Show filters
321 Total Results
Displaying 211-220 of 321
Sort by:
Attacker Value
Unknown

CVE-2015-4031

Disclosure Date: May 29, 2015 (last updated October 05, 2023)
Directory traversal vulnerability in saveFile.jsp in the development installation in Visual Mining NetChart allows remote attackers to write to arbitrary files via unspecified vectors.
0
Attacker Value
Unknown

CVE-2014-9505

Disclosure Date: January 09, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the School Administration module 7.x-1.x before 7.x-1.8 for Drupal allows remote authenticated users with permission to create or edit a class node to inject arbitrary web script or HTML via a node title.
0
Attacker Value
Unknown

CVE-2014-9448

Disclosure Date: January 02, 2015 (last updated October 05, 2023)
Buffer overflow in Mini-stream RM-MP3 Converter 3.1.2.1.2010.03.30 allows remote attackers to execute arbitrary code or cause a denial of service (crash) via a long string in a WAX file.
0
Attacker Value
Unknown

CVE-2014-9254

Disclosure Date: December 31, 2014 (last updated October 05, 2023)
bb_func_unsub.php in MiniBB 3.1 before 20141127 uses an incorrect regular expression, which allows remote attackers to conduct SQl injection attacks via the code parameter in an unsubscribe action to index.php.
0
Attacker Value
Unknown

CVE-2014-7609

Disclosure Date: October 20, 2014 (last updated October 05, 2023)
The iStunt 2 (aka com.miniclip.istunt2) application 1.1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown

CVE-2012-2583

Disclosure Date: September 17, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in Mini Mail Dashboard Widget plugin 1.42 for WordPress allows remote attackers to inject arbitrary web script or HTML via the body of an email.
0
Attacker Value
Unknown

CVE-2014-5904

Disclosure Date: September 15, 2014 (last updated October 05, 2023)
The MiniInTheBox Online Shopping (aka com.miniinthebox.android) application 2.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown

CVE-2014-3985

Disclosure Date: September 11, 2014 (last updated October 05, 2023)
The getHTTPResponse function in miniwget.c in MiniUPnP 1.9 allows remote attackers to cause a denial of service (crash) via crafted headers that trigger an out-of-bounds read.
0
Attacker Value
Unknown

CVE-2014-5877

Disclosure Date: September 11, 2014 (last updated October 05, 2023)
The TV Guide (aka net.micene.minigroup.palimpsests.lite) application 5.4.3 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown

CVE-2014-5817

Disclosure Date: September 09, 2014 (last updated October 05, 2023)
The Mini Pets (aka com.miniclip.animalshelter) application 2.0.3 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0