VYPR

FlexNet Publisher

by Flexera Software

CVEs (6)

  • CVE-2018-20033CriFeb 25, 2019
    risk 0.64cvss 9.8epss 0.04

    A Remote Code Execution vulnerability in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier could allow a remote attacker to corrupt the memory by allocating / deallocating memory, loading lmgrd or the vendor daemon and causing the heartbeat…

  • CVE-2016-10395HigJun 15, 2017
    risk 0.51cvss 7.8epss 0.00

    In FlexNet Publisher versions before Luton SP1 (11.14.1.1) running FlexNet Publisher Licensing Service on Windows platform, a boundary error related to a named pipe within the FlexNet Publisher Licensing Service can be exploited to cause an out-of-bounds memory read access and…

  • CVE-2018-20034HigMar 21, 2019
    risk 0.49cvss 7.5epss 0.03

    A Denial of Service vulnerability related to adding an item to a list in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier allows a remote attacker to send a combination of messages to lmgrd or the vendor daemon, causing the heartbeat between…

  • CVE-2018-20032HigMar 21, 2019
    risk 0.49cvss 7.5epss 0.02

    A Denial of Service vulnerability related to message decoding in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier allows a remote attacker to send a combination of messages to lmgrd or the vendor daemon, causing the heartbeat between lmgrd…

  • CVE-2018-20031HigMar 21, 2019
    risk 0.49cvss 7.5epss 0.02

    A Denial of Service vulnerability related to preemptive item deletion in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier allows a remote attacker to send a combination of messages to lmgrd or the vendor daemon, causing the heartbeat between…

  • CVE-2019-25313MedFeb 11, 2026
    risk 0.26cvss 4.0epss 0.00

    FlexNet Publisher 11.12.1 contains a cross-site request forgery vulnerability that allows attackers to create administrative user accounts without authentication. Attackers can craft a malicious HTML form to trick authenticated users into submitting a request that creates a new…