Записи GOG
17 опубликованных записей вендора gog.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 1 · 5,9 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-732 Incorrect Permission Assignment for Critical Resource6
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-279 Incorrect Execution-Assigned Permissions1
- CWE-281 Improper Preservation of Permissions1
- CWE-288 Authentication Bypass Using an Alternate Path or Channel1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
17 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
36Наблюдать | CVE-2020-7352Готовый эксплойт | GOG Galaxy GalaxyClientService Privilege Escalationgog · galaxy · CWE-264 | Высокая8,8 | — | 3,8 % | 6 авг. 2020 г. |
31Наблюдать | CVE-2020-15528Эксплойта нет | An issue was discovered in GOG Galaxy Client 2.0.17.gog · galaxy · CWE-732 | Высокая7,8 | — | 1,3 % | 4 июл. 2020 г. |
31Наблюдать | CVE-2020-15529Эксплойта нет | An issue was discovered in GOG Galaxy Client 2.0.17.gog · galaxy · CWE-667 | Высокая7,8 | — | 1,0 % | 4 июл. 2020 г. |
31Наблюдать | CVE-2019-15511Proof of concept | An exploitable local privilege escalation vulnerability exists in the GalaxyClientService installed by GOG Galaxy.gog · galaxy · CWE-306 | Высокая7,8 | — | 0,7 % | 21 нояб. 2019 г. |
31Наблюдать | CVE-2020-24574Эксплойта нет | The client (aka GalaxyClientService.exe) in GOG GALAXY through 2.0.41 (as of 12:58 AM Eastern, 9/26/21) allows local privilege escalation frgog · galaxy · CWE-798 | Высокая7,8 | — | 0,6 % | 21 авг. 2020 г. |
31Наблюдать | CVE-2018-4048Эксплойта нет | An exploitable local privilege elevation vulnerability exists in the file system permissions of the `Temp` directory in GOG Galaxy 1.2.48.36gog · galaxy · CWE-668 | Высокая7,8 | — | 0,6 % | 30 мая 2019 г. |
31Наблюдать | CVE-2018-3974Эксплойта нет | An exploitable local privilege elevation vulnerability exists in the file system permissions of GOG Galaxy's install directory.gog · galaxy · CWE-732 | Высокая7,8 | — | 0,5 % | 2 апр. 2019 г. |
31Наблюдать | CVE-2022-31262Proof of concept | An exploitable local privilege escalation vulnerability exists in GOG Galaxy 2.0.46.gog · galaxy · CWE-281 | Высокая7,8 | — | 0,5 % | 17 авг. 2022 г. |
31Наблюдать | CVE-2021-26807Эксплойта нет | GalaxyClient version 2.0.28.9 loads unsigned DLLs such as zlib1.dll, libgcc_s_dw2-1.dll and libwinpthread-1.dll from PATH, which allows an agog · galaxy · CWE-426 | Высокая7,8 | — | 0,5 % | 30 апр. 2021 г. |
31Наблюдать | CVE-2018-4050Эксплойта нет | An exploitable local privilege escalation vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOSgog · galaxy · CWE-732 | Высокая7,8 | — | 0,4 % | 1 апр. 2019 г. |
31Наблюдать | CVE-2020-11827Эксплойта нет | In GOG Galaxy 1.2.67, there is a service that is vulnerable to weak file/service permissions: GalaxyClientService.exe.gog · galaxy · CWE-732 | Высокая7,8 | — | 0,3 % | 14 июл. 2020 г. |
31Наблюдать | CVE-2018-4049Эксплойта нет | An exploitable local privilege elevation vulnerability exists in the file system permissions of GOG Galaxy's “Games” directory, version 1.2.gog · galaxy · CWE-732 | Высокая7,8 | — | 0,3 % | 2 апр. 2019 г. |
26Наблюдать | CVE-2023-50914Эксплойта нет | A Privilege Escalation issue in the inter-process communication procedure from GOG Galaxy (Beta) 2.0.67.2 through v2.0.71.2 allows authenticCWE-279 | Средняя6,7 | — | 0,7 % | 30 апр. 2024 г. |
26Наблюдать | CVE-2023-50915Эксплойта нет | An issue exists in GalaxyClientService.exe in GOG Galaxy (Beta) 2.0.67.2 through 2.0.71.2 that could allow authenticated users to overwrite CWE-288 | Средняя6,5 | — | 0,7 % | 30 апр. 2024 г. |
22Наблюдать | CVE-2018-4052Эксплойта нет | An exploitable local information leak vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS.gog · galaxy · CWE-200 | Средняя5,5 | — | 0,4 % | 2 апр. 2019 г. |
22Наблюдать | CVE-2018-4053Эксплойта нет | An exploitable local denial-of-service vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS.gog · galaxy · CWE-20 | Средняя5,5 | — | 0,3 % | 2 апр. 2019 г. |
22Наблюдать | CVE-2018-4051Эксплойта нет | An exploitable local privilege escalation vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOSgog · galaxy · CWE-732 | Средняя5,5 | — | 0,3 % | 2 апр. 2019 г. |
- CVE-2020-735236Наблюдать
GOG Galaxy GalaxyClientService Privilege Escalation
ВысокаяCVSS 8,8Готовый эксплойтEPSS 4 %gog · galaxy6 авг. 2020 г.
