Vulnerabilidades em LizardByte
11 resultadosAnálise Vexday
LizardByte apresenta 11 vulnerabilidades catalogadas, das quais 2 são críticas, mas nenhuma está sob exploração ativa conhecida. O risco é moderado e estável, com apenas 1 vulnerabilidade publicada nos últimos 90 dias, indicando que a superfície de ataque não se expandiu recentemente. A fraqueza predominante (CWE-428) sugere deficiências em validação de entrada, requerendo monitoramento contínuo mas sem urgência imediata de ação.
CVE-2024-51738HIGHSunshine improperly enforces pairing protocol request orderEPSS 0.6%CVE-2024-31221MEDIUMClients removed during unpairing process may regain access if Sunshine was not restartedEPSS 0.5%CVE-2024-31220HIGHSunshine vulnerable to remote unauthenticated arbitrary file readEPSS 0.5%CVE-2024-45407MEDIUMSunshine has incorrect state management during pairing process may lead to incorrectly authorized clientEPSS 0.3%CVE-2026-32253CRITICALSunshine: Authentication bypass via improper client certificate validationEPSS 0.3%CVE-2024-31226MEDIUMSunshine's unquoted executable path could lead to hijacked execution flowEPSS 0.2%CVE-2025-54081MEDIUMSunshineService Has Unquoted Service Path That Allows Local SYSTEM Code ExecutionEPSS 0.2%CVE-2025-10198HIGHLizardBytes Sunshine for Windows contains a DLL search-order hijacking vulnerabilityEPSS 0.2%CVE-2025-53096MEDIUMSunshine clickjacking in the UI leads to unauthorized actions being performedEPSS 0.2%CVE-2025-53095CRITICALSunshine application-wide CSRF in the UI leads to command injection as AdministratorEPSS 0.2%CVE-2025-10199HIGHA local privilege escalation vulnerability exists in LizardBytes' Sunshine for WindowsEPSS 0.2%