lizardbyte
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 11 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from April 5, 2024 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Sunshine: Authentication bypass via improper client certificate validation
SunshineService Has Unquoted Service Path That Allows Local SYSTEM Code Execution
A local privilege escalation vulnerability exists in LizardBytes' Sunshine for Windows
LizardBytes Sunshine for Windows contains a DLL search-order hijacking vulnerability
Sunshine application-wide CSRF in the UI leads to command injection as Administrator
Sunshine clickjacking in the UI leads to unauthorized actions being performed
Sunshine improperly enforces pairing protocol request order
Sunshine has incorrect state management during pairing process may lead to incorrectly authorized client
Sunshine's unquoted executable path could lead to hijacked execution flow
Clients removed during unpairing process may regain access if Sunshine was not restarted
Monitor lizardbyte in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.