Записи Pexip
55 опубликованных записей вендора pexip.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-20 Improper Input Validation18
- CWE-617 Reachable Assertion6
- CWE-400 Uncontrolled Resource Consumption3
- CWE-770 Allocation of Resources Without Limits or Throttling2
- CWE-863 Incorrect Authorization2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
55 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2017-6551Эксплойта нет | Pexip Infinity before 14.2 allows remote attackers to cause a denial of service (service restart) or execute arbitrary code via vectors relapexip · pexip infinity · CWE-20 | Критическая9,8 | — | 3,5 % | 2 мая 2017 г. |
39Наблюдать | CVE-2015-4719Эксплойта нет | The client API authentication mechanism in Pexip Infinity before 10 allows remote attackers to gain privileges via a crafted request.pexip · pexip infinity · CWE-269 | Критическая9,8 | — | 1,5 % | 23 сент. 2020 г. |
39Наблюдать | CVE-2020-11805Эксплойта нет | Pexip Reverse Proxy and TURN Server before 6.1.0 has Incorrect UDP Access Control via TURN.pexip · pexip infinity · CWE-20 | Критическая9,8 | — | 1,4 % | 25 сент. 2020 г. |
39Наблюдать | CVE-2021-29656Эксплойта нет | Pexip Infinity Connect before 1.8.0 mishandles TLS certificate validation.pexip · infinity connect · CWE-295 | Критическая9,8 | — | 0,7 % | 18 февр. 2022 г. |
39Наблюдать | CVE-2021-29655Эксплойта нет | Pexip Infinity Connect before 1.8.0 omits certain provisioning authenticity checks.pexip · infinity connect · CWE-345 | Критическая9,8 | — | 0,5 % | 18 февр. 2022 г. |
36Наблюдать | CVE-2025-59683Эксплойта нет | Pexip Infinity 15.0 through 38.0 before 38.1 has Improper Access Control in the Secure Scheduler for Exchange service, when used with Officepexip · pexip infinity · CWE-863 | Критическая9,1 | — | 0,3 % | 25 дек. 2025 г. |
32Наблюдать | CVE-2022-26656Эксплойта нет | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort, and possibly enumerate usernames, via One Touch Join.pexip · pexip infinity | Высокая8,2 | — | 1,1 % | 17 июл. 2022 г. |
32Наблюдать | CVE-2022-27933Эксплойта нет | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join.pexip · pexip infinity | Высокая8,2 | — | 1,1 % | 17 июл. 2022 г. |
30Наблюдать | CVE-2018-10432Эксплойта нет | Pexip Infinity before 18 allows Remote Denial of Service (TLS handshakes in RTMP).pexip · pexip infinity · CWE-400 | Высокая7,5 | — | 1,4 % | 25 сент. 2020 г. |
30Наблюдать | CVE-2018-10585Эксплойта нет | Pexip Infinity before 18 allows remote Denial of Service (XML parsing).pexip · pexip infinity · CWE-400 | Высокая7,5 | — | 1,4 % | 25 сент. 2020 г. |
30Наблюдать | CVE-2020-25868Эксплойта нет | Pexip Infinity 22.x through 24.x before 24.2 has Improper Input Validation for call setup.pexip · pexip infinity · CWE-20 | Высокая7,5 | — | 1,3 % | 7 июл. 2021 г. |
30Наблюдать | CVE-2021-31925Эксплойта нет | Pexip Infinity 25.x before 25.4 has Improper Input Validation, and thus an unauthenticated remote attacker can cause a denial of service viapexip · pexip infinity · CWE-20 | Высокая7,5 | — | 1,3 % | 7 июл. 2021 г. |
30Наблюдать | CVE-2022-23228Эксплойта нет | Pexip Infinity before 27.0 has improper WebRTC input validation.pexip · pexip infinity · CWE-770 | Высокая7,5 | — | 1,3 % | 18 февр. 2022 г. |
30Наблюдать | CVE-2021-32545Эксплойта нет | Pexip Infinity before 26 allows remote denial of service because of missing RTMP input validation.pexip · infinity · CWE-20 | Высокая7,5 | — | 1,3 % | 15 янв. 2022 г. |
30Наблюдать | CVE-2021-42555Эксплойта нет | Pexip Infinity before 26.2 allows temporary remote Denial of Service (abort) because of missing call-setup input validation.pexip · infinity · CWE-20 | Высокая7,5 | — | 1,2 % | 15 янв. 2022 г. |
30Наблюдать | CVE-2021-35969Эксплойта нет | Pexip Infinity before 26 allows temporary remote Denial of Service (abort) because of missing call-setup input validation.pexip · infinity · CWE-20 | Высокая7,5 | — | 1,2 % | 15 янв. 2022 г. |
30Наблюдать | CVE-2021-33499Эксплойта нет | Pexip Infinity before 26 allows remote denial of service because of missing H.264 input validation (issue 2 of 2).pexip · infinity · CWE-20 | Высокая7,5 | — | 1,2 % | 15 янв. 2022 г. |
30Наблюдать | CVE-2021-33498Эксплойта нет | Pexip Infinity before 26 allows remote denial of service because of missing H.264 input validation (issue 1 of 2).pexip · infinity · CWE-20 | Высокая7,5 | — | 1,2 % | 15 янв. 2022 г. |
30Наблюдать | CVE-2022-27928Эксплойта нет | Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol.pexip · pexip infinity | Высокая7,5 | — | 1,1 % | 17 июл. 2022 г. |
30Наблюдать | CVE-2022-26657Эксплойта нет | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join.pexip · pexip infinity | Высокая7,5 | — | 1,1 % | 17 июл. 2022 г. |
30Наблюдать | CVE-2022-27929Эксплойта нет | Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via HTTP.pexip · pexip infinity | Высокая7,5 | — | 1,1 % | 17 июл. 2022 г. |
30Наблюдать | CVE-2022-27935Эксплойта нет | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via Epic Telehealth.pexip · pexip infinity | Высокая7,5 | — | 1,1 % | 17 июл. 2022 г. |
30Наблюдать | CVE-2022-27931Эксплойта нет | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol.pexip · pexip infinity | Высокая7,5 | — | 1,1 % | 17 июл. 2022 г. |
30Наблюдать | CVE-2022-26655Эксплойта нет | Pexip Infinity 27.x before 27.3 has Improper Input Validation.pexip · pexip infinity · CWE-20 | Высокая7,5 | — | 1,1 % | 17 июл. 2022 г. |
30Наблюдать | CVE-2022-27934Эксплойта нет | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via HTTP.pexip · pexip infinity | Высокая7,5 | — | 1,1 % | 17 июл. 2022 г. |
- CVE-2017-655140В плане
Pexip Infinity before 14.2 allows remote attackers to cause a denial of service (service restart) or execute arbitrary code via vectors rela
КритическаяCVSS 9,8Эксплойта нетEPSS 4 %pexip · pexip infinity2 мая 2017 г.
