Vulnerabilities > Techsmith > Snagit > 19.1.0.2653

DATE CVE VULNERABILITY TITLE RISK
2021-07-26 CVE-2020-18171 Improper Privilege Management vulnerability in Techsmith Snagit 19.1.0.2653
TechSmith Snagit 19.1.0.2653 uses Object Linking and Embedding (OLE) which can allow attackers to obfuscate and embed crafted files used to escalate privileges.
local
low complexity
techsmith CWE-269
8.8
2020-05-08 CVE-2020-11541 XXE vulnerability in Techsmith Snagit
In TechSmith SnagIt 11.2.1 through 20.0.3, an XML External Entity (XXE) injection issue exists that would allow a local attacker to exfiltrate data under the local Administrator account.
local
low complexity
techsmith CWE-611
5.5