CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1

CVE-2020-18171 HIGH

TechSmith Snagit 19.1.0.2653 uses Object Linking and Embedding (OLE) which can allow attackers to obfuscate and embed crafted files used to escalate privileges…

CVSS 8.8 EPSS 0.40% Jul 26, 2021
CVE-2020-18169 HIGH

A vulnerability in the Windows installer XML (WiX) toolset of TechSmith Snagit 19.1.1.2860 allows attackers to escalate privileges. NOTE: Exploit of the Snagit…

CVSS 7.8 EPSS 0.49% Jul 26, 2021
CVE-2020-11541 MEDIUM

In TechSmith SnagIt 11.2.1 through 20.0.3, an XML External Entity (XXE) injection issue exists that would allow a local attacker to exfiltrate data under the l…

CVSS 5.5 EPSS 0.33% May 8, 2020
CVE-2019-13382 HIGH

UploaderService in SnagIT 2019.1.2 allows elevation of privilege by placing an invalid presentation file in %PROGRAMDATA%\TechSmith\TechSmith Recorder\QueuedPr…

CVSS 7.8 EPSS 1.56% Jul 26, 2019
CVE-2018-14446 HIGH

MP4Integer32Property::Read in atom_avcC.cpp in MP4v2 2.1.0 allows remote attackers to cause a denial of service (heap-based buffer overflow and application cra…

CVSS 8.8 EPSS 2.38% Jul 20, 2018
CVE-2018-14403 CRITICAL

MP4NameFirstMatches in mp4util.cpp in MP4v2 2.0.0 mishandles substrings of atom names, leading to use of an inappropriate data type for associated atoms. The r…

CVSS 9.8 EPSS 2.60% Jul 19, 2018
CVE-2018-14379 HIGH

MP4Atom::factory in mp4atom.cpp in MP4v2 2.0.0 incorrectly uses the MP4ItemAtom data type in a certain case where MP4DataAtom is required, which allows remote…

CVSS 8.8 EPSS 2.18% Jul 18, 2018
CVE-2018-14326 HIGH

In MP4v2 2.0.0, there is an integer overflow (with resultant memory corruption) when resizing MP4Array for the ftyp atom in mp4array.h.

CVSS 8.8 EPSS 1.87% Jul 16, 2018
CVE-2018-14325 HIGH

In MP4v2 2.0.0, there is an integer underflow (with resultant memory corruption) when parsing MP4Atom in mp4atom.cpp.

CVSS 8.8 EPSS 1.98% Jul 16, 2018
CVE-2018-14054 CRITICAL

A double free exists in the MP4StringProperty class in mp4property.cpp in MP4v2 2.0.0. A dangling pointer is freed again in the destructor once an exception is…

CVSS 9.8 EPSS 2.60% Jul 13, 2018
CVE-2015-5487 MEDIUM

Cross-site scripting (XSS) vulnerability in the Camtasia Relay module 6.x-2.x before 6.x-3.2 and 7.x-2.x before 7.x-1.3 for Drupal allows remote authenticated…

CVSS 4.3 EPSS 1.18% Aug 18, 2015
CVE-2010-5234 MEDIUM

Multiple untrusted search path vulnerabilities in Camtasia Studio 7.0.1 build 57 allow local users to gain privileges via a Trojan horse (1) MFC90ENU.DLL or (2…

CVSS 6.9 EPSS 0.49% Sep 7, 2012
CVE-2010-3130 HIGH

Untrusted search path vulnerability in TechSmith Snagit all versions 10.x and 11.x allows local users, and possibly remote attackers, to execute arbitrary code…

CVSS 9.3 EPSS 7.83% Aug 26, 2010
CVE-2008-6061 MEDIUM

Cross-site scripting (XSS) vulnerability in ActionScript in arbitrary Shockwave Flash (SWF) controller files created by Techsmith Camtasia Studio before 5 allo…

CVSS 4.3 EPSS 4.08% Feb 5, 2009

Showing 1 to 14 CVEs · page 1