Search Results (Refine Search)
- Results Type: Overview
- Keyword (text search): cpe:2.3:a:cordaware:bestinformed:6.0.1.2:*:*:*:*:windows:*:*
- CPE Name Search: true
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2019-6266 |
Cordaware bestinformed Microsoft Windows client before 6.2.1.0 is affected by insecure SSL certificate verification and insecure access patterns. These issues allow remote attackers to downgrade encrypted connections to cleartext. Published: February 25, 2019; 6:29:01 PM -0500 |
V3.0: 9.8 CRITICAL V2.0: 7.5 HIGH |
CVE-2019-6265 |
The Scripting and AutoUpdate functionality in Cordaware bestinformed Microsoft Windows client versions before 6.2.1.0 are affected by insecure implementations which allow remote attackers to execute arbitrary commands and escalate privileges. Published: February 25, 2019; 6:29:01 PM -0500 |
V3.0: 7.8 HIGH V2.0: 4.6 MEDIUM |