Show filters
557 Total Results
Displaying 131-140 of 557
Sort by:
Attacker Value
Unknown
CVE-2017-6779
Disclosure Date: June 07, 2018 (last updated November 26, 2024)
Multiple Cisco products are affected by a vulnerability in local file management for certain system log files of Cisco collaboration products that could allow an unauthenticated, remote attacker to cause high disk utilization, resulting in a denial of service (DoS) condition. The vulnerability occurs because a certain system log file does not have a maximum size restriction. Therefore, the file is allowed to consume the majority of available disk space on the appliance. An attacker could exploit this vulnerability by sending crafted remote connection requests to the appliance. Successful exploitation could allow the attacker to increase the size of a system log file so that it consumes most of the disk space. The lack of available disk space could lead to a DoS condition in which the application functions could operate abnormally, making the appliance unstable. This vulnerability affects the following Cisco Voice Operating System (VOS)-based products: Emergency Responder, Finesse, Hos…
0
Attacker Value
Unknown
CVE-2016-10625
Disclosure Date: June 01, 2018 (last updated November 26, 2024)
headless-browser-lite is a minimal npm installer for phantomjs and slimerjs with no external dependencies. headless-browser-lite downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the requested binary with an attacker controlled binary if the attacker is on the network or positioned in between the user and the remote server.
0
Attacker Value
Unknown
CVE-2016-10618
Disclosure Date: June 01, 2018 (last updated November 26, 2024)
node-browser is a wrapper webdriver by nodejs. node-browser downloads resources over HTTP, which leaves it vulnerable to MITM attacks.
0
Attacker Value
Unknown
MFSBGN03808 rev.1 - Micro Focus UCMDB, Cross-Site Scripting
Disclosure Date: May 23, 2018 (last updated November 08, 2023)
Cross-Site Scripting (XSS) in Micro Focus Universal CMDB, version 10.20, 10.21, 10.22, 10.30, 10.31, 10.32, 10.33, 11.0, CMS, version 4.10, 4.11, 4.12, 4.13, 4.14, 4.15.1 and Micro Focus UCMDB Browser, version 4.10, 4.11, 4.12, 4.13, 4.14, 4.15.1. This vulnerability could be remotely exploited to allow Cross-Site Scripting (XSS).
0
Attacker Value
Unknown
CVE-2017-14010
Disclosure Date: April 26, 2018 (last updated November 26, 2024)
In SpiderControl MicroBrowser Windows XP, Vista 7, 8 and 10, Versions 1.6.30.144 and prior, an uncontrolled search path element vulnerability has been identified which could be exploited by placing a specially crafted DLL file in the search path. If the malicious DLL is loaded prior to the valid DLL, an attacker could execute arbitrary code on the system.
0
Attacker Value
Unknown
CVE-2017-18256
Disclosure Date: April 04, 2018 (last updated November 26, 2024)
Brave Browser before 0.13.0 allows remote attackers to cause a denial of service (resource consumption) via a long alert() argument in JavaScript code, because window dialogs are mishandled.
0
Attacker Value
Unknown
CVE-2016-10718
Disclosure Date: April 04, 2018 (last updated November 26, 2024)
Brave Browser before 0.13.0 allows a tab to close itself even if the tab was not opened by a script, resulting in denial of service.
0
Attacker Value
Unknown
CVE-2018-6608
Disclosure Date: March 28, 2018 (last updated November 26, 2024)
In the WebRTC component in Opera 51.0.2830.55, after visiting a web site that attempts to gather complete client information (such as https://ip.voidsec.com), the browser can disclose a private IP address in a STUN request.
0
Attacker Value
Unknown
CVE-2017-7326
Disclosure Date: January 19, 2018 (last updated November 26, 2024)
Race condition issue in Yandex Browser for Android before 17.4.0.16 allowed a remote attacker to potentially exploit memory corruption via a crafted HTML page
0
Attacker Value
Unknown
CVE-2017-7325
Disclosure Date: January 19, 2018 (last updated November 26, 2024)
Yandex Browser before 16.9.0 allows remote attackers to spoof the address bar via window.open.
0