Show filters
46 Total Results
Displaying 1-10 of 46
Sort by:
Attacker Value
Unknown
CVE-2020-7803
Disclosure Date: May 07, 2020 (last updated February 