VYPR

ThermoscanIP

by ThermoscanIP

CVEs (2)

  • CVE-2024-31201MedJul 31, 2024
    risk 0.42cvss 6.5epss 0.00

    A “CWE-428: Unquoted Search Path or Element” affects the ThermoscanIP_Scrutation service. Such misconfiguration could be abused in scenarios where incorrect permissions were assigned to the C:\ path to attempt a privilege escalation on the local machine.

  • CVE-2024-31203LowJul 31, 2024
    risk 0.21cvss 3.3epss 0.00

    A “CWE-121: Stack-based Buffer Overflow” in the wd210std.dll dynamic library packaged with the ThermoscanIP installer allows a local attacker to possibly trigger a Denial-of-Service (DoS) condition on the target component.