Pexip kayıtları
pexip üreticisine ait 55 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-20 Improper Input Validation18
- CWE-617 Reachable Assertion6
- CWE-400 Uncontrolled Resource Consumption3
- CWE-770 Allocation of Resources Without Limits or Throttling2
- CWE-863 Incorrect Authorization2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
55 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2017-6551İstismar yok | Pexip Infinity before 14.2 allows remote attackers to cause a denial of service (service restart) or execute arbitrary code via vectors relapexip · pexip infinity · CWE-20 | Kritik9,8 | — | %3,5 | 2 May 2017 |
39İzleyin | CVE-2015-4719İstismar yok | The client API authentication mechanism in Pexip Infinity before 10 allows remote attackers to gain privileges via a crafted request.pexip · pexip infinity · CWE-269 | Kritik9,8 | — | %1,5 | 23 Eyl 2020 |
39İzleyin | CVE-2020-11805İstismar yok | Pexip Reverse Proxy and TURN Server before 6.1.0 has Incorrect UDP Access Control via TURN.pexip · pexip infinity · CWE-20 | Kritik9,8 | — | %1,4 | 25 Eyl 2020 |
39İzleyin | CVE-2021-29656İstismar yok | Pexip Infinity Connect before 1.8.0 mishandles TLS certificate validation.pexip · infinity connect · CWE-295 | Kritik9,8 | — | %0,7 | 18 Şub 2022 |
39İzleyin | CVE-2021-29655İstismar yok | Pexip Infinity Connect before 1.8.0 omits certain provisioning authenticity checks.pexip · infinity connect · CWE-345 | Kritik9,8 | — | %0,5 | 18 Şub 2022 |
36İzleyin | CVE-2025-59683İstismar yok | Pexip Infinity 15.0 through 38.0 before 38.1 has Improper Access Control in the Secure Scheduler for Exchange service, when used with Officepexip · pexip infinity · CWE-863 | Kritik9,1 | — | %0,3 | 25 Ara 2025 |
32İzleyin | CVE-2022-26656İstismar yok | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort, and possibly enumerate usernames, via One Touch Join.pexip · pexip infinity | Yüksek8,2 | — | %1,1 | 17 Tem 2022 |
32İzleyin | CVE-2022-27933İstismar yok | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join.pexip · pexip infinity | Yüksek8,2 | — | %1,1 | 17 Tem 2022 |
30İzleyin | CVE-2018-10432İstismar yok | Pexip Infinity before 18 allows Remote Denial of Service (TLS handshakes in RTMP).pexip · pexip infinity · CWE-400 | Yüksek7,5 | — | %1,4 | 25 Eyl 2020 |
30İzleyin | CVE-2018-10585İstismar yok | Pexip Infinity before 18 allows remote Denial of Service (XML parsing).pexip · pexip infinity · CWE-400 | Yüksek7,5 | — | %1,4 | 25 Eyl 2020 |
30İzleyin | CVE-2020-25868İstismar yok | Pexip Infinity 22.x through 24.x before 24.2 has Improper Input Validation for call setup.pexip · pexip infinity · CWE-20 | Yüksek7,5 | — | %1,3 | 7 Tem 2021 |
30İzleyin | CVE-2021-31925İstismar yok | Pexip Infinity 25.x before 25.4 has Improper Input Validation, and thus an unauthenticated remote attacker can cause a denial of service viapexip · pexip infinity · CWE-20 | Yüksek7,5 | — | %1,3 | 7 Tem 2021 |
30İzleyin | CVE-2022-23228İstismar yok | Pexip Infinity before 27.0 has improper WebRTC input validation.pexip · pexip infinity · CWE-770 | Yüksek7,5 | — | %1,3 | 18 Şub 2022 |
30İzleyin | CVE-2021-32545İstismar yok | Pexip Infinity before 26 allows remote denial of service because of missing RTMP input validation.pexip · infinity · CWE-20 | Yüksek7,5 | — | %1,3 | 15 Oca 2022 |