- CVE-2015-471939Наблюдать
The client API authentication mechanism in Pexip Infinity before 10 allows remote attackers to gain privileges via a crafted request.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %pexip · pexip infinity23 сент. 2020 г.
- CVE-2020-1180539Наблюдать
Pexip Reverse Proxy and TURN Server before 6.1.0 has Incorrect UDP Access Control via TURN.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %pexip · pexip infinity25 сент. 2020 г.
- CVE-2021-2965639Наблюдать
Pexip Infinity Connect before 1.8.0 mishandles TLS certificate validation.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %pexip · infinity connect18 февр. 2022 г.
- CVE-2021-2965539Наблюдать
Pexip Infinity Connect before 1.8.0 omits certain provisioning authenticity checks.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %pexip · infinity connect18 февр. 2022 г.
- CVE-2025-5968336Наблюдать
Pexip Infinity 15.0 through 38.0 before 38.1 has Improper Access Control in the Secure Scheduler for Exchange service, when used with Office
КритическаяCVSS 9,1Эксплойта нетEPSS 0 %pexip · pexip infinity25 дек. 2025 г.
- CVE-2022-2665632Наблюдать
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort, and possibly enumerate usernames, via One Touch Join.
ВысокаяCVSS 8,2Эксплойта нетEPSS 1 %pexip · pexip infinity17 июл. 2022 г.
- CVE-2022-2793332Наблюдать
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join.
ВысокаяCVSS 8,2Эксплойта нетEPSS 1 %pexip · pexip infinity17 июл. 2022 г.
- CVE-2018-1043230Наблюдать
Pexip Infinity before 18 allows Remote Denial of Service (TLS handshakes in RTMP).
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · pexip infinity25 сент. 2020 г.
- CVE-2018-1058530Наблюдать
Pexip Infinity before 18 allows remote Denial of Service (XML parsing).
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · pexip infinity25 сент. 2020 г.
- CVE-2020-2586830Наблюдать
Pexip Infinity 22.x through 24.x before 24.2 has Improper Input Validation for call setup.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · pexip infinity7 июл. 2021 г.
- CVE-2021-3192530Наблюдать
Pexip Infinity 25.x before 25.4 has Improper Input Validation, and thus an unauthenticated remote attacker can cause a denial of service via
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · pexip infinity7 июл. 2021 г.
- CVE-2022-2322830Наблюдать
Pexip Infinity before 27.0 has improper WebRTC input validation.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · pexip infinity18 февр. 2022 г.
- CVE-2021-3254530Наблюдать
Pexip Infinity before 26 allows remote denial of service because of missing RTMP input validation.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · infinity15 янв. 2022 г.
- CVE-2021-4255530Наблюдать
Pexip Infinity before 26.2 allows temporary remote Denial of Service (abort) because of missing call-setup input validation.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · infinity15 янв. 2022 г.
- CVE-2021-3596930Наблюдать
Pexip Infinity before 26 allows temporary remote Denial of Service (abort) because of missing call-setup input validation.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · infinity15 янв. 2022 г.
- CVE-2021-3349930Наблюдать
Pexip Infinity before 26 allows remote denial of service because of missing H.264 input validation (issue 2 of 2).
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · infinity15 янв. 2022 г.
- CVE-2021-3349830Наблюдать
Pexip Infinity before 26 allows remote denial of service because of missing H.264 input validation (issue 1 of 2).
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · infinity15 янв. 2022 г.
- CVE-2022-2792830Наблюдать
Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · pexip infinity17 июл. 2022 г.
- CVE-2022-2665730Наблюдать
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · pexip infinity17 июл. 2022 г.
- CVE-2022-2792930Наблюдать
Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via HTTP.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · pexip infinity17 июл. 2022 г.
- CVE-2022-2793530Наблюдать
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via Epic Telehealth.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · pexip infinity17 июл. 2022 г.
- CVE-2022-2793130Наблюдать
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · pexip infinity17 июл. 2022 г.
- CVE-2022-2665530Наблюдать
Pexip Infinity 27.x before 27.3 has Improper Input Validation.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · pexip infinity17 июл. 2022 г.
- CVE-2022-2793430Наблюдать
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via HTTP.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %pexip · pexip infinity17 июл. 2022 г.