Vulnerabilities > Iobit > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-03-26 CVE-2023-1639 Improper Resource Shutdown or Release vulnerability in Iobit Malware Fighter 9.4.0.776
A vulnerability classified as problematic has been found in IObit Malware Fighter 9.4.0.776.
local
low complexity
iobit CWE-404
5.5
2022-09-06 CVE-2022-37771 Incorrect Permission Assignment for Critical Resource vulnerability in Iobit Malware Fighter 9.2
IObit Malware Fighter v9.2 for Microsoft Windows lacks tamper protection, allowing authenticated attackers with Administrator privileges to modify processes within the application and escalate privileges to SYSTEM via a crafted executable.
local
low complexity
iobit CWE-732
6.7
2022-07-06 CVE-2022-24140 Download of Code Without Integrity Check vulnerability in Iobit products
IOBit Advanced System Care 15, iTop Screen Recorder 2.1, iTop VPN 3.2, Driver Booster 9, and iTop Screenshot sends HTTP requests in their update procedure in order to download a config file.
network
high complexity
iobit CWE-494
6.6
2022-07-06 CVE-2022-24141 Unspecified vulnerability in Iobit Itop VPN 3.2
The iTopVPNmini.exe component of iTop VPN 3.2 will try to connect to datastate_iTopVPN_Pipe_Server on a loop.
network
low complexity
iobit
5.4
2021-08-05 CVE-2021-21785 Unspecified vulnerability in Iobit Advanced Systemcare Ultimate 14.2.0.220
An information disclosure vulnerability exists in the IOCTL 0x9c40a148 handling of IOBit Advanced SystemCare Ultimate 14.2.0.220.
local
low complexity
iobit
5.5
2021-08-05 CVE-2021-21790 Unspecified vulnerability in Iobit Advanced Systemcare Ultimate 14.2.0.220
An information disclosure vulnerability exists in the the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O read requests.
local
low complexity
iobit
5.5
2021-08-05 CVE-2021-21791 Unspecified vulnerability in Iobit Advanced Systemcare Ultimate 14.2.0.220
An information disclosure vulnerability exists in the the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O read requests.
local
low complexity
iobit
5.5
2021-08-05 CVE-2021-21792 Unspecified vulnerability in Iobit Advanced Systemcare Ultimate 14.2.0.220
An information disclosure vulnerability exists in the the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O read requests.
local
low complexity
iobit
5.5
2021-02-05 CVE-2020-10234 Unspecified vulnerability in Iobit Advanced Systemcare 13.2
The AscRegistryFilter.sys kernel driver in IObit Advanced SystemCare 13.2 allows an unprivileged user to send an IOCTL to the device driver.
network
low complexity
iobit
6.5
2020-06-30 CVE-2020-15401 Link Following vulnerability in Iobit Malware Fighter 8.0.2.547
IOBit Malware Fighter Pro 8.0.2.547 allows local users to gain privileges for file deletion by manipulating malicious flagged file locations with an NTFS junction and an Object Manager symbolic link.
local
low complexity
iobit CWE-59
4.4