Rufus
Akeo · 4 CVEs
CVE-2026-23988
HIGH
Rufus has Local Privilege Escalation via TOCTOU Race Condition in Fido Script Handling
Jan 22, 2026
CVE-2019-1010101
CRITICAL
Akeo Consulting Rufus 3.0 and earlier is affected by: Insecure Permissions. The impact is: arbitrary code execution wit…
Jul 19, 2019
CVE-2019-1010100
HIGH
Akeo Consulting Rufus 3.0 and earlier is affected by: DLL search order hijacking. The impact is: Arbitrary code executi…
Jul 19, 2019
CVE-2017-13083
HIGH
Akeo Consulting Rufus prior to version 2.17.1187 does not adequately validate the integrity of updates downloaded over…
Oct 18, 2017
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2026-23988 | Rufus has Local Privilege Escalation via TOCTOU Race Condition in Fido Script Handling | HIGH | 0.21% | Jan 22, 2026 |
| CVE-2019-1010101 | Akeo Consulting Rufus 3.0 and earlier is affected by: Insecure Permissions. The impact is: arbitrary code execution with escalation of privilege. The component… | CRITICAL | 3.42% | Jul 19, 2019 |
| CVE-2019-1010100 | Akeo Consulting Rufus 3.0 and earlier is affected by: DLL search order hijacking. The impact is: Arbitrary code execution WITH escalation of privilege. The com… | HIGH | 1.33% | Jul 19, 2019 |
| CVE-2017-13083 | Akeo Consulting Rufus prior to version 2.17.1187 does not adequately validate the integrity of updates downloaded over HTTP, allowing an attacker to easily con… | HIGH | 0.96% | Oct 18, 2017 |
Showing 1 to 4 of 4 CVEs