kramerav viaware CVE Vulnerabilities (3)

CVEs: 3 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting kramerav viaware (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2021-36356 KRAMER VIAware through August 2021 allows remote attackers to execute arbitrary code because ajaxPages/writeBrowseFilePathAjax.php accepts arbitrary executable pathnames (even though browseSystemFiles.php is no longer reachable via the GUI). NOTE: this issue exists because of an incomplete fix for CVE-2019-17124. [email protected] 9.8 93.00% 2021-08-31 2024-11-21
CVE-2021-35064 KramerAV VIAWare, all tested versions, allow privilege escalation through misconfiguration of sudo. Sudoers permits running of multiple dangerous commands, including unzip, systemctl and dpkg. [email protected] 9.8 89.55% 2021-07-12 2024-11-21
CVE-2019-17124 Kramer VIAware 2.5.0719.1034 has Incorrect Access Control. [email protected] 9.8 23.81% 2019-10-09 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence