Show filters
81 Total Results
Displaying 41-50 of 81
Sort by:
Attacker Value
Unknown
CVE-2020-12470
Disclosure Date: April 29, 2020 (last updated February 21, 2025)
MonoX through 5.1.40.5152 allows administrators to execute arbitrary code by modifying an ASPX template.
0
Attacker Value
Unknown
CVE-2020-12471
Disclosure Date: April 29, 2020 (last updated February 21, 2025)
MonoX through 5.1.40.5152 allows remote code execution via HTML5Upload.ashx or Pages/SocialNetworking/lng/en-US/PhotoGallery.aspx because of deserialization in ModuleGallery.HTML5Upload, ModuleGallery.SilverLightUploadModule, HTML5Upload, and SilverLightUploadHandler.
0
Attacker Value
Unknown
CVE-2020-12473
Disclosure Date: April 29, 2020 (last updated November 27, 2024)
MonoX through 5.1.40.5152 allows admins to execute arbitrary programs by reconfiguring the Converter Executable setting from ffmpeg.exe to a different program.
0
Attacker Value
Unknown
CVE-2020-12472
Disclosure Date: April 29, 2020 (last updated February 21, 2025)
MonoX through 5.1.40.5152 allows stored XSS via User Status, Blog Comments, or Blog Description.
0
Attacker Value
Unknown
CVE-2015-0841
Disclosure Date: December 09, 2019 (last updated November 27, 2024)
Off-by-one error in the readBuf function in listener.cpp in libcapsinetwork and monopd before 0.9.8, allows remote attackers to cause a denial of service (crash) via a long line.
0
Attacker Value
Unknown
CVE-2012-3543
Disclosure Date: November 21, 2019 (last updated November 27, 2024)
mono 2.10.x ASP.NET Web Form Hash collision DoS
0
Attacker Value
Unknown
CVE-2019-0757
Disclosure Date: April 09, 2019 (last updated November 27, 2024)
A tampering vulnerability exists in the NuGet Package Manager for Linux and Mac that could allow an authenticated attacker to modify a NuGet package's folder structure, aka 'NuGet Package Manager Tampering Vulnerability'.
0
Attacker Value
Unknown
CVE-2015-2318
Disclosure Date: January 08, 2018 (last updated November 26, 2024)
The TLS stack in Mono before 3.12.1 allows man-in-the-middle attackers to conduct message skipping attacks and consequently impersonate clients by leveraging missing handshake state validation, aka a "SMACK SKIP-TLS" issue.
0
Attacker Value
Unknown
CVE-2015-2319
Disclosure Date: January 08, 2018 (last updated November 26, 2024)
The TLS stack in Mono before 3.12.1 makes it easier for remote attackers to conduct cipher-downgrade attacks to EXPORT_RSA ciphers via crafted TLS traffic, related to the "FREAK" issue, a different vulnerability than CVE-2015-0204.
0
Attacker Value
Unknown
CVE-2015-2320
Disclosure Date: January 08, 2018 (last updated November 26, 2024)
The TLS stack in Mono before 3.12.1 allows remote attackers to have unspecified impact via vectors related to client-side SSLv2 fallback.
0