VYPR

Panda Dome

by Pandasecurity

CVEs (6)

  • CVE-2019-12042CriMay 23, 2019
    risk 0.64cvss 9.8epss 0.04

    Insecure permissions of the section object Global\PandaDevicesAgentSharedMemory and the event Global\PandaDevicesAgentSharedMemoryChange in Panda products before 18.07.03 allow attackers to queue an event (as an encrypted JSON string) to the system service AgentSvc.exe, which…

  • CVE-2024-7245HigNov 22, 2024
    risk 0.51cvss 7.8epss 0.00

    Panda Security Dome VPN Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Panda Security Dome. An attacker must first obtain the ability to execute…

  • CVE-2024-7244HigNov 22, 2024
    risk 0.51cvss 7.8epss 0.00

    Panda Security Dome VPN DLL Hijacking Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Panda Security Dome. An attacker must first obtain the ability to execute low-privileged code on the…

  • CVE-2024-7243HigNov 22, 2024
    risk 0.51cvss 7.8epss 0.00

    Panda Security Dome Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Panda Security Dome. An attacker must first obtain the ability to execute low-privileged code on the target…

  • CVE-2024-7242HigNov 22, 2024
    risk 0.51cvss 7.8epss 0.00

    Panda Security Dome Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Panda Security Dome. An attacker must first obtain the ability to execute low-privileged code on the target…

  • CVE-2024-7241HigNov 22, 2024
    risk 0.51cvss 7.8epss 0.00

    Panda Security Dome Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Panda Security Dome. An attacker must first obtain the ability to execute low-privileged code on the target…