Vulnerabilities > Iobit > High

DATE CVE VULNERABILITY TITLE RISK
2024-07-31 CVE-2024-7325 Uncontrolled Search Path Element vulnerability in Iobit Driver Booster 11.0.0.0
A vulnerability was found in IObit Driver Booster 11.0.0.0.
local
low complexity
iobit CWE-427
7.8
2023-03-26 CVE-2023-1646 Out-of-bounds Write vulnerability in Iobit Malware Fighter 9.4.0.776
A vulnerability was found in IObit Malware Fighter 9.4.0.776.
local
low complexity
iobit CWE-787
7.8
2022-11-18 CVE-2022-37197 Unquoted Search Path or Element vulnerability in Iobit Iotransfer 4.0
IOBit IOTransfer V4 is vulnerable to Unquoted Service Path.
local
low complexity
iobit CWE-428
7.8
2022-07-06 CVE-2022-24138 Files or Directories Accessible to External Parties vulnerability in Iobit Advanced Systemcare 15
IOBit Advanced System Care (Asc.exe) 15 and Action Download Center both download components of IOBit suite into ProgramData folder, ProgramData folder has "rwx" permissions for unprivileged users.
local
low complexity
iobit CWE-552
7.8
2022-07-06 CVE-2022-24139 Exposure of Resource to Wrong Sphere vulnerability in Iobit Advanced System Care 15
In IOBit Advanced System Care (AscService.exe) 15, an attacker with SEImpersonatePrivilege can create a named pipe with the same name as one of ASCService's named pipes.
local
low complexity
iobit CWE-668
7.8
2022-02-18 CVE-2021-44968 Use After Free vulnerability in Iobit Advanced Systemcare 15
A Use after Free vulnerability exists in IOBit Advanced SystemCare 15 pro via requests sent in sequential order using the IOCTL driver codes, which could let a malicious user execute arbitrary code or a Denial of Service (system crash).
local
low complexity
iobit CWE-416
7.8
2021-07-07 CVE-2021-21786 Improper Privilege Management vulnerability in Iobit Advanced Systemcare Ultimate 14.2.0.220
A privilege escalation vulnerability exists in the IOCTL 0x9c406144 handling of IOBit Advanced SystemCare Ultimate 14.2.0.220.
local
low complexity
iobit CWE-269
7.8
2021-07-07 CVE-2021-21787 Unspecified vulnerability in Iobit Advanced Systemcare Ultimate 14.2.0.220
A privilege escalation vulnerability exists in the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O write requests.
local
low complexity
iobit
8.8
2021-07-07 CVE-2021-21788 Unspecified vulnerability in Iobit Advanced Systemcare Ultimate 14.2.0.220
A privilege escalation vulnerability exists in the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O write requests.
local
low complexity
iobit
8.8
2021-07-07 CVE-2021-21789 Unspecified vulnerability in Iobit Advanced Systemcare Ultimate 14.2.0.220
A privilege escalation vulnerability exists in the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O write requests.
local
low complexity
iobit
8.8