Skip to main content

Vendor archive

kofax CVEs

Beta · best-effort

6 CVEs tagged to vendor kofax1 Critical, 1 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2022-25090

Published Mar 10, 2022

Printix Secure Cloud Print Management through 1.3.1106.0 creates a temporary temp.ini file in a directory with insecure permissions, leading to privilege escalation because of a r…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2022-25089

Published Mar 3, 2022

Printix Secure Cloud Print Management through 1.3.1106.0 incorrectly uses Privileged APIs to modify values in HKEY_LOCAL_MACHINE via UITasks.PersistentRegistryData.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-17289

Published Apr 18, 2019

An XML external entity (XXE) vulnerability in Kofax Front Office Server Administration Console version 4.1.1.11.0.5212 allows remote authenticated users to read arbitrary files vi…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-17288

Published Apr 18, 2019

Kofax Front Office Server version 4.1.1.11.0.5212 (both Thin Client and Administration Console) suffers from multiple authenticated stored XSS vulnerabilities via the (1) "Filenam…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-17287

Published Apr 18, 2019

In Kofax Front Office Server Administration Console 4.1.1.11.0.5212, some fields, such as passwords, are obfuscated in the front-end, but the cleartext value can be exfiltrated by…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-5294

Published Jan 1, 2015

The SaveMessage method in the LEADeMail.LEADSmtp.20 ActiveX control in LTCML14n.dll 14.0.0.34 in Kofax e-Transactions Sender Sendbox 2.5.0.933 allows remote attackers to write to…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1