30İzleyin | CVE-2021-42555İstismar yok | Pexip Infinity before 26.2 allows temporary remote Denial of Service (abort) because of missing call-setup input validation.pexip · infinity · CWE-20 | Yüksek7,5 | — | %1,2 | 15 Oca 2022 |
30İzleyin | CVE-2021-35969İstismar yok | Pexip Infinity before 26 allows temporary remote Denial of Service (abort) because of missing call-setup input validation.pexip · infinity · CWE-20 | Yüksek7,5 | — | %1,2 | 15 Oca 2022 |
30İzleyin | CVE-2021-33499İstismar yok | Pexip Infinity before 26 allows remote denial of service because of missing H.264 input validation (issue 2 of 2).pexip · infinity · CWE-20 | Yüksek7,5 | — | %1,2 | 15 Oca 2022 |
30İzleyin | CVE-2021-33498İstismar yok | Pexip Infinity before 26 allows remote denial of service because of missing H.264 input validation (issue 1 of 2).pexip · infinity · CWE-20 | Yüksek7,5 | — | %1,2 | 15 Oca 2022 |
30İzleyin | CVE-2022-27928İstismar yok | Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol.pexip · pexip infinity | Yüksek7,5 | — | %1,1 | 17 Tem 2022 |
30İzleyin | CVE-2022-26657İstismar yok | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join.pexip · pexip infinity | Yüksek7,5 | — | %1,1 | 17 Tem 2022 |
30İzleyin | CVE-2022-27929İstismar yok | Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via HTTP.pexip · pexip infinity | Yüksek7,5 | — | %1,1 | 17 Tem 2022 |
30İzleyin | CVE-2022-27935İstismar yok | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via Epic Telehealth.pexip · pexip infinity | Yüksek7,5 | — | %1,1 | 17 Tem 2022 |
30İzleyin | CVE-2022-27931İstismar yok | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol.pexip · pexip infinity | Yüksek7,5 | — | %1,1 | 17 Tem 2022 |
30İzleyin | CVE-2022-26655İstismar yok | Pexip Infinity 27.x before 27.3 has Improper Input Validation.pexip · pexip infinity · CWE-20 | Yüksek7,5 | — | %1,1 | 17 Tem 2022 |
30İzleyin | CVE-2022-27934İstismar yok | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via HTTP.pexip · pexip infinity | Yüksek7,5 | — | %1,1 | 17 Tem 2022 |
- CVE-2017-655140Planlayın
Pexip Infinity before 14.2 allows remote attackers to cause a denial of service (service restart) or execute arbitrary code via vectors rela
KritikCVSS 9,8İstismar yokEPSS %4pexip · pexip infinity2 May 2017
- CVE-2015-471939İzleyin
The client API authentication mechanism in Pexip Infinity before 10 allows remote attackers to gain privileges via a crafted request.
KritikCVSS 9,8İstismar yokEPSS %1pexip · pexip infinity23 Eyl 2020
- CVE-2020-1180539İzleyin
Pexip Reverse Proxy and TURN Server before 6.1.0 has Incorrect UDP Access Control via TURN.
KritikCVSS 9,8İstismar yokEPSS %1pexip · pexip infinity25 Eyl 2020
- CVE-2021-2965639İzleyin
Pexip Infinity Connect before 1.8.0 mishandles TLS certificate validation.
KritikCVSS 9,8İstismar yokEPSS %1pexip · infinity connect18 Şub 2022
- CVE-2021-2965539İzleyin
Pexip Infinity Connect before 1.8.0 omits certain provisioning authenticity checks.
KritikCVSS 9,8İstismar yokEPSS %1pexip · infinity connect18 Şub 2022
- CVE-2025-5968336İzleyin
Pexip Infinity 15.0 through 38.0 before 38.1 has Improper Access Control in the Secure Scheduler for Exchange service, when used with Office
KritikCVSS 9,1İstismar yokEPSS %0pexip · pexip infinity25 Ara 2025
- CVE-2022-2665632İzleyin
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort, and possibly enumerate usernames, via One Touch Join.
