Show filters
22 Total Results
Displaying 11-20 of 22
Sort by:
Attacker Value
Unknown

CVE-2022-36347

Disclosure Date: August 12, 2022 (last updated October 08, 2023)
Authenticated (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Alpine Press Alpine PhotoTile for Pinterest plugin <= 1.3.1 at WordPress.
Attacker Value
Unknown

CVE-2017-20087

Disclosure Date: June 23, 2022 (last updated February 23, 2025)
A vulnerability, which was classified as problematic, has been found in Alpine PhotoTile for Instagram Plugin 1.2.7.7. Affected by this issue is some unknown functionality. The manipulation leads to basic cross site scripting. The attack may be launched remotely.
Attacker Value
Unknown

CVE-2021-27971

Disclosure Date: January 31, 2022 (last updated February 23, 2025)
Alps Alpine Touchpad Driver 10.3201.101.215 is vulnerable to DLL Injection.
Attacker Value
Unknown

CVE-2021-38370

Disclosure Date: August 10, 2021 (last updated February 23, 2025)
In Alpine before 2.25, untagged responses from an IMAP server are accepted before STARTTLS.
Attacker Value
Unknown

CVE-2021-36158

Disclosure Date: July 05, 2021 (last updated February 22, 2025)
In the xrdp package (in branches through 3.14) for Alpine Linux, RDP sessions are vulnerable to man-in-the-middle attacks because pre-generated RSA certificates and private keys are used.
Attacker Value
Unknown

CVE-2021-30139

Disclosure Date: April 21, 2021 (last updated February 22, 2025)
In Alpine Linux apk-tools before 2.12.5, the tarball parser allows a buffer overflow and crash.
Attacker Value
Unknown

CVE-2020-14929

Disclosure Date: June 19, 2020 (last updated February 21, 2025)
Alpine before 2.23 silently proceeds to use an insecure connection after a /tls is sent in certain circumstances involving PREAUTH, which is a less secure behavior than the alternative of closing the connection and letting the user decide what they would like to do.
Attacker Value
Unknown

CVE-2015-9432

Disclosure Date: September 26, 2019 (last updated November 27, 2024)
The alpine-photo-tile-for-instagram plugin before 1.2.7.6 for WordPress has CSRF with resultant XSS via the wp-admin/options-general.php?page=alpine-photo-tile-for-instagram-settings tab parameter.
Attacker Value
Unknown

CVE-2019-12875

Disclosure Date: June 18, 2019 (last updated November 27, 2024)
Alpine Linux abuild through 3.4.0 allows an unprivileged member of the abuild group to add an untrusted package via a --keys-dir option that causes acceptance of an untrusted signing key.
0
Attacker Value
Unknown

CVE-2018-1000849

Disclosure Date: December 20, 2018 (last updated November 27, 2024)
Alpine Linux version Versions prior to 2.6.10, 2.7.6, and 2.10.1 contains a Other/Unknown vulnerability in apk-tools (Alpine Linux' package manager) that can result in Remote Code Execution. This attack appear to be exploitable via A specially crafted APK-file can cause apk to write arbitrary data to an attacker-specified file, due to bugs in handling long link target name and the way a regular file is extracted.. This vulnerability appears to have been fixed in 2.6.10, 2.7.6, and 2.10.1.
0