Uplay
by Ubisoft
CVEs (4)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2018-15832 | Hig | 0.57 | 8.8 | 0.04 | Sep 20, 2018 | upc.exe in Ubisoft Uplay Desktop Client versions 63.0.5699.0 allows remote attackers to execute arbitrary code. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the… | ||
| CVE-2019-14737 | Hig | 0.54 | 7.8 | 0.02 | Oct 14, 2019 | Ubisoft Uplay 92.0.0.6280 has Insecure Permissions. | ||
| CVE-2012-4177 | 0.08 | — | 0.58 | Aug 7, 2012 | The web browser plugin for Ubisoft Uplay PC before 2.0.4 allows remote attackers to execute arbitrary programs via the -orbit_exe_path command line argument. | |||
| CVE-2014-5453 | 0.03 | — | 0.01 | Aug 25, 2014 | Ubisoft Uplay PC before 4.6.1.3217 use weak permissions (Everyone: Full Control) for the program installation directory (%PROGRAMFILES%\Ubisoft Game Launcher), which allows local users to gain privileges via a Trojan horse file. |
- risk 0.57cvss 8.8epss 0.04
upc.exe in Ubisoft Uplay Desktop Client versions 63.0.5699.0 allows remote attackers to execute arbitrary code. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the…
- risk 0.54cvss 7.8epss 0.02
Ubisoft Uplay 92.0.0.6280 has Insecure Permissions.
- CVE-2012-4177Aug 7, 2012risk 0.08cvss —epss 0.58
The web browser plugin for Ubisoft Uplay PC before 2.0.4 allows remote attackers to execute arbitrary programs via the -orbit_exe_path command line argument.
- CVE-2014-5453Aug 25, 2014risk 0.03cvss —epss 0.01
Ubisoft Uplay PC before 4.6.1.3217 use weak permissions (Everyone: Full Control) for the program installation directory (%PROGRAMFILES%\Ubisoft Game Launcher), which allows local users to gain privileges via a Trojan horse file.