Vulnerability index

Browse CVEs

8 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.1 CVE-2024-7211 The 1E Platform's component utilized the third-party Duende Identity Server, which suffered from an open redirect vulnerability, permitting an attack… Platform Mitigation only Fix from $1,6002024-08-01 CRITICAL 9.8 CVE-2023-45162 Affected 1E Platform versions have a Blind SQL Injection vulnerability that can lead to arbitrary code execution.  Application of the relevant hotfi… Platform Mitigation only Fix from $2,3002023-10-13 HIGH 8.8 CVE-2023-45160 In the affected version of the 1E Client, an ordinary user could subvert downloaded instruction resource files, e.g., to substitute a harmful script.… Client Mitigation only Fix from $1,9502023-10-05 HIGH 8.4 CVE-2023-45159 1E Client installer can perform arbitrary file deletion on protected files.   A non-privileged user could provide a symbolic link or Windows junctio… Client Mitigation only Fix from $1,9502023-10-05 HIGH 8.8 CVE-2020-16268 The MSI installer in 1E Client 4.1.0.267 and 5.0.0.745 allows remote authenticated users and local users to gain elevated privileges via the repair o… Client Mitigation only Fix from $1,9502020-12-29 HIGH 8.8 CVE-2020-27644 The Inventory module of the 1E Client 5.0.0.745 doesn't handle an unquoted path when executing %PROGRAMFILES%\1E\Client\Tachyon.Performance.Metrics.e… Client Mitigation only Fix from $1,9502020-12-29 HIGH 8.8 CVE-2020-27645 The Inventory module of the 1E Client 5.0.0.745 doesn't handle an unquoted path when executing %PROGRAMFILES%\1E\Client\Tachyon.Performance.Metrics.e… Client Mitigation only Fix from $1,9502020-12-29 MEDIUM 6.5 CVE-2020-27643 The %PROGRAMDATA%\1E\Client directory in 1E Client 5.0.0.745 and 4.1.0.267 allows remote authenticated users and local users to create and modify fil… Client Mitigation only Fix from $1,6002020-12-29