Show filters
22 Total Results
Displaying 11-20 of 22
Sort by:
Attacker Value
Unknown

CVE-2021-36887

Disclosure Date: December 09, 2021 (last updated February 23, 2025)
Cross-Site Request Forgery (CSRF) vulnerability leading to Cross-Site Scripting (XSS) discovered in tarteaucitron.js – Cookies legislation & GDPR WordPress plugin (versions <= 1.5.4), vulnerable parameters "tarteaucitronEmail" and "tarteaucitronPass".
Attacker Value
Unknown

CVE-2021-24405

Disclosure Date: July 06, 2021 (last updated February 22, 2025)
The Easy Cookies Policy WordPress plugin through 1.6.2 is lacking any capability and CSRF check when saving its settings, allowing any authenticated users (such as subscriber) to change them. If users can't register, this can be done through CSRF. Furthermore, the cookie banner setting is not sanitised or validated before being output in all pages of the frontend and the backend settings one, leading to a Stored Cross-Site Scripting issue.
Attacker Value
Unknown

CVE-2012-3809

Disclosure Date: January 09, 2020 (last updated November 28, 2024)
Samsung Kies before 2.5.0.12094_27_11 has arbitrary directory modification.
Attacker Value
Unknown

CVE-2012-3807

Disclosure Date: January 09, 2020 (last updated November 28, 2024)
Samsung Kies before 2.5.0.12094_27_11 has arbitrary file execution.
Attacker Value
Unknown

CVE-2012-3806

Disclosure Date: January 09, 2020 (last updated February 21, 2025)
Samsung Kies before 2.5.0.12094_27_11 contains a NULL pointer dereference vulnerability which could allow remote attackers to perform a denial of service.
Attacker Value
Unknown

CVE-2012-3810

Disclosure Date: January 09, 2020 (last updated November 28, 2024)
Samsung Kies before 2.5.0.12094_27_11 has registry modification.
Attacker Value
Unknown

CVE-2012-3808

Disclosure Date: January 09, 2020 (last updated November 28, 2024)
Samsung Kies before 2.5.0.12094_27_11 has arbitrary file modification.
Attacker Value
Unknown

CVE-2015-8780

Disclosure Date: April 13, 2017 (last updated November 26, 2024)
Samsung wssyncmlnps before 2015-10-31 allows directory traversal in a Kies restore, aka ZipFury.
0
Attacker Value
Unknown

CVE-2012-6429

Disclosure Date: April 04, 2014 (last updated October 05, 2023)
Buffer overflow in the PrepareSync method in the SyncService.dll ActiveX control in Samsung Kies before 2.5.1.12123_2_7 allows remote attackers to execute arbitrary code via a long string to the password argument.
0
Attacker Value
Unknown

CVE-2012-5859

Disclosure Date: December 03, 2012 (last updated October 05, 2023)
Samsung Kies Air 2.1.207051 and 2.1.210161 allows remote attackers to cause a denial of service (crash) via a crafted request to www/apps/KiesAir/jws/ssd.php.
0