Vulnerabilities > Iobit > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-04-30 CVE-2019-6494 Unspecified vulnerability in Iobit Malware Fighter 6.2
IMFForceDelete.sys in IObit Malware Fighter 6.2 allows a low privileged user to send IOCTL 0x8016E000 along with a user defined string to a file; that file will be promptly deleted regardless of access controls.
network
low complexity
iobit
5.5
2018-10-19 CVE-2018-18026 Out-of-bounds Write vulnerability in Iobit Malware Fighter
IMFCameraProtect.sys in IObit Malware Fighter 6.2 (and possibly lower versions) is vulnerable to a stack-based buffer overflow.
local
low complexity
iobit CWE-787
4.6
2018-09-26 CVE-2018-16713 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Iobit Advanced Systemcare 1.2.0.5
IObit Advanced SystemCare, which includes Monitor_win10_x64.sys or Monitor_win7_x64.sys, 1.2.0.5 (and possibly earlier versions) allows a user to send an IOCTL (0x9C402084) with a buffer containing user defined content.
network
low complexity
iobit CWE-119
6.8
2018-09-26 CVE-2018-16712 Information Exposure vulnerability in Iobit Advanced Systemcare 1.2.0.5
IObit Advanced SystemCare, which includes Monitor_win10_x64.sys or Monitor_win7_x64.sys, 1.2.0.5 (and possibly earlier versions) allows a user to send a specially crafted IOCTL 0x9C406104 to read physical memory.
network
low complexity
iobit CWE-200
6.8
2018-09-26 CVE-2018-16711 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Iobit Advanced Systemcare 1.2.0.5
IObit Advanced SystemCare, which includes Monitor_win10_x64.sys or Monitor_win7_x64.sys, 1.2.0.5 (and possibly earlier versions) allows a user to send an IOCTL (0x9C402088) with a buffer containing user defined content.
network
low complexity
iobit CWE-119
6.5
2018-03-27 CVE-2018-9044 Improper Input Validation vulnerability in Iobit Advanced Systemcare Ultimate 11.0.1.58
In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win10_x64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c4060cc.
local
low complexity
iobit CWE-20
6.1
2018-03-27 CVE-2018-9043 Improper Input Validation vulnerability in Iobit Advanced Systemcare Ultimate 11.0.1.58
In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win10_x64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c4060d0.
local
low complexity
iobit CWE-20
6.1
2018-03-27 CVE-2018-9042 Improper Input Validation vulnerability in Iobit Advanced Systemcare Ultimate 11.0.1.58
In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win10_x64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c402000.
local
low complexity
iobit CWE-20
6.1
2018-03-27 CVE-2018-9041 Improper Input Validation vulnerability in Iobit Advanced Systemcare Ultimate 11.0.1.58
In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win10_x64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c402004.
local
low complexity
iobit CWE-20
6.1
2018-03-27 CVE-2018-9040 Improper Input Validation vulnerability in Iobit Advanced Systemcare Ultimate 11.0.1.58
In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win10_x64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c4060c4.
local
low complexity
iobit CWE-20
6.1