Перейти к содержимому
Noroxi

Записи techsmith

14 опубликованных записей вендора techsmith.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
1
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 18
  2. 19
  3. 20
  4. 21

Столбик: всего · тёмная часть: CISA KEV.

Все записи

14 записей
  • CVE-2018-14403
    40В плане

    MP4NameFirstMatches in mp4util.cpp in MP4v2 2.0.0 mishandles substrings of atom names, leading to use of an inappropriate data type for asso

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    techsmith · mp4v219 июл. 2018 г.

  • CVE-2018-14054
    40В плане

    A double free exists in the MP4StringProperty class in mp4property.cpp in MP4v2 2.0.0.

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    techsmith · mp4v213 июл. 2018 г.

  • CVE-2010-3130
    39Наблюдать

    Untrusted search path vulnerability in TechSmith Snagit all versions 10.x and 11.x allows local users, and possibly remote attackers, to exe

    КритическаяCVSS 9,3Proof of conceptEPSS 8 %

    techsmith · snagit26 авг. 2010 г.

  • CVE-2018-14446
    36Наблюдать

    MP4Integer32Property::Read in atom_avcC.cpp in MP4v2 2.1.0 allows remote attackers to cause a denial of service (heap-based buffer overflow

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    techsmith · mp4v220 июл. 2018 г.

  • CVE-2018-14379
    36Наблюдать

    MP4Atom::factory in mp4atom.cpp in MP4v2 2.0.0 incorrectly uses the MP4ItemAtom data type in a certain case where MP4DataAtom is required, w

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    techsmith · mp4v218 июл. 2018 г.

  • CVE-2018-14325
    36Наблюдать

    In MP4v2 2.0.0, there is an integer underflow (with resultant memory corruption) when parsing MP4Atom in mp4atom.cpp.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    techsmith · mp4v216 июл. 2018 г.

  • CVE-2018-14326
    36Наблюдать

    In MP4v2 2.0.0, there is an integer overflow (with resultant memory corruption) when resizing MP4Array for the ftyp atom in mp4array.h.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    techsmith · mp4v216 июл. 2018 г.

  • CVE-2020-18171
    35Наблюдать

    TechSmith Snagit 19.1.0.2653 uses Object Linking and Embedding (OLE) which can allow attackers to obfuscate and embed crafted files used to

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    techsmith · snagit26 июл. 2021 г.

  • CVE-2019-13382
    31Наблюдать

    UploaderService in SnagIT 2019.1.2 allows elevation of privilege by placing an invalid presentation file in %PROGRAMDATA%\TechSmith\TechSmit

    ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %

    techsmith · snagit26 июл. 2019 г.

  • CVE-2020-18169
    31Наблюдать

    A vulnerability in the Windows installer XML (WiX) toolset of TechSmith Snagit 19.1.1.2860 allows attackers to escalate privileges.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    techsmith · snagit26 июл. 2021 г.

  • CVE-2010-5234
    27Наблюдать

    Multiple untrusted search path vulnerabilities in Camtasia Studio 7.0.1 build 57 allow local users to gain privileges via a Trojan horse (1)

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    techsmith · camtasia studio7 сент. 2012 г.

  • CVE-2020-11541
    22Наблюдать

    In TechSmith SnagIt 11.2.1 through 20.0.3, an XML External Entity (XXE) injection issue exists that would allow a local attacker to exfiltra

    СредняяCVSS 5,5Эксплойта нетEPSS 0 %

    techsmith · snagit8 мая 2020 г.

  • CVE-2008-6061
    18Наблюдать

    Cross-site scripting (XSS) vulnerability in ActionScript in arbitrary Shockwave Flash (SWF) controller files created by Techsmith Camtasia S

    СредняяCVSS 4,3Proof of conceptEPSS 4 %

    techsmith · camtasia studio4 февр. 2009 г.

  • CVE-2015-5487
    17Наблюдать

    Cross-site scripting (XSS) vulnerability in the Camtasia Relay module 6.x-2.x before 6.x-3.2 and 7.x-2.x before 7.x-1.3 for Drupal allows re

    СредняяCVSS 4,3Эксплойта нетEPSS 1 %

    techsmith · camtasia relay18 авг. 2015 г.