VYPR

TWinSoft

by Ovarro

CVEs (2)

  • CVE-2021-22650HigJul 28, 2022
    risk 0.49cvss 7.5epss 0.01

    An attacker may use TWinSoft and a malicious source project file (TPG) to extract files on machine executing Ovarro TWinSoft, which could lead to code execution.

  • CVE-2021-22644HigJul 28, 2022
    risk 0.49cvss 7.5epss 0.01

    Ovarro TBox TWinSoft uses the custom hardcoded user “TWinSoft” with a hardcoded key.