YüksekCVSS 8,2İstismar yokEPSS %1pexip · pexip infinity17 Tem 2022
- CVE-2022-2793332İzleyin
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join.
YüksekCVSS 8,2İstismar yokEPSS %1pexip · pexip infinity17 Tem 2022
- CVE-2018-1043230İzleyin
Pexip Infinity before 18 allows Remote Denial of Service (TLS handshakes in RTMP).
YüksekCVSS 7,5İstismar yokEPSS %1pexip · pexip infinity25 Eyl 2020
- CVE-2018-1058530İzleyin
Pexip Infinity before 18 allows remote Denial of Service (XML parsing).
YüksekCVSS 7,5İstismar yokEPSS %1pexip · pexip infinity25 Eyl 2020
- CVE-2020-2586830İzleyin
Pexip Infinity 22.x through 24.x before 24.2 has Improper Input Validation for call setup.
YüksekCVSS 7,5İstismar yokEPSS %1pexip · pexip infinity7 Tem 2021
- CVE-2021-3192530İzleyin
Pexip Infinity 25.x before 25.4 has Improper Input Validation, and thus an unauthenticated remote attacker can cause a denial of service via
YüksekCVSS 7,5İstismar yokEPSS %1pexip · pexip infinity7 Tem 2021
- CVE-2022-2322830İzleyin
Pexip Infinity before 27.0 has improper WebRTC input validation.
YüksekCVSS 7,5İstismar yokEPSS %1pexip · pexip infinity18 Şub 2022
- CVE-2021-3254530İzleyin
Pexip Infinity before 26 allows remote denial of service because of missing RTMP input validation.
YüksekCVSS 7,5İstismar yokEPSS %1pexip · infinity15 Oca 2022
- CVE-2021-4255530İzleyin
Pexip Infinity before 26.2 allows temporary remote Denial of Service (abort) because of missing call-setup input validation.
YüksekCVSS 7,5İstismar yokEPSS %1pexip · infinity15 Oca 2022
- CVE-2021-3596930İzleyin
Pexip Infinity before 26 allows temporary remote Denial of Service (abort) because of missing call-setup input validation.
YüksekCVSS 7,5İstismar yokEPSS %1pexip · infinity15 Oca 2022
- CVE-2021-3349930İzleyin
Pexip Infinity before 26 allows remote denial of service because of missing H.264 input validation (issue 2 of 2).
YüksekCVSS 7,5İstismar yokEPSS %1pexip · infinity15 Oca 2022
- CVE-2021-3349830İzleyin
Pexip Infinity before 26 allows remote denial of service because of missing H.264 input validation (issue 1 of 2).
YüksekCVSS 7,5İstismar yokEPSS %1pexip · infinity15 Oca 2022
- CVE-2022-2792830İzleyin
Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol.
YüksekCVSS 7,5İstismar yokEPSS %1pexip · pexip infinity17 Tem 2022
- CVE-2022-2665730İzleyin
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join.
YüksekCVSS 7,5İstismar yokEPSS %1pexip · pexip infinity17 Tem 2022
- CVE-2022-2792930İzleyin
Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via HTTP.
YüksekCVSS 7,5İstismar yokEPSS %1pexip · pexip infinity17 Tem 2022
- CVE-2022-2793530İzleyin
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via Epic Telehealth.
YüksekCVSS 7,5İstismar yokEPSS %1pexip · pexip infinity17 Tem 2022
- CVE-2022-2793130İzleyin
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol.
YüksekCVSS 7,5İstismar yokEPSS %1pexip · pexip infinity17 Tem 2022
- CVE-2022-2665530İzleyin
Pexip Infinity 27.x before 27.3 has Improper Input Validation.
YüksekCVSS 7,5İstismar yokEPSS %1pexip · pexip infinity17 Tem 2022
- CVE-2022-2793430İzleyin
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via HTTP.
YüksekCVSS 7,5İstismar yokEPSS %1pexip · pexip infinity17 Tem 2022