-setup input validation.

    HighCVSS 7.5No exploitEPSS 1%

    pexip · infinityJan 15, 2022

  • Pexip Infinity before 26 allows temporary remote Denial of Service (abort) because of missing call-setup input validation.

    HighCVSS 7.5No exploitEPSS 1%

    pexip · infinityJan 15, 2022

  • Pexip Infinity before 26 allows remote denial of service because of missing H.264 input validation (issue 2 of 2).

    HighCVSS 7.5No exploitEPSS 1%

    pexip · infinityJan 15, 2022

  • Pexip Infinity before 26 allows remote denial of service because of missing H.264 input validation (issue 1 of 2).

    HighCVSS 7.5No exploitEPSS 1%

    pexip · infinityJan 15, 2022

  • Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol.

    HighCVSS 7.5No exploitEPSS 1%

    pexip · pexip infinityJul 17, 2022

  • Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join.

    HighCVSS 7.5No exploitEPSS 1%

    pexip · pexip infinityJul 17, 2022

  • Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via HTTP.

    HighCVSS 7.5No exploitEPSS 1%

    pexip · pexip infinityJul 17, 2022

  • Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via Epic Telehealth.

    HighCVSS 7.5No exploitEPSS 1%

    pexip · pexip infinityJul 17, 2022

  • Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol.

    HighCVSS 7.5No exploitEPSS 1%

    pexip · pexip infinityJul 17, 2022

  • Pexip Infinity 27.x before 27.3 has Improper Input Validation.

    HighCVSS 7.5No exploitEPSS 1%

    pexip · pexip infinityJul 17, 2022

  • Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via HTTP.

    HighCVSS 7.5No exploitEPSS 1%

    pexip · pexip infinityJul 17, 2022