Vulnerabilities > Flexera > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-01-26 CVE-2023-29081 Incorrect Default Permissions vulnerability in Flexera Installshield
A vulnerability has been reported in Suite Setups built with versions prior to InstallShield 2023 R2.
local
low complexity
flexera CWE-276
5.5
2021-09-17 CVE-2020-12080 Improper Input Validation vulnerability in Flexera Flexnet Publisher 11.16.6
A Denial of Service vulnerability has been identified in FlexNet Publisher's lmadmin.exe version 11.16.6.
network
low complexity
flexera CWE-20
5.0
2021-09-17 CVE-2020-12083 Unspecified vulnerability in Flexera Flexnet Code Insight
An elevated privileges issue related to Spring MVC calls impacts Code Insight v7.x releases up to and including 2020 R1 (7.11.0-64).
network
low complexity
flexera
6.5
2020-07-31 CVE-2020-12081 Information Exposure vulnerability in Flexera Flexnet Publisher 11.14.0.2
An information disclosure vulnerability has been identified in FlexNet Publisher lmadmin.exe 11.14.0.2.
network
low complexity
flexera CWE-200
5.0
2020-04-21 CVE-2019-8961 Resource Exhaustion vulnerability in Flexera Flexnet Publisher 11.16.2
A Denial of Service vulnerability related to stack exhaustion has been identified in FlexNet Publisher lmadmin.exe 11.16.2.
network
low complexity
flexera CWE-400
5.0
2020-04-21 CVE-2019-8960 Improper Check for Unusual or Exceptional Conditions vulnerability in Flexera Flexnet Publisher 11.16.2
A Denial of Service vulnerability related to command handling has been identified in FlexNet Publisher lmadmin.exe version 11.16.2.
network
low complexity
flexera CWE-754
5.0
2019-03-21 CVE-2018-20034 A Denial of Service vulnerability related to adding an item to a list in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier allows a remote attacker to send a combination of messages to lmgrd or the vendor daemon, causing the heartbeat between lmgrd and the vendor daemon to stop, and the vendor daemon to shut down.
network
low complexity
flexera oracle
5.0
2019-03-21 CVE-2018-20032 A Denial of Service vulnerability related to message decoding in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier allows a remote attacker to send a combination of messages to lmgrd or the vendor daemon, causing the heartbeat between lmgrd and the vendor daemon to stop, and the vendor daemon to shut down.
network
low complexity
flexera oracle
5.0
2019-03-21 CVE-2018-20031 A Denial of Service vulnerability related to preemptive item deletion in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier allows a remote attacker to send a combination of messages to lmgrd or the vendor daemon, causing the heartbeat between lmgrd and the vendor daemon to stop, and the vendor daemon to shut down.
network
low complexity
flexera oracle
5.0