- CVE-2020-1552831Наблюдать
An issue was discovered in GOG Galaxy Client 2.0.17.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %gog · galaxy4 июл. 2020 г.
- CVE-2020-1552931Наблюдать
An issue was discovered in GOG Galaxy Client 2.0.17.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %gog · galaxy4 июл. 2020 г.
- CVE-2019-1551131Наблюдать
An exploitable local privilege escalation vulnerability exists in the GalaxyClientService installed by GOG Galaxy.
ВысокаяCVSS 7,8Proof of conceptEPSS 1 %gog · galaxy21 нояб. 2019 г.
- CVE-2020-2457431Наблюдать
The client (aka GalaxyClientService.exe) in GOG GALAXY through 2.0.41 (as of 12:58 AM Eastern, 9/26/21) allows local privilege escalation fr
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %gog · galaxy21 авг. 2020 г.
- CVE-2018-404831Наблюдать
An exploitable local privilege elevation vulnerability exists in the file system permissions of the `Temp` directory in GOG Galaxy 1.2.48.36
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %gog · galaxy30 мая 2019 г.
- CVE-2018-397431Наблюдать
An exploitable local privilege elevation vulnerability exists in the file system permissions of GOG Galaxy's install directory.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %gog · galaxy2 апр. 2019 г.
- CVE-2022-3126231Наблюдать
An exploitable local privilege escalation vulnerability exists in GOG Galaxy 2.0.46.
ВысокаяCVSS 7,8Proof of conceptEPSS 1 %gog · galaxy17 авг. 2022 г.
- CVE-2021-2680731Наблюдать
GalaxyClient version 2.0.28.9 loads unsigned DLLs such as zlib1.dll, libgcc_s_dw2-1.dll and libwinpthread-1.dll from PATH, which allows an a
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %gog · galaxy30 апр. 2021 г.
- CVE-2018-405031Наблюдать
An exploitable local privilege escalation vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %gog · galaxy1 апр. 2019 г.
- CVE-2020-1182731Наблюдать
In GOG Galaxy 1.2.67, there is a service that is vulnerable to weak file/service permissions: GalaxyClientService.exe.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %gog · galaxy14 июл. 2020 г.
- CVE-2018-404931Наблюдать
An exploitable local privilege elevation vulnerability exists in the file system permissions of GOG Galaxy's “Games” directory, version 1.2.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %gog · galaxy2 апр. 2019 г.
- CVE-2023-5091426Наблюдать
A Privilege Escalation issue in the inter-process communication procedure from GOG Galaxy (Beta) 2.0.67.2 through v2.0.71.2 allows authentic
СредняяCVSS 6,7Эксплойта нетEPSS 1 %30 апр. 2024 г.
- CVE-2023-5091526Наблюдать
An issue exists in GalaxyClientService.exe in GOG Galaxy (Beta) 2.0.67.2 through 2.0.71.2 that could allow authenticated users to overwrite
СредняяCVSS 6,5Эксплойта нетEPSS 1 %30 апр. 2024 г.
- CVE-2018-405222Наблюдать
An exploitable local information leak vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS.
СредняяCVSS 5,5Эксплойта нетEPSS 0 %gog · galaxy2 апр. 2019 г.
- CVE-2018-405322Наблюдать
An exploitable local denial-of-service vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS.
СредняяCVSS 5,5Эксплойта нетEPSS 0 %gog · galaxy2 апр. 2019 г.
- CVE-2018-405122Наблюдать
An exploitable local privilege escalation vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS
СредняяCVSS 5,5Эксплойта нетEPSS 0 %gog · galaxy2 апр. 2019 г.