VYPR

X Plane

by X Plane

CVEs (2)

  • CVE-2019-19606CriMar 30, 2020
    risk 0.64cvss 9.8epss 0.02

    X-Plane before 11.41 has multiple improper path validations that could allow reading and writing files from/to arbitrary paths (or a leak of OS credentials to a remote system) via crafted network packets. This could be used to execute arbitrary commands on the system.

  • CVE-2019-19605CriMar 30, 2020
    risk 0.64cvss 9.8epss 0.02

    X-Plane before 11.41 allows Arbitrary Memory Write via crafted network packets, which could cause a denial of service or arbitrary code execution.