Known Vulnerabilities for products from Thomsonreuters
Listed below are 8 of the newest known vulnerabilities associated with the vendor "Thomsonreuters".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2019-10679 json | Thomson Reuters Eikon 4.0.42144 allows all local users to modify the service executable file because of weak %PROGRAMFILES(X8... | 7.8 - HIGH | 2020-09-03 | 2020-09-11 |
| CVE-2019-8385 json | An issue was discovered in Thomson Reuters Desktop Extensions 1.9.0.358. An unauthenticated directory traversal and local fil... | 9.8 - CRITICAL | 2019-06-05 | 2019-06-06 |
| CVE-2018-14608 json | Thomson Reuters UltraTax CS 2017 on Windows has a password protection option; however, the level of protection might be incon... | 7.5 - HIGH | 2018-07-26 | 2019-10-03 |
| CVE-2018-14607 json | Thomson Reuters UltraTax CS 2017 on Windows, in a client/server configuration, transfers customer records and bank account nu... | 7.5 - HIGH | 2018-07-26 | 2019-10-03 |
| CVE-2015-5952 json | Directory traversal vulnerability in Thomson Reuters for FATCA before 5.2 allows remote attackers to execute arbitrary files ... | 9.8 - CRITICAL | 2020-01-15 | 2020-01-22 |
| CVE-2015-5951 json | A file upload issue exists in the specid parameter in Thomson Reuters FATCH before 5.2, which allows malicious users to uploa... | 9.9 - CRITICAL | 2020-01-06 | 2020-01-10 |
| CVE-2014-9141 json | The installer in Thomson Reuters Fixed Assets CS 13.1.4 and earlier uses weak permissions for connectbgdl.exe, which allows l... | Not Provided | 2014-12-03 | 2026-05-06 |
| CVE-2013-5912 json | VhttpdMgr in Thomson Reuters Velocity Analytics Vhayu Analytic Server 6.94 build 2995 allows remote attackers to execute arbi... | Not Provided | 2013-11-28 | 2026-04-29 |
Known software with vulnerabilities from Thomsonreuters
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Thomsonreuters | Eikon | 4.0.42144 |
| Application | Thomsonreuters | Fatca | 5.2 |
| Application | Thomsonreuters | Ultratax Cs 2017 | - |
| Application | Thomsonreuters | Velocity Analytics Vhayu Analytic Server | 6.94 |