CVE Tools

Splashtop

3 CVEs tracked since 2022. Since Feb 2022, none of them reached CISA KEV.

Splashtop CVEs per month

Feb 2022 to Feb 2022. Point at a month, or focus the strip and use the arrow keys.
Splashtop CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2022-0230

Products

The products that kept showing up in Splashtop's monthly top three, with their CVEs summed over those months.

  1. Splashtop21 month
  2. Streamer11 month

Latest CVEs

The 10 most recently published vulnerabilities affecting Splashtop.

  1. CVE-2022-50693Splashtop 8.71.12001.0 - Unquoted Service Path8.4
  2. CVE-2024-42051The MSI installer for Splashtop Streamer for Windows before 3.6.2.0 uses a temporary folder with weak permissions during installation. A local user can exploit this to escalate privileges to SYSTEM...7.8
  3. CVE-2024-42050The MSI installer for Splashtop Streamer for Windows before 3.7.0.0 uses a temporary folder with weak permissions during installation. A local user can exploit this to escalate privileges to SYSTEM...7.0
  4. CVE-2024-42053The MSI installer for Splashtop Streamer for Windows before 3.6.0.0 uses a temporary folder with weak permissions during installation. A local user can exploit this to escalate privileges to SYSTEM...7.8
  5. CVE-2024-42052The MSI installer for Splashtop Streamer for Windows before 3.5.8.0 uses a temporary folder with weak permissions during installation. A local user can exploit this to escalate privileges to SYSTEM...7.8
  6. CVE-2023-3181Insecure Permissions in Splashtop Software Updater7.8
  7. CVE-2021-42713Splashtop Remote Client (Personal Edition) through 3.4.6.1 creates a Temporary File in a Directory with Insecure Permissions.7.8
  8. CVE-2021-42714Splashtop Remote Client (Business Edition) through 3.4.8.3 creates a Temporary File in a Directory with Insecure Permissions.7.8
  9. CVE-2021-42712Splashtop Streamer through 3.4.8.3 creates a Temporary File in a Directory with Insecure Permissions.7.8
  10. CVE-2020-12431A Windows privilege change issue was discovered in Splashtop Software Updater before 1.5.6.16. Insecure permissions on the configuration file and named pipe allow for local privilege escalation to ...6.6

The record

Peak rank
#176 in Feb 2022
Busiest month shown
Feb 2022, 3 CVEs
Months with a KEV entry
0 since Feb 2022
Monthly snapshots
1 since 2022
Splashtop's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store