Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown
CVE-2009-3004
Disclosure Date: August 28, 2009 (last updated October 04, 2023)
Avant Browser 11.7 Builds 35 and 36 allows remote attackers to spoof the address bar, via window.open with a relative URI, to show an arbitrary URL on the web site visited by the victim, as demonstrated by a visit to an attacker-controlled web page, which triggers a spoofed login form for the site containing that page. NOTE: a related attack was reported in which an arbitrary file: URL is shown.
0
Attacker Value
Unknown
CVE-2008-4166
Disclosure Date: September 22, 2008 (last updated October 04, 2023)
Integer overflow in the JavaScript engine in Avant Browser 11.7 Build 9 and earlier allows remote attackers to cause a denial of service (application crash) by attempting to URL encode a string containing many instances of an invalid character.
0
Attacker Value
Unknown
CVE-2007-1501
Disclosure Date: March 19, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in Avant Browser 11.0 build 26 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long Content-Type HTTP header.
0
Attacker Value
Unknown
CVE-2006-2058
Disclosure Date: April 26, 2006 (last updated February 14, 2024)
Argument injection vulnerability in Avant Browser 10.1 Build 17 allows user-assisted remote attackers to modify command line arguments to an invoked mail client via " (double quote) characters in a mailto: scheme handler, as demonstrated by launching Microsoft Outlook with an arbitrary filename as an attachment. NOTE: it is not clear whether this issue is implementation-specific or a problem in the Microsoft API.
0
Attacker Value
Unknown
CVE-2003-1321
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Buffer overflow in Avant Browser 8.02 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long URL in an HTTP request.
0