Vulnerabilities > Iobit > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-04-30 CVE-2019-6494 Unspecified vulnerability in Iobit Malware Fighter 6.2
IMFForceDelete.sys in IObit Malware Fighter 6.2 allows a low privileged user to send IOCTL 0x8016E000 along with a user defined string to a file; that file will be promptly deleted regardless of access controls.
network
low complexity
iobit
6.5
2019-04-11 CVE-2019-6493 Memory Leak vulnerability in Iobit Smart Defrag 6
SmartDefragDriver.sys (2.0) in IObit Smart Defrag 6 never frees an executable kernel pool that is allocated with user defined bytes and size when IOCTL 0x9C401CC0 is called.
local
low complexity
iobit CWE-401
5.5
2019-03-21 CVE-2019-6492 Memory Leak vulnerability in Iobit Smart Defrag 6.0
SmartDefragDriver.sys (2.0) in IObit Smart Defrag 6 never frees an executable kernel pool that is allocated with user defined bytes and size when IOCTL 0x9C401CC4 is called.
local
low complexity
iobit CWE-401
5.5
2018-09-26 CVE-2018-16713 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Iobit Advanced Systemcare 1.2.0.5
IObit Advanced SystemCare, which includes Monitor_win10_x64.sys or Monitor_win7_x64.sys, 1.2.0.5 (and possibly earlier versions) allows a user to send an IOCTL (0x9C402084) with a buffer containing user defined content.
network
low complexity
iobit CWE-119
6.5
2018-09-26 CVE-2018-16712 Information Exposure vulnerability in Iobit Advanced Systemcare 1.2.0.5
IObit Advanced SystemCare, which includes Monitor_win10_x64.sys or Monitor_win7_x64.sys, 1.2.0.5 (and possibly earlier versions) allows a user to send a specially crafted IOCTL 0x9C406104 to read physical memory.
network
low complexity
iobit CWE-200
6.5