Show filters
39 Total Results
Displaying 31-39 of 39
Sort by:
Attacker Value
Unknown
CVE-2021-35206
Disclosure Date: June 22, 2021 (last updated February 22, 2025)
Gitpod before 0.6.0 allows unvalidated redirects.
0
Attacker Value
Unknown
CVE-2018-13638
Disclosure Date: July 09, 2018 (last updated November 27, 2024)
The mintToken function of a smart contract implementation for Bitpark, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
0
Attacker Value
Unknown
CVE-2017-16198
Disclosure Date: June 07, 2018 (last updated November 26, 2024)
ritp is a static web server. ritp is vulnerable to a directory traversal issue whereby an attacker can gain access to the file system by placing ../ in the URL. Access is restricted to files with a file extension, so files such as /etc/passwd are not accessible.
0
Attacker Value
Unknown
CVE-2018-10812
Disclosure Date: May 08, 2018 (last updated November 26, 2024)
The Bitpie application through 3.2.4 for Android and iOS uses cleartext storage for digital currency initial keys, which allows local users to steal currency by leveraging root access to read /com.biepie/shared_prefs/com.bitpie_preferences.xml (on Android) or a plist file in the app data folder (on iOS).
0
Attacker Value
Unknown
CVE-2018-1000023
Disclosure Date: February 09, 2018 (last updated November 26, 2024)
Bitpay/insight-api Insight-api version 5.0.0 and earlier contains a CWE-20: input validation vulnerability in transaction broadcast endpoint that can result in Full Path Disclosure. This attack appear to be exploitable via Web request.
0
Attacker Value
Unknown
CVE-2017-1000214
Disclosure Date: November 27, 2017 (last updated November 26, 2024)
GitPHP by xiphux is vulnerable to OS Command Injections
0
Attacker Value
Unknown
CVE-2014-7795
Disclosure Date: October 21, 2014 (last updated October 05, 2023)
The Harpers Bazaar Art (aka com.itp.harpersart) application @7F080181 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2014-7339
Disclosure Date: October 19, 2014 (last updated October 05, 2023)
The Cuanto Conoces A un Amigo (aka com.makeitpossible.CuantoConocesAunAmigo) application 2.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2010-0764
Disclosure Date: March 02, 2010 (last updated October 04, 2023)
SQL injection vulnerability in index.php in KuwaitPHP eSmile allows remote attackers to execute arbitrary SQL commands via the cid parameter in a show action.
0