CVE-2019-1010101: Akeo Rufus

Critical severity, CVSS 9.8. EPSS: 3.4% chance of exploitation in the next 30 days.

Akeo Consulting Rufus 3.0 and earlier is affected by: Insecure Permissions. The impact is: arbitrary code execution with escalation of privilege. The component is: Executable installer, portable executable (ALL executables available). The attack vector is: CWE-29, CWE-377, CWE-379.

Affected products

  • Akeo Rufus: up to and including 3.0

Published 2019-07-19. Last modified 2026-06-17.