Vulnerabilities > Iobit > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-08-05 CVE-2021-21791 Unspecified vulnerability in Iobit Advanced Systemcare Ultimate 14.2.0.220
An information disclosure vulnerability exists in the the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O read requests.
local
low complexity
iobit
5.5
2021-08-05 CVE-2021-21792 Unspecified vulnerability in Iobit Advanced Systemcare Ultimate 14.2.0.220
An information disclosure vulnerability exists in the the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O read requests.
local
low complexity
iobit
5.5
2021-02-05 CVE-2020-10234 Unspecified vulnerability in Iobit Advanced Systemcare 13.2
The AscRegistryFilter.sys kernel driver in IObit Advanced SystemCare 13.2 allows an unprivileged user to send an IOCTL to the device driver.
network
low complexity
iobit
6.5
2020-06-30 CVE-2020-15401 Link Following vulnerability in Iobit Malware Fighter 8.0.2.547
IOBit Malware Fighter Pro 8.0.2.547 allows local users to gain privileges for file deletion by manipulating malicious flagged file locations with an NTFS junction and an Object Manager symbolic link.
local
low complexity
iobit CWE-59
4.4
2019-04-30 CVE-2019-6494 Unspecified vulnerability in Iobit Malware Fighter 6.2
IMFForceDelete.sys in IObit Malware Fighter 6.2 allows a low privileged user to send IOCTL 0x8016E000 along with a user defined string to a file; that file will be promptly deleted regardless of access controls.
network
low complexity
iobit
6.5
2019-04-11 CVE-2019-6493 Memory Leak vulnerability in Iobit Smart Defrag 6
SmartDefragDriver.sys (2.0) in IObit Smart Defrag 6 never frees an executable kernel pool that is allocated with user defined bytes and size when IOCTL 0x9C401CC0 is called.
local
low complexity
iobit CWE-401
5.5
2019-03-21 CVE-2019-6492 Memory Leak vulnerability in Iobit Smart Defrag 6.0
SmartDefragDriver.sys (2.0) in IObit Smart Defrag 6 never frees an executable kernel pool that is allocated with user defined bytes and size when IOCTL 0x9C401CC4 is called.
local
low complexity
iobit CWE-401
5.5
2018-09-26 CVE-2018-16713 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Iobit Advanced Systemcare 1.2.0.5
IObit Advanced SystemCare, which includes Monitor_win10_x64.sys or Monitor_win7_x64.sys, 1.2.0.5 (and possibly earlier versions) allows a user to send an IOCTL (0x9C402084) with a buffer containing user defined content.
network
low complexity
iobit CWE-119
6.5
2018-09-26 CVE-2018-16712 Information Exposure vulnerability in Iobit Advanced Systemcare 1.2.0.5
IObit Advanced SystemCare, which includes Monitor_win10_x64.sys or Monitor_win7_x64.sys, 1.2.0.5 (and possibly earlier versions) allows a user to send a specially crafted IOCTL 0x9C406104 to read physical memory.
network
low complexity
iobit CWE-200
6.5