Записи Windscribe
7 опубликованных записей вендора windscribe.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 1 · 14,3 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-20 Improper Input Validation1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-269 Improper Privilege Management1
- CWE-427 Uncontrolled Search Path Element1
- CWE-428 Unquoted Search Path or Element1
- CWE-732 Incorrect Permission Assignment for Critical Resource1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
34Наблюдать | CVE-2018-11479Готовый эксплойт | The VPN component in Windscribe 1.81 uses the OpenVPN client for connections.windscribe · windscribe · CWE-20 | Высокая7,8 | — | 9,9 % | 25 мая 2018 г. |
31Наблюдать | CVE-2024-6141Эксплойта нет | Windscribe Directory Traversal Local Privilege Escalation Vulnerabilitywindscribe · windscribe · CWE-22 | Высокая7,8 | — | 0,6 % | 21 авг. 2024 г. |
31Наблюдать | CVE-2020-27518Эксплойта нет | All versions of Windscribe VPN for Mac and Windows <= v2.02.10 contain a local privilege escalation vulnerability in the WindscribeService cwindscribe · windscribe · CWE-269 | Высокая7,8 | — | 0,4 % | 4 мая 2021 г. |
31Наблюдать | CVE-2020-22809Эксплойта нет | In Windscribe v1.83 Build 20, 'WindscribeService' has an Unquoted Service Path that facilitates privilege escalation.windscribe · windscribe · CWE-428 | Высокая7,8 | — | 0,4 % | 10 мая 2021 г. |
31Наблюдать | CVE-2022-41141Эксплойта нет | This vulnerability allows local attackers to escalate privileges on affected installations of Windscribe.windscribe · windscribe · CWE-427 | Высокая7,8 | — | 0,4 % | 26 янв. 2023 г. |
31Наблюдать | CVE-2018-11334Эксплойта нет | Windscribe 1.81 creates a named pipe with a NULL DACL that allows Everyone users to gain privileges or cause a denial of service via \\.\pipwindscribe · windscribe · CWE-732 | Высокая7,8 | — | 0,3 % | 23 мая 2018 г. |
29Наблюдать | CVE-2025-65199Эксплойта нет | Windscribe for Linux 'changeMTU' local privilege escalationwindscribe · windscribe · CWE-78 | Высокая7,3 | — | 1,3 % | 10 дек. 2025 г. |
- CVE-2018-1147934Наблюдать
The VPN component in Windscribe 1.81 uses the OpenVPN client for connections.
ВысокаяCVSS 7,8Готовый эксплойтEPSS 10 %windscribe · windscribe25 мая 2018 г.
- CVE-2024-614131Наблюдать
Windscribe Directory Traversal Local Privilege Escalation Vulnerability
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %windscribe · windscribe21 авг. 2024 г.
- CVE-2020-2751831Наблюдать
All versions of Windscribe VPN for Mac and Windows <= v2.02.10 contain a local privilege escalation vulnerability in the WindscribeService c
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %windscribe · windscribe4 мая 2021 г.
- CVE-2020-2280931Наблюдать
In Windscribe v1.83 Build 20, 'WindscribeService' has an Unquoted Service Path that facilitates privilege escalation.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %windscribe · windscribe10 мая 2021 г.
- CVE-2022-4114131Наблюдать
This vulnerability allows local attackers to escalate privileges on affected installations of Windscribe.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %windscribe · windscribe26 янв. 2023 г.
- CVE-2018-1133431Наблюдать
Windscribe 1.81 creates a named pipe with a NULL DACL that allows Everyone users to gain privileges or cause a denial of service via \\.\pip
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %windscribe · windscribe23 мая 2018 г.
- CVE-2025-6519929Наблюдать
Windscribe for Linux 'changeMTU' local privilege escalation
ВысокаяCVSS 7,3Эксплойта нетEPSS 1 %windscribe · windscribe10 дек. 2025 г.