ZeroHour

Vulnerabilities

13 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2023-30131
An issue discovered in IXP EasyInstall 6.6.14884.0 allows attackers to run arbitrary commands, gain escalated privilege, and cause other unspecified impacts via

An issue discovered in IXP EasyInstall 6.6.14884.0 allows attackers to run arbitrary commands, gain escalated privilege, and cause other unspecified impacts via unauthenticated API calls.

NVD description · AI analysis pending
9.8
group max
<1% PoC
  • ixpdata easyinstall
CVE-2022-35120
IXPdata EasyInstall 6.6.14725 contains an access control issue.

IXPdata EasyInstall 6.6.14725 contains an access control issue.

NVD description · AI analysis pending
8.8<1% PoC
  • ixpdata easyinstall
CVE-2019-19896
In IXP EasyInstall 6.2.13723, there is Remote Code Execution via weak permissions on the Engine Service share.

In IXP EasyInstall 6.2.13723, there is Remote Code Execution via weak permissions on the Engine Service share. The default file permissions of the IXP$ share on the server allows modification of directories and files (e.g., bat-scripts), which allows execution of code in the context of NT AUTHORITY\SYSTEM on the target server and clients.

NVD description · AI analysis pending
9.9
group max
3% PoC
  • ixpdata easyinstall