CVE-2018-10432
Published Sep 25, 2020Pexip Infinity before 18 allows Remote Denial of Service (TLS handshakes in RTMP).
Vendor archive
55 CVEs tagged to vendor pexip — 5 Critical, 41 High, 9 Medium, 0 Low, 0 Unrated.
Pexip Infinity before 18 allows Remote Denial of Service (TLS handshakes in RTMP).
Pexip Infinity before 17 allows an unauthenticated remote attacker to achieve stored XSS via management web interface views.
The client API authentication mechanism in Pexip Infinity before 10 allows remote attackers to gain privileges via a crafted request.
Pexip Infinity before 14.2 allows remote attackers to cause a denial of service (service restart) or execute arbitrary code via vectors related to Conferencing Nodes.
Pexip Infinity before 8 uses the same SSH host keys across different customers' installations, which allows man-in-the-middle attackers to spoof Management and Conferencing Nodes…