Vulnerabilities (CVE)

Filtered by vendor Consona Subscribe
Filtered by product Consona Subscriber Agent
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2010-1906 2 Consona, Microsoft 6 Consona Dynamic Agent, Consona Repair Manager, Consona Subscriber Activation and 3 more 2024-02-28 7.2 HIGH N/A
tgsrv.exe in the Repair Service in Consona Dynamic Agent, Repair Manager, Subscriber Activation, and Subscriber Agent relies on a predictable timestamp field to validate input to the \\.\pipe\__RepairService_pipe__company named pipe, which allows remote authenticated users to execute arbitrary code by obtaining the current time from (1) tcpip.sys or (2) an SMB2 service.