CVE-2026-5055
- EPSS 0.01%
- Veröffentlicht 11.04.2026 00:14:25
- Zuletzt bearbeitet 15.04.2026 18:41:22
NoMachine Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of NoMachine. An attacker must first obtain the ability to execute low-pr...
CVE-2026-5054
- EPSS 0.02%
- Veröffentlicht 11.04.2026 00:14:16
- Zuletzt bearbeitet 15.04.2026 18:42:24
NoMachine External Control of File Path Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of NoMachine. An attacker must first obtain the ability to execute low-privil...
CVE-2026-5053
- EPSS 0.02%
- Veröffentlicht 11.04.2026 00:14:07
- Zuletzt bearbeitet 15.04.2026 18:43:05
NoMachine External Control of File Path Arbitrary File Deletion Vulnerability. This vulnerability allows local attackers to delete arbitrary files on affected installations of NoMachine. An attacker must first obtain the ability to execute low-privil...
CVE-2025-8614
- EPSS 0.02%
- Veröffentlicht 02.09.2025 19:47:16
- Zuletzt bearbeitet 10.09.2025 14:36:09
NoMachine Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of NoMachine. An attacker must first obtain the ability to execute low-pr...
CVE-2024-7253
- EPSS 0.06%
- Veröffentlicht 22.11.2024 22:15:17
- Zuletzt bearbeitet 21.05.2025 10:39:46
NoMachine Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of NoMachine. An attacker must first obtain the ability to execute low-pri...
CVE-2023-39107
- EPSS 0.35%
- Veröffentlicht 04.08.2023 18:15:16
- Zuletzt bearbeitet 21.11.2024 08:14:44
An arbitrary file overwrite vulnerability in NoMachine Free Edition and Enterprise Client for macOS before v8.8.1 allows attackers to overwrite root-owned files by using hardlinks.
CVE-2022-48074
- EPSS 0.09%
- Veröffentlicht 03.02.2023 06:15:07
- Zuletzt bearbeitet 21.11.2024 07:32:48
An issue in NoMachine before v8.2.3 allows attackers to execute arbitrary commands via a crafted .nxs file.
CVE-2022-34043
- EPSS 0.05%
- Veröffentlicht 29.06.2022 13:15:08
- Zuletzt bearbeitet 21.11.2024 07:08:49
Incorrect permissions for the folder C:\ProgramData\NoMachine\var\uninstall of Nomachine v7.9.2 allows attackers to perform a DLL hijacking attack and execute arbitrary code.
CVE-2021-33436
- EPSS 0.04%
- Veröffentlicht 28.04.2022 11:15:07
- Zuletzt bearbeitet 21.11.2024 06:08:48
NoMachine for Windows prior to version 6.15.1 and 7.5.2 suffer from local privilege escalation due to the lack of safe DLL loading. This vulnerability allows local non-privileged users to perform DLL Hijacking via any writable directory listed under ...
CVE-2018-20029
- EPSS 0.04%
- Veröffentlicht 10.12.2018 20:29:00
- Zuletzt bearbeitet 25.02.2026 15:33:05
The nxfs.sys driver in the DokanFS library 0.6.0 in NoMachine before 6.4.6 on Windows 10 allows local users to cause a denial of service (BSOD) because uninitialized memory can be read.