Known Vulnerabilities for products from 1e
Listed below are 10 of the newest known vulnerabilities associated with the vendor "1e".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-45163 json | The 1E-Exchange-CommandLinePing instruction that is part of the Network product pack available on the 1E Exchange does not p... | 7.2 - HIGH | 2023-11-06 | 2023-11-14 |
| CVE-2023-45162 json | Affected 1E Platform versions have a Blind SQL Injection vulnerability that can lead to arbitrary code execution. Applicat... | 9.8 - CRITICAL | 2023-10-13 | 2023-10-20 |
| CVE-2023-45161 json | The 1E-Exchange-URLResponseTime instruction that is part of the Network product pack available on the 1E Exchange does not pr... | 7.2 - HIGH | 2023-11-06 | 2023-11-14 |
| CVE-2023-45160 json | In the affected version of the 1E Client, an ordinary user could subvert downloaded instruction resource files, e.g., to sub... | 8.8 - HIGH | 2023-10-05 | 2023-11-02 |
| CVE-2023-45159 json | 1E Client installer can perform arbitrary file deletion on protected files. A non-privileged user could provide a symbol... | 8.4 - HIGH | 2023-10-05 | 2023-10-19 |
| CVE-2023-5964 json | The 1E-Exchange-DisplayMessageinstruction that is part of the End-User Interaction product pack available on the 1E Exchange... | 7.2 - HIGH | 2023-11-06 | 2023-11-14 |
| CVE-2020-27645 json | The Inventory module of the 1E Client 5.0.0.745 doesn't handle an unquoted path when executing %PROGRAMFILES%\1E\Client\Tachy... | 8.8 - HIGH | 2020-12-29 | 2021-01-04 |
| CVE-2020-27644 json | The Inventory module of the 1E Client 5.0.0.745 doesn't handle an unquoted path when executing %PROGRAMFILES%\1E\Client\Tachy... | 8.8 - HIGH | 2020-12-29 | 2021-01-03 |
| CVE-2020-27643 json | The %PROGRAMDATA%\1E\Client directory in 1E Client 5.0.0.745 and 4.1.0.267 allows remote authenticated users and local users ... | 6.5 - MEDIUM | 2020-12-29 | 2021-07-21 |
| CVE-2020-16268 json | The MSI installer in 1E Client 4.1.0.267 and 5.0.0.745 allows remote authenticated users and local users to gain elevated pri... | 8.8 - HIGH | 2020-12-29 | 2021-07-21 |
Known software with vulnerabilities from 1e
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | 1e | Client | 4.1.0.267 |