CVE-2020-12824
https://notcve.org/view.php?id=CVE-2020-12824
Pexip Infinity 23.x before 23.3 has improper input validation, leading to a temporary software abort via RTP. Pexip Infinity versiones 23.x anteriores a 23.3, presenta una comprobación inapropiada de la entrada, conllevando a un aborto temporal del software por medio de RTP • https://docs.pexip.com/admin/security_bulletins.htm https://www.pexip.com • CWE-20: Improper Input Validation •
CVE-2020-11805
https://notcve.org/view.php?id=CVE-2020-11805
Pexip Reverse Proxy and TURN Server before 6.1.0 has Incorrect UDP Access Control via TURN. Pexip Reverse Proxy y TURN Server versiones anteriores a 6.1.0, presenta un Control de Acceso UDP Incorrecto por medio de TURN • https://docs.pexip.com/admin/security_bulletins.htm • CWE-20: Improper Input Validation •
CVE-2017-17477
https://notcve.org/view.php?id=CVE-2017-17477
Pexip Infinity before 17 allows an unauthenticated remote attacker to achieve stored XSS via management web interface views. Pexip Infinity versiones anteriores a 17, permite a un atacante remoto no autenticado lograr un ataque de tipo XSS almacenado por medio de unas vistas de la interfaz web de administración • https://docs.pexip.com/admin/security_bulletins.htm https://www.pexip.com/security-bulletins • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2019-7178
https://notcve.org/view.php?id=CVE-2019-7178
Pexip Infinity before 20.1 allows privilege escalation by restoring a system backup. una copia de seguridad del sistema en Pexip Infinity. (CVE-2019-7178) • https://docs.pexip.com/admin/release_notes.htm https://docs.pexip.com/admin/security_bulletins.htm • CWE-20: Improper Input Validation •
CVE-2019-7177
https://notcve.org/view.php?id=CVE-2019-7177
Pexip Infinity before 20.1 allows Code Injection onto nodes via an admin. Pexip Infinity versiones anteriores a 20.1, permite una Inyección de Código en unos nodos por medio de un administrador • https://docs.pexip.com/admin/release_notes.htm https://docs.pexip.com/admin/security_bulletins.htm • CWE-94: Improper Control of Generation of Code ('Code Injection') •