EA
EA Origin: vulnerabilidades y CVE
EA Origin tiene 6 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE6
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2020-27708 | Alta (7.8) | 0.59% | — | 2 nov 2020 | A vulnerability exists in the Origin Client that could allow a non-Administrative user to elevate their access to either Administrator or System. Once the user has obtained elevated access, they may be able to take… |
| CVE-2019-19741 | Alta (7.8) | 0.72% | — | 20 feb 2020 | Electronic Arts Origin 10.5.55.33574 is vulnerable to local privilege escalation due to arbitrary directory DACL manipulation, a different issue than CVE-2019-19247 and CVE-2019-19248. When Origin.exe connects to the… |
| CVE-2019-19248 | Alta (7.8) | 0.39% | — | 12 dic 2019 | Electronic Arts Origin through 10.5.x allows Elevation of Privilege (issue 2 of 2). |
| CVE-2019-19247 | Alta (7.8) | 0.36% | — | 12 dic 2019 | Electronic Arts Origin through 10.5.x allows Elevation of Privilege (issue 1 of 2). |
| CVE-2019-12828 | Alta (8.8) | 13% | — | 14 jun 2019 | An issue was discovered in Electronic Arts Origin before 10.5.39. Due to improper sanitization of the origin:// and origin2:// URI schemes, it is possible to inject additional arguments into the Origin process and… |
| CVE-2019-11354 | Alta (7.8) | 23% | — | 19 abr 2019 | The client in Electronic Arts (EA) Origin 10.5.36 on Windows allows template injection in the title parameter of the Origin2 URI handler. This can be used to escape the underlying AngularJS sandbox and achieve remote… |