Page 2 of 8 results (0.004 seconds)

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

A vulnerability in NoMachine App for Android 5.0.63 and earlier allows attackers to alter environment variables via unspecified vectors. Una vulnerabilidad en NoMachine App para Android 5.0.63 y anteriores permite que los atacantes alteren las variables de entorno mediante vectores sin especificar. • http://jvn.jp/en/jp/JVN14451678/index.html https://www.nomachine.com/TR06P08619 • CWE-20: Improper Input Validation •

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 2

An uninitialised stack variable in the nxfuse component that is part of the Open Source DokanFS library shipped with NoMachine 6.0.66_2 and earlier allows a local low privileged user to gain elevation of privileges on Windows 7 (32 and 64bit), and denial of service for Windows 8 and 10. Una variable de pila no inicializada en el componente nxfuse de la biblioteca Open Source DokanFS incluida en NoMachine, en versiones 6.0.66_2 y anteriores, permite que un usuario local con pocos privilegios eleve sus privilegios en Windows 7 (32 y 64 bits) y que provoque una denegación de servicio (DoS) en Windows 8 y 10. NoMachine versions prior to 6.0.80 (x64) suffer from an nxfuse privilege escalation vulnerability. • https://www.exploit-db.com/exploits/44167 https://www.exploit-db.com/exploits/44168 https://www.fidusinfosec.com/nomachine-road-code-execution-without-fuzzing-cve-2018-6947 https://www.nomachine.com/SU02P00194 https://www.nomachine.com/SU02P00195 https://www.nomachine.com/TR02P08408 • CWE-665: Improper Initialization •

CVSS: 9.0EPSS: 0%CPEs: 3EXPL: 1

An unspecified server utility in NoMachine before 5.3.10 on Mac OS X and Linux allows authenticated users to gain privileges by gaining access to local files. Una utilidad del servidor sin especificar en NoMachine en versiones anteriores a la 5.3.10 en Mac OS X y Linux permite que usuarios autenticados obtengan privilegios obteniendo acceso a archivos locales. • https://www.exploit-db.com/exploits/42460 https://www.nomachine.com/SU08O00185 https://www.nomachine.com/forums/topic/security-advisory-nomachine-privileges-escalation-vulnerability • CWE-276: Incorrect Default Permissions •