Show filters
22 Total Results
Displaying 11-20 of 22
Sort by:
Attacker Value
Unknown
CVE-2021-36887
Disclosure Date: December 09, 2021 (last updated February 23, 2025)
Cross-Site Request Forgery (CSRF) vulnerability leading to Cross-Site Scripting (XSS) discovered in tarteaucitron.js – Cookies legislation & GDPR WordPress plugin (versions <= 1.5.4), vulnerable parameters "tarteaucitronEmail" and "tarteaucitronPass".
0
Attacker Value
Unknown
CVE-2021-24405
Disclosure Date: July 06, 2021 (last updated February 22, 2025)
The Easy Cookies Policy WordPress plugin through 1.6.2 is lacking any capability and CSRF check when saving its settings, allowing any authenticated users (such as subscriber) to change them. If users can't register, this can be done through CSRF. Furthermore, the cookie banner setting is not sanitised or validated before being output in all pages of the frontend and the backend settings one, leading to a Stored Cross-Site Scripting issue.
0
Attacker Value
Unknown
CVE-2012-3809
Disclosure Date: January 09, 2020 (last updated November 28, 2024)
Samsung Kies before 2.5.0.12094_27_11 has arbitrary directory modification.
0
Attacker Value
Unknown
CVE-2012-3807
Disclosure Date: January 09, 2020 (last updated November 28, 2024)
Samsung Kies before 2.5.0.12094_27_11 has arbitrary file execution.
0
Attacker Value
Unknown
CVE-2012-3806
Disclosure Date: January 09, 2020 (last updated February 21, 2025)
Samsung Kies before 2.5.0.12094_27_11 contains a NULL pointer dereference vulnerability which could allow remote attackers to perform a denial of service.
0
Attacker Value
Unknown
CVE-2012-3810
Disclosure Date: January 09, 2020 (last updated November 28, 2024)
Samsung Kies before 2.5.0.12094_27_11 has registry modification.
0
Attacker Value
Unknown
CVE-2012-3808
Disclosure Date: January 09, 2020 (last updated November 28, 2024)
Samsung Kies before 2.5.0.12094_27_11 has arbitrary file modification.
0
Attacker Value
Unknown
CVE-2015-8780
Disclosure Date: April 13, 2017 (last updated November 26, 2024)
Samsung wssyncmlnps before 2015-10-31 allows directory traversal in a Kies restore, aka ZipFury.
0
Attacker Value
Unknown
CVE-2012-6429
Disclosure Date: April 04, 2014 (last updated October 05, 2023)
Buffer overflow in the PrepareSync method in the SyncService.dll ActiveX control in Samsung Kies before 2.5.1.12123_2_7 allows remote attackers to execute arbitrary code via a long string to the password argument.
0
Attacker Value
Unknown
CVE-2012-5859
Disclosure Date: December 03, 2012 (last updated October 05, 2023)
Samsung Kies Air 2.1.207051 and 2.1.210161 allows remote attackers to cause a denial of service (crash) via a crafted request to www/apps/KiesAir/jws/ssd.php.
0