Pexip Infinity
by Pexip
CVEs (52)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-27935 | Hig | 0.49 | 7.5 | 0.01 | Jul 17, 2022 | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via Epic Telehealth. | ||
| CVE-2022-27934 | Hig | 0.49 | 7.5 | 0.01 | Jul 17, 2022 | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via HTTP. | ||
| CVE-2022-27932 | Hig | 0.49 | 7.5 | 0.01 | Jul 17, 2022 | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join. | ||
| CVE-2022-27931 | Hig | 0.49 | 7.5 | 0.01 | Jul 17, 2022 | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol. | ||
| CVE-2022-27929 | Hig | 0.49 | 7.5 | 0.01 | Jul 17, 2022 | Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via HTTP. | ||
| CVE-2022-27928 | Hig | 0.49 | 7.5 | 0.01 | Jul 17, 2022 | Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol. | ||
| CVE-2022-26657 | Hig | 0.49 | 7.5 | 0.01 | Jul 17, 2022 | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join. | ||
| CVE-2022-26655 | Hig | 0.49 | 7.5 | 0.01 | Jul 17, 2022 | Pexip Infinity 27.x before 27.3 has Improper Input Validation. The client API allows remote attackers to trigger a software abort via a gateway call into Teams. | ||
| CVE-2022-26654 | Hig | 0.49 | 7.5 | 0.01 | Jul 17, 2022 | Pexip Infinity before 27.3 allows remote attackers to force a software abort via HTTP. | ||
| CVE-2022-23228 | Hig | 0.49 | 7.5 | 0.01 | Feb 18, 2022 | Pexip Infinity before 27.0 has improper WebRTC input validation. An unauthenticated remote attacker can use excessive resources, temporarily causing denial of service. | ||
| CVE-2021-42555 | Hig | 0.49 | 7.5 | 0.01 | Jan 15, 2022 | Pexip Infinity before 26.2 allows temporary remote Denial of Service (abort) because of missing call-setup input validation. | ||
| CVE-2021-35969 | Hig | 0.49 | 7.5 | 0.01 | Jan 15, 2022 | Pexip Infinity before 26 allows temporary remote Denial of Service (abort) because of missing call-setup input validation. | ||
| CVE-2021-33499 | Hig | 0.49 | 7.5 | 0.01 | Jan 15, 2022 | Pexip Infinity before 26 allows remote denial of service because of missing H.264 input validation (issue 2 of 2). | ||
| CVE-2021-33498 | Hig | 0.49 | 7.5 | 0.01 | Jan 15, 2022 | Pexip Infinity before 26 allows remote denial of service because of missing H.264 input validation (issue 1 of 2). | ||
| CVE-2021-32545 | Hig | 0.49 | 7.5 | 0.01 | Jan 15, 2022 | Pexip Infinity before 26 allows remote denial of service because of missing RTMP input validation. | ||
| CVE-2021-31925 | Hig | 0.49 | 7.5 | 0.01 | Jul 7, 2021 | Pexip Infinity 25.x before 25.4 has Improper Input Validation, and thus an unauthenticated remote attacker can cause a denial of service via the administrative web interface. | ||
| CVE-2020-25868 | Hig | 0.49 | 7.5 | 0.01 | Jul 7, 2021 | Pexip Infinity 22.x through 24.x before 24.2 has Improper Input Validation for call setup. An unauthenticated remote attacker can trigger a software abort (temporary loss of service). | ||
| CVE-2020-13387 | Hig | 0.49 | 7.5 | 0.01 | Sep 25, 2020 | Pexip Infinity before 23.4 has a lack of input validation, leading to temporary denial of service via H.323. | ||
| CVE-2020-12824 | Hig | 0.49 | 7.5 | 0.01 | Sep 25, 2020 | Pexip Infinity 23.x before 23.3 has improper input validation, leading to a temporary software abort via RTP. | ||
| CVE-2018-10585 | Hig | 0.49 | 7.5 | 0.01 | Sep 25, 2020 | Pexip Infinity before 18 allows remote Denial of Service (XML parsing). |
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via Epic Telehealth.
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via HTTP.
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join.
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol.
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via HTTP.
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol.
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join.
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity 27.x before 27.3 has Improper Input Validation. The client API allows remote attackers to trigger a software abort via a gateway call into Teams.
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity before 27.3 allows remote attackers to force a software abort via HTTP.
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity before 27.0 has improper WebRTC input validation. An unauthenticated remote attacker can use excessive resources, temporarily causing denial of service.
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity before 26.2 allows temporary remote Denial of Service (abort) because of missing call-setup input validation.
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity before 26 allows temporary remote Denial of Service (abort) because of missing call-setup input validation.
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity before 26 allows remote denial of service because of missing H.264 input validation (issue 2 of 2).
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity before 26 allows remote denial of service because of missing H.264 input validation (issue 1 of 2).
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity before 26 allows remote denial of service because of missing RTMP input validation.
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity 25.x before 25.4 has Improper Input Validation, and thus an unauthenticated remote attacker can cause a denial of service via the administrative web interface.
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity 22.x through 24.x before 24.2 has Improper Input Validation for call setup. An unauthenticated remote attacker can trigger a software abort (temporary loss of service).
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity before 23.4 has a lack of input validation, leading to temporary denial of service via H.323.
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity 23.x before 23.3 has improper input validation, leading to a temporary software abort via RTP.
- risk 0.49cvss 7.5epss 0.01
Pexip Infinity before 18 allows remote Denial of Service (XML parsing).
Page 2 of 3