Home/Product/ixpdata easyinstall
Product

ixpdata easyinstall

13 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-30132
all versions
An issue discovered in IXP Data EasyInstall 6.6.14907.0 allows attackers to gain escalated privileges via static Cryptographic Key
7.8HIGH
CVE-2023-30131
all versions
An issue discovered in IXP EasyInstall 6.6.14884.0 allows attackers to run arbitrary commands, gain escalated privilege, and cause
9.8CRITICAL
CVE-2023-27795
all versions
An issue found in IXP Data Easy Install v.6.6.14884.0 allows a local attacker to gain privileges via a static XOR key.
7.8HIGH
CVE-2023-27793
all versions
An issue discovered in IXP Data Easy Install v.6.6.14884.0 allows local attackers to gain escalated privileges via weak encoding o
7.8HIGH
CVE-2023-27792
all versions
An issue found in IXP Data Easy Install v.6.6.14884.0 allows an attacker to escalate privileges via lack of permissions applied to
7.8HIGH
CVE-2023-27791
all versions
An issue found in IXP Data Easy Install 6.6.148840 allows a remote attacker to escalate privileges via insecure PRNG.
8.1HIGH
CVE-2022-35120
all versions
IXPdata EasyInstall 6.6.14725 contains an access control issue.
8.8HIGH
CVE-2019-19898
all versions
In IXP EasyInstall 6.2.13723, there are cleartext credentials in network communication on TCP port 20050 when using the Administra
7.5HIGH
CVE-2019-19897
all versions
In IXP EasyInstall 6.2.13723, there is Remote Code Execution via the Agent Service. An unauthenticated attacker can communicate wi
9.8CRITICAL
CVE-2019-19896
all versions
In IXP EasyInstall 6.2.13723, there is Remote Code Execution via weak permissions on the Engine Service share. The default file pe
9.9CRITICAL
CVE-2019-19895
all versions
In IXP EasyInstall 6.2.13723, there is Lateral Movement (using the Agent Service) against other users on a client system. An authe
7.8HIGH
CVE-2019-19894
all versions
In IXP EasyInstall 6.2.13723, it is possible to temporarily disable UAC by using the Agent Service on a client system. An authenti
5.5MEDIUM
CVE-2019-19893
all versions
In IXP EasyInstall 6.2.13723, there is Directory Traversal on TCP port 8000 via the Engine Service by an unauthenticated attacker,
7.5HIGH
threatengine.sh