VendorsSnow Softwaresnow_inventory_agentall versions
Vulnerabilities

Snow Software Snow Inventory Agent

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2021-27579
Snow Inventory Agent through 6.7.0 on Windows uses CPUID to report on processor types and versions that may be deployed and in use across an IT environment. A privilege-escalation vulnerability exists if CPUID is enabled, and thus it should be disabled via configuration settings.
Published 2021-02-23 · Modified
7.8EPSS 0.005
CVE-2024-1149
Improper validation of update packages
Published 2024-02-08 · Modified
7.8EPSS 0.001
CVE-2024-1150
Improper validation of update packages
Published 2024-02-08 · Modified
7.8EPSS 0.001
CVE-2021-41562
Deletion of arbitrary files vulnerability in Snow Agent for Windows
Published 2021-11-03 · Modified
6.1EPSS 0.003
CVE-2023-7169
Impersonate vendor signed Powershell scripts
Published 2024-02-08 · Modified
6.0EPSS 0.002