Show filters
557 Total Results
Displaying 181-190 of 557
Sort by:
Attacker Value
Unknown
CVE-2014-5616
Disclosure Date: September 09, 2014 (last updated October 05, 2023)
The Web Browser & Explorer (aka com.explore.web.browser) application 2.0.7 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2014-5617
Disclosure Date: September 09, 2014 (last updated October 05, 2023)
The Exsoul Web Browser (aka com.exsoul) application 3.3.3 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2014-5636
Disclosure Date: September 09, 2014 (last updated October 05, 2023)
The Cloud Browser (aka com.granitamalta.cloudbrowser) application 2.2.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2014-5589
Disclosure Date: September 09, 2014 (last updated October 05, 2023)
The Now Browser (Material) (aka com.browser.nowbasic) 2.8.1 application Material for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2014-5655
Disclosure Date: September 09, 2014 (last updated October 05, 2023)
The CM Browser - Fast & Secure (aka com.ksmobile.cb) application 5.0.50 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2014-6041
Disclosure Date: September 02, 2014 (last updated October 05, 2023)
The Android WebView in Android before 4.4 allows remote attackers to bypass the Same Origin Policy via a crafted attribute containing a \u0000 character, as demonstrated by an onclick="window.open('\u0000javascript: sequence to the Android Browser application 4.2.1 or a third-party web browser.
0
Attacker Value
Unknown
CVE-2014-5349
Disclosure Date: August 19, 2014 (last updated October 05, 2023)
Stack-based buffer overflow in Baidu Spark Browser 26.5.9999.3511 allows remote attackers to cause a denial of service (application crash) via nested calls to the window.print JavaScript function.
0
Attacker Value
Unknown
CVE-2013-2105
Disclosure Date: April 22, 2014 (last updated October 05, 2023)
The Show In Browser (show_in_browser) gem 0.0.3 for Ruby allows local users to inject arbitrary web script or HTML via a symlink attack on /tmp/browser.html.
0
Attacker Value
Unknown
CVE-2014-1870
Disclosure Date: February 06, 2014 (last updated October 05, 2023)
Opera before 19 on Mac OS X allows user-assisted remote attackers to spoof the address bar via vectors involving a drag-and-drop operation.
0
Attacker Value
Unknown
CVE-2014-0815
Disclosure Date: February 06, 2014 (last updated October 05, 2023)
The intent: URL implementation in Opera before 18 on Android allows attackers to read local files by leveraging an interaction error, as demonstrated by reading stored cookies.
0