← Back

Tinycheck

tinycheck

Vendor: Kaspersky • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Kaspersky
1Tinycheck
Nov 21, 2024
Jan 26, 2021
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
TinyCheck before commits 9fd360d and ea53de8 allowed an authenticated attacker to send an HTTP GET request to the crafted URLs.
1Kaspersky
1Tinycheck
Nov 21, 2024
Jan 26, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
TinyCheck before commits 9fd360d and ea53de8 was vulnerable to command injection due to insufficient checks of input parameters in several places.
1Kaspersky
1Tinycheck
Nov 21, 2024
Jan 19, 2021
N/A· v4
9.8 CRITICAL· v3
5.0 MEDIUM· v2
In TinyCheck before commits 9fd360d and ea53de8, the installation script of the tool contained hard-coded credentials to the backend part of the tool. This information could be used by an attacker for unauthorized access...Show more
In TinyCheck before commits 9fd360d and ea53de8, the installation script of the tool contained hard-coded credentials to the backend part of the tool. This information could be used by an attacker for unauthorized access to remote data.Show less