Search Results (Refine Search)
- Results Type: Overview
- Keyword (text search): cpe:2.3:a:pexip:pexip_infinity:12:*:*:*:*:*:*:*
- CPE Name Search: true
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2023-37225 |
Pexip Infinity before 32 allows Webapp1 XSS via preconfigured links. Published: December 25, 2023; 1:15:08 AM -0500 |
V4.0:(not available) V3.1: 6.1 MEDIUM V2.0:(not available) |
CVE-2023-31455 |
Pexip Infinity before 31.2 has Improper Input Validation for RTCP, allowing remote attackers to trigger an abort. Published: December 25, 2023; 1:15:08 AM -0500 |
V4.0:(not available) V3.1: 7.5 HIGH V2.0:(not available) |
CVE-2023-31289 |
Pexip Infinity before 31.2 has Improper Input Validation for signalling, allowing remote attackers to trigger an abort. Published: December 25, 2023; 1:15:08 AM -0500 |
V4.0:(not available) V3.1: 7.5 HIGH V2.0:(not available) |
CVE-2022-27937 |
Pexip Infinity before 27.3 allows remote attackers to trigger excessive resource consumption via H.264. Published: July 17, 2022; 5:15:08 PM -0400 |
V4.0:(not available) V3.1: 7.5 HIGH V2.0: 5.0 MEDIUM |
CVE-2022-27936 |
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via H.323. Published: July 17, 2022; 5:15:08 PM -0400 |
V4.0:(not available) V3.1: 7.5 HIGH V2.0: 5.0 MEDIUM |
CVE-2022-26657 |
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join. Published: July 17, 2022; 5:15:08 PM -0400 |
V4.0:(not available) V3.1: 7.5 HIGH V2.0: 5.0 MEDIUM |
CVE-2022-26656 |
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort, and possibly enumerate usernames, via One Touch Join. Published: July 17, 2022; 5:15:08 PM -0400 |
V4.0:(not available) V3.1: 8.2 HIGH V2.0: 6.4 MEDIUM |
CVE-2022-26654 |
Pexip Infinity before 27.3 allows remote attackers to force a software abort via HTTP. Published: July 17, 2022; 5:15:08 PM -0400 |
V4.0:(not available) V3.1: 7.5 HIGH V2.0: 5.0 MEDIUM |
CVE-2022-23228 |
Pexip Infinity before 27.0 has improper WebRTC input validation. An unauthenticated remote attacker can use excessive resources, temporarily causing denial of service. Published: February 18, 2022; 5:15:12 PM -0500 |
V4.0:(not available) V3.1: 7.5 HIGH V2.0: 5.0 MEDIUM |
CVE-2020-24615 |
Pexip Infinity before 24.1 has Improper Input Validation, leading to temporary denial of service via SIP. Published: September 25, 2020; 12:23:04 AM -0400 |
V4.0:(not available) V3.1: 5.3 MEDIUM V2.0: 5.0 MEDIUM |
CVE-2020-13387 |
Pexip Infinity before 23.4 has a lack of input validation, leading to temporary denial of service via H.323. Published: September 25, 2020; 12:23:03 AM -0400 |
V4.0:(not available) V3.1: 7.5 HIGH V2.0: 5.0 MEDIUM |
CVE-2019-7178 |
Pexip Infinity before 20.1 allows privilege escalation by restoring a system backup. Published: September 25, 2020; 12:23:03 AM -0400 |
V4.0:(not available) V3.1: 7.2 HIGH V2.0: 9.0 HIGH |
CVE-2019-7177 |
Pexip Infinity before 20.1 allows Code Injection onto nodes via an admin. Published: September 25, 2020; 12:23:03 AM -0400 |
V4.0:(not available) V3.1: 7.2 HIGH V2.0: 9.0 HIGH |
CVE-2018-10585 |
Pexip Infinity before 18 allows remote Denial of Service (XML parsing). Published: September 25, 2020; 12:23:03 AM -0400 |
V4.0:(not available) V3.1: 7.5 HIGH V2.0: 7.8 HIGH |
CVE-2018-10432 |
Pexip Infinity before 18 allows Remote Denial of Service (TLS handshakes in RTMP). Published: September 25, 2020; 12:23:03 AM -0400 |
V4.0:(not available) V3.1: 7.5 HIGH V2.0: 7.8 HIGH |
CVE-2017-17477 |
Pexip Infinity before 17 allows an unauthenticated remote attacker to achieve stored XSS via management web interface views. Published: September 25, 2020; 12:23:01 AM -0400 |
V4.0:(not available) V3.1: 6.1 MEDIUM V2.0: 4.3 MEDIUM |
CVE-2017-6551 |
Pexip Infinity before 14.2 allows remote attackers to cause a denial of service (service restart) or execute arbitrary code via vectors related to Conferencing Nodes. Published: May 02, 2017; 10:59:00 AM -0400 |
V4.0:(not available) V3.0: 9.8 CRITICAL V2.0: 7.5 HIGH |