Записи ixpdata
13 опубликованных записей вендора ixpdata.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-732 Incorrect Permission Assignment for Critical Resource2
- CWE-269 Improper Privilege Management2
- CWE-312 Cleartext Storage of Sensitive Information1
- CWE-319 Cleartext Transmission of Sensitive Information1
- CWE-326 Inadequate Encryption Strength1
- CWE-338 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
13 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
41В плане | CVE-2019-19897Эксплойта нет | In IXP EasyInstall 6.2.13723, there is Remote Code Execution via the Agent Service.ixpdata · easyinstall · CWE-78 | Критическая9,8 | — | 5,6 % | 23 янв. 2020 г. |
40В плане | CVE-2019-19896Эксплойта нет | In IXP EasyInstall 6.2.13723, there is Remote Code Execution via weak permissions on the Engine Service share.ixpdata · easyinstall · CWE-276 | Критическая9,9 | — | 3,0 % | 23 янв. 2020 г. |
39Наблюдать | CVE-2023-30131Эксплойта нет | An issue discovered in IXP EasyInstall 6.6.14884.0 allows attackers to run arbitrary commands, gain escalated privilege, and cause other unsixpdata · easyinstall · CWE-94 | Критическая9,8 | — | 0,8 % | 19 окт. 2023 г. |
35Наблюдать | CVE-2022-35120Эксплойта нет | IXPdata EasyInstall 6.6.14725 contains an access control issue.ixpdata · easyinstall · CWE-312 | Высокая8,8 | — | 0,2 % | 1 дек. 2022 г. |
32Наблюдать | CVE-2023-27791Эксплойта нет | An issue found in IXP Data Easy Install 6.6.148840 allows a remote attacker to escalate privileges via insecure PRNG.ixpdata · easyinstall · CWE-338 | Высокая8,1 | — | 0,7 % | 19 окт. 2023 г. |
31Наблюдать | CVE-2019-19893Эксплойта нет | In IXP EasyInstall 6.2.13723, there is Directory Traversal on TCP port 8000 via the Engine Service by an unauthenticated attacker, who can aixpdata · easyinstall · CWE-22 | Высокая7,5 | — | 2,5 % | 23 янв. 2020 г. |
31Наблюдать | CVE-2019-19895Эксплойта нет | In IXP EasyInstall 6.2.13723, there is Lateral Movement (using the Agent Service) against other users on a client system.ixpdata · easyinstall · CWE-732 | Высокая7,8 | — | 0,4 % | 23 янв. 2020 г. |
31Наблюдать | CVE-2023-27792Эксплойта нет | An issue found in IXP Data Easy Install v.6.6.14884.0 allows an attacker to escalate privileges via lack of permissions applied to sub direcixpdata · easyinstall · CWE-862 | Высокая7,8 | — | 0,2 % | 19 окт. 2023 г. |
31Наблюдать | CVE-2023-27793Эксплойта нет | An issue discovered in IXP Data Easy Install v.6.6.14884.0 allows local attackers to gain escalated privileges via weak encoding of sensitivixpdata · easyinstall · CWE-269 | Высокая7,8 | — | 0,2 % | 19 окт. 2023 г. |
31Наблюдать | CVE-2023-27795Эксплойта нет | An issue found in IXP Data Easy Install v.6.6.14884.0 allows a local attacker to gain privileges via a static XOR key.ixpdata · easyinstall · CWE-269 | Высокая7,8 | — | 0,2 % | 19 окт. 2023 г. |
31Наблюдать | CVE-2023-30132Эксплойта нет | An issue discovered in IXP Data EasyInstall 6.6.14907.0 allows attackers to gain escalated privileges via static Cryptographic Key.ixpdata · easyinstall · CWE-326 | Высокая7,8 | — | 0,2 % | 19 окт. 2023 г. |
30Наблюдать | CVE-2019-19898Эксплойта нет | In IXP EasyInstall 6.2.13723, there are cleartext credentials in network communication on TCP port 20050 when using the Administrator consolixpdata · easyinstall · CWE-319 | Высокая7,5 | — | 0,7 % | 23 янв. 2020 г. |
22Наблюдать | CVE-2019-19894Эксплойта нет | In IXP EasyInstall 6.2.13723, it is possible to temporarily disable UAC by using the Agent Service on a client system.ixpdata · easyinstall · CWE-732 | Средняя5,5 | — | 0,3 % | 23 янв. 2020 г. |
- CVE-2019-1989741В плане
In IXP EasyInstall 6.2.13723, there is Remote Code Execution via the Agent Service.
КритическаяCVSS 9,8Эксплойта нетEPSS 6 %ixpdata · easyinstall23 янв. 2020 г.
- CVE-2019-1989640В плане
In IXP EasyInstall 6.2.13723, there is Remote Code Execution via weak permissions on the Engine Service share.
КритическаяCVSS 9,9Эксплойта нетEPSS 3 %ixpdata · easyinstall23 янв. 2020 г.
- CVE-2023-3013139Наблюдать
An issue discovered in IXP EasyInstall 6.6.14884.0 allows attackers to run arbitrary commands, gain escalated privilege, and cause other uns
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %ixpdata · easyinstall19 окт. 2023 г.
- CVE-2022-3512035Наблюдать
IXPdata EasyInstall 6.6.14725 contains an access control issue.
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %ixpdata · easyinstall1 дек. 2022 г.
- CVE-2023-2779132Наблюдать
An issue found in IXP Data Easy Install 6.6.148840 allows a remote attacker to escalate privileges via insecure PRNG.
ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %ixpdata · easyinstall19 окт. 2023 г.
- CVE-2019-1989331Наблюдать
In IXP EasyInstall 6.2.13723, there is Directory Traversal on TCP port 8000 via the Engine Service by an unauthenticated attacker, who can a
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %ixpdata · easyinstall23 янв. 2020 г.
- CVE-2019-1989531Наблюдать
In IXP EasyInstall 6.2.13723, there is Lateral Movement (using the Agent Service) against other users on a client system.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %ixpdata · easyinstall23 янв. 2020 г.
- CVE-2023-2779231Наблюдать
An issue found in IXP Data Easy Install v.6.6.14884.0 allows an attacker to escalate privileges via lack of permissions applied to sub direc
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %ixpdata · easyinstall19 окт. 2023 г.
- CVE-2023-2779331Наблюдать
An issue discovered in IXP Data Easy Install v.6.6.14884.0 allows local attackers to gain escalated privileges via weak encoding of sensitiv
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %ixpdata · easyinstall19 окт. 2023 г.
- CVE-2023-2779531Наблюдать
An issue found in IXP Data Easy Install v.6.6.14884.0 allows a local attacker to gain privileges via a static XOR key.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %ixpdata · easyinstall19 окт. 2023 г.
- CVE-2023-3013231Наблюдать
An issue discovered in IXP Data EasyInstall 6.6.14907.0 allows attackers to gain escalated privileges via static Cryptographic Key.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %ixpdata · easyinstall19 окт. 2023 г.
- CVE-2019-1989830Наблюдать
In IXP EasyInstall 6.2.13723, there are cleartext credentials in network communication on TCP port 20050 when using the Administrator consol
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %ixpdata · easyinstall23 янв. 2020 г.
- CVE-2019-1989422Наблюдать
In IXP EasyInstall 6.2.13723, it is possible to temporarily disable UAC by using the Agent Service on a client system.
СредняяCVSS 5,5Эксплойта нетEPSS 0 %ixpdata · easyinstall23 янв. 2020 г.