VYPR

Client View

by SKYSEA

CVEs (7)

  • CVE-2016-7836CriKEVJun 9, 2017
    risk 0.77cvss 9.8epss 0.19

    SKYSEA Client View Ver.11.221.03 and earlier allows remote code execution via a flaw in processing authentication on the TCP connection with the management console program.

  • CVE-2024-41143HigJul 29, 2024
    risk 0.51cvss 7.8epss 0.00

    Origin validation error vulnerability exists in SKYSEA Client View Ver.3.013.00 to Ver.19.210.04e. If this vulnerability is exploited, an arbitrary process may be executed with SYSTEM privilege by a user who can log in to the PC where the product's Windows client is installed.

  • CVE-2024-41139HigJul 29, 2024
    risk 0.51cvss 7.8epss 0.00

    Incorrect privilege assignment vulnerability exists in SKYSEA Client View Ver.6.010.06 to Ver.19.210.04e. If a user who can log in to the PC where the product's Windows client is installed places a specially crafted DLL file in a specific folder, arbitrary code may be executed…

  • CVE-2024-21805HigMar 12, 2024
    risk 0.51cvss 7.8epss 0.00

    Improper access control vulnerability exists in the specific folder of SKYSEA Client View versions from Ver.16.100 prior to Ver.19.2. If this vulnerability is exploited, an arbitrary file may be placed in the specific folder by a user who can log in to the PC where the product's…

  • CVE-2021-20616HigJan 13, 2021
    risk 0.51cvss 7.8epss 0.00

    Untrusted search path vulnerability in the installer of SKYSEA Client View Ver.1.020.05b to Ver.16.001.01g allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

  • CVE-2020-5617HigAug 4, 2020
    risk 0.51cvss 7.8epss 0.00

    Privilege escalation vulnerability in SKYSEA Client View Ver.12.200.12n to 15.210.05f allows an attacker to obtain unauthorized privileges and modify/obtain sensitive information or perform unintended operations via unspecified vectors.

  • CVE-2024-41726HigJul 29, 2024
    risk 0.49cvss 7.5epss 0.01

    Path traversal vulnerability exists in SKYSEA Client View Ver.3.013.00 to Ver.19.210.04e. If this vulnerability is exploited, an arbitrary executable file may be executed by a user who can log in to the PC where the product's Windows client is installed.