Vulnerabilities > Connectwise > Control > High

DATE CVE VULNERABILITY TITLE RISK
2023-02-13 CVE-2023-25719 Injection vulnerability in Connectwise Control 19.3.25270.7185/22.9.10032
ConnectWise Control before 22.9.10032 (formerly known as ScreenConnect) fails to validate user-supplied parameters such as the Bin/ConnectWiseControl.Client.exe h parameter.
network
low complexity
connectwise CWE-74
8.8
2020-01-23 CVE-2019-16514 Unrestricted Upload of File with Dangerous Type vulnerability in Connectwise Control 19.3.25270.7185
An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185.
network
low complexity
connectwise CWE-434
7.2
2020-01-23 CVE-2019-16513 Cross-Site Request Forgery (CSRF) vulnerability in Connectwise Control 19.3.25270.7185
An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185.
network
low complexity
connectwise CWE-352
8.8