Show filters
321 Total Results
Displaying 211-220 of 321
Sort by:
Attacker Value
Unknown
CVE-2015-4031
Disclosure Date: May 29, 2015 (last updated October 05, 2023)
Directory traversal vulnerability in saveFile.jsp in the development installation in Visual Mining NetChart allows remote attackers to write to arbitrary files via unspecified vectors.
0
Attacker Value
Unknown
CVE-2014-9505
Disclosure Date: January 09, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the School Administration module 7.x-1.x before 7.x-1.8 for Drupal allows remote authenticated users with permission to create or edit a class node to inject arbitrary web script or HTML via a node title.
0
Attacker Value
Unknown
CVE-2014-9448
Disclosure Date: January 02, 2015 (last updated October 05, 2023)
Buffer overflow in Mini-stream RM-MP3 Converter 3.1.2.1.2010.03.30 allows remote attackers to execute arbitrary code or cause a denial of service (crash) via a long string in a WAX file.
0
Attacker Value
Unknown
CVE-2014-9254
Disclosure Date: December 31, 2014 (last updated October 05, 2023)
bb_func_unsub.php in MiniBB 3.1 before 20141127 uses an incorrect regular expression, which allows remote attackers to conduct SQl injection attacks via the code parameter in an unsubscribe action to index.php.
0
Attacker Value
Unknown
CVE-2014-7609
Disclosure Date: October 20, 2014 (last updated October 05, 2023)
The iStunt 2 (aka com.miniclip.istunt2) application 1.1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2012-2583
Disclosure Date: September 17, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in Mini Mail Dashboard Widget plugin 1.42 for WordPress allows remote attackers to inject arbitrary web script or HTML via the body of an email.
0
Attacker Value
Unknown
CVE-2014-5904
Disclosure Date: September 15, 2014 (last updated October 05, 2023)
The MiniInTheBox Online Shopping (aka com.miniinthebox.android) application 2.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2014-3985
Disclosure Date: September 11, 2014 (last updated October 05, 2023)
The getHTTPResponse function in miniwget.c in MiniUPnP 1.9 allows remote attackers to cause a denial of service (crash) via crafted headers that trigger an out-of-bounds read.
0
Attacker Value
Unknown
CVE-2014-5877
Disclosure Date: September 11, 2014 (last updated October 05, 2023)
The TV Guide (aka net.micene.minigroup.palimpsests.lite) application 5.4.3 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2014-5817
Disclosure Date: September 09, 2014 (last updated October 05, 2023)
The Mini Pets (aka com.miniclip.animalshelter) application 2.0.3 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0