Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
control center vulnerabilities and exploits
(subscribe to this query)
2.7
CVSSv3
CVE-2019-15662
An issue exists in Rivet Killer Control Center prior to 2.1.1352. IOCTL 0x120444 in KfeCo10X64.sys fails to validate an offset passed as a parameter during a memory operation, leading to an arbitrary read primitive that can be used as part of a chain to escalate privileges.
Killernetworking Killer Control Center
2.7
CVSSv3
CVE-2019-15663
An issue exists in Rivet Killer Control Center prior to 2.1.1352. IOCTL 0x120404 in KfeCo10X64.sys fails to validate an offset passed as a parameter during a memory operation, leading to an out-of-bounds read that can be used as part of a chain to escalate privileges (issue 1 of ...
Killernetworking Killer Control Center
7.2
CVSSv3
CVE-2019-15665
An issue exists in Rivet Killer Control Center prior to 2.1.1352. IOCTL 0x120004 in KfeCo10X64.sys fails to validate an offset passed as a parameter during a memory operation, leading to an arbitrary write primitive that can lead to code execution or escalation of privileges.
Killernetworking Killer Control Center
3.3
CVSSv3
CVE-2023-43089
Dell Rugged Control Center, version before 4.7, contains insufficient protection for the Policy folder. A local malicious standard user could potentially exploit this vulnerability to modify the content of the policy file, leading to unauthorized access to resources.
Dell Rugged Control Center
7.8
CVSSv3
CVE-2019-14599
Unquoted service path in Control Center-I version 2.1.0.0 and previous versions may allow an authenticated user to potentially enable escalation of privilege via local access.
Intel Control Center-i
6.5
CVSSv3
CVE-2022-26668
ASUS Control Center API has a broken access control vulnerability. An unauthenticated remote attacker can call privileged API functions to perform partial system operations or cause partial disrupt of service.
Asus Control Center 1.4.2.5
6.5
CVSSv3
CVE-2022-26669
ASUS Control Center is vulnerable to SQL injection. An authenticated remote attacker with general user privilege can inject SQL command to specific API parameters to acquire database schema or access data.
Asus Control Center 1.4.2.5
7.8
CVSSv3
CVE-2023-39256
Dell Rugged Control Center, version before 4.7, contains an improper access control vulnerability. A local malicious standard user could potentially exploit this vulnerability to modify the content in an unsecured folder during product installation and upgrade, leading to privil...
Dell Rugged Control Center
7.8
CVSSv3
CVE-2023-39257
Dell Rugged Control Center, version before 4.7, contains an Improper Access Control vulnerability. A local malicious standard user could potentially exploit this vulnerability to modify the content in an unsecured folder when product installation repair is performed, leading to ...
Dell Rugged Control Center
5.4
CVSSv3
CVE-2021-20528
IBM Control Center 6.2.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 1987...
Ibm Control Center 6.2.0.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-3080
log injection
CVE-2024-6041
CVE-2024-37661
XML external entity
CVE-2024-0845
privilege escalation
CVE-2023-37057
CVE-2024-27801
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »