Show filters
557 Total Results
Displaying 21-30 of 557
Sort by:
Attacker Value
Unknown

CVE-2024-25091

Disclosure Date: March 01, 2024 (last updated March 01, 2024)
Protection mechanism failure issue exists in RevoWorks SCVX prior to scvimage4.10.21_1013 (when using 'VirusChecker' or 'ThreatChecker' feature) and RevoWorks Browser prior to 2.2.95 (when using 'VirusChecker' or 'ThreatChecker' feature). If data containing malware is saved in a specific file format (eml, dmg, vhd, iso, msi), malware may be taken outside the sandboxed environment.
0
Attacker Value
Unknown

CVE-2024-22291

Disclosure Date: January 31, 2024 (last updated February 03, 2024)
Cross-Site Request Forgery (CSRF) vulnerability in Marco Milesi Browser Theme Color.This issue affects Browser Theme Color: from n/a through 1.3.
Attacker Value
Unknown

CVE-2023-44077

Disclosure Date: January 17, 2024 (last updated January 25, 2024)
Studio Network Solutions ShareBrowser before 7.0 on macOS mishandles signature verification, aka PMP-2636.
Attacker Value
Unknown

CVE-2023-6540

Disclosure Date: January 03, 2024 (last updated January 11, 2024)
A vulnerability was reported in the Lenovo Browser Mobile and Lenovo Browser HD Apps for Android that could allow an attacker to craft a payload that could result in the disclosure of sensitive information.
Attacker Value
Unknown

CVE-2023-52263

Disclosure Date: December 30, 2023 (last updated January 10, 2024)
Brave Browser before 1.59.40 does not properly restrict the schema for WebUI factory and redirect. This is related to browser/brave_content_browser_client.cc and browser/ui/webui/brave_web_ui_controller_factory.cc.
Attacker Value
Unknown

CVE-2023-49001

Disclosure Date: December 27, 2023 (last updated January 05, 2024)
An issue in Indi Browser (aka kvbrowser) v.12.11.23 allows an attacker to bypass intended access restrictions via interaction with the com.example.gurry.kvbrowswer.webview component.
Attacker Value
Unknown

CVE-2023-49000

Disclosure Date: December 27, 2023 (last updated September 21, 2024)
An issue in ArtistScope ArtisBrowser v.34.1.5 and before allows an attacker to bypass intended access restrictions via interaction with the com.artis.browser.IntentReceiverActivity component. NOTE: this is disputed by the vendor, who indicates that ArtisBrowser 34 does not support CSS3.
Attacker Value
Unknown

CVE-2023-47883

Disclosure Date: December 27, 2023 (last updated January 10, 2024)
The com.altamirano.fabricio.tvbrowser TV browser application through 4.5.1 for Android is vulnerable to JavaScript code execution via an explicit intent due to an exposed MainActivity.
Attacker Value
Unknown

CVE-2023-43481

Disclosure Date: December 27, 2023 (last updated January 05, 2024)
An issue in Shenzhen TCL Browser TV Web BrowseHere (aka com.tcl.browser) 6.65.022_dab24cc6_231221_gp allows a remote attacker to execute arbitrary JavaScript code via the com.tcl.browser.portal.browse.activity.BrowsePageActivity component.
Attacker Value
Unknown

CVE-2023-46307

Disclosure Date: December 07, 2023 (last updated December 13, 2023)
An issue was discovered in server.js in etcd-browser 87ae63d75260. By supplying a /../../../ Directory Traversal input to the URL's GET request while connecting to the remote server port specified during setup, an attacker can retrieve local operating system files from the remote system.