Known Vulnerabilities for Nexacro by Tobesoft
Listed below are 6 of the newest known vulnerabilities associated with "Nexacro" by "Tobesoft".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-26625 json | Insufficient Verification of input Data leading to arbitrary file download and execute was discovered in Nexacro platform. Th... | 8.8 - HIGH | 2022-04-19 | 2022-04-27 |
| CVE-2021-26613 json | improper input validation vulnerability in nexacro permits copying file to the startup folder using rename method. | 7.5 - HIGH | 2022-02-09 | 2022-02-15 |
| CVE-2021-26612 json | An improper input validation leading to arbitrary file creation was discovered in copy method of Nexacro platform. Remote att... | 9.8 - CRITICAL | 2021-11-30 | 2021-12-01 |
| CVE-2021-26607 json | An Improper input validation in execDefaultBrowser method of NEXACRO17 allows a remote attacker to execute arbitrary command ... | 9.8 - CRITICAL | 2021-10-26 | 2021-11-01 |
| CVE-2020-7874 json | Download of code without integrity check vulnerability in NEXACRO14 Runtime ActiveX control of tobesoft Co., Ltd allows the a... | 8.8 - HIGH | 2021-09-09 | 2021-09-22 |
| CVE-2019-19167 json | Tobesoft Nexacro v2019.9.25.1 and earlier version have an arbitrary code execution vulnerability by using method supported by... | 9.8 - CRITICAL | 2020-05-06 | 2020-05-11 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Tobesoft | Nexacro | 2019.9.25.1 |