Vulnerabilities (CVE)

Filtered by vendor Clientsoftware Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-5158 1 Clientsoftware 1 Wincome Mpd Total 2024-02-04 7.5 HIGH N/A
Client Software WinCom LPD Total 3.0.2.623 and earlier allows remote attackers to bypass authentication and perform administrative actions via vectors involving "simply skipping the auth stage."
CVE-2008-5159 1 Clientsoftware 1 Wincome Mpd Total 2024-02-04 10.0 HIGH N/A
Integer overflow in the remote administration protocol processing in Client Software WinCom LPD Total 3.0.2.623 and earlier allows remote attackers to cause a denial of service (crash) via a large string length argument, which triggers memory corruption.
CVE-2008-5176 1 Clientsoftware 1 Wincom Mpd Total 2024-02-04 9.3 HIGH N/A
Multiple buffer overflows in Client Software WinCom LPD Total 3.0.2.623 and earlier allow remote attackers to execute arbitrary code via (1) a long 0x02 command to the remote administration service on TCP port 13500 or (2) a long invalid control filename to LPDService.exe on TCP port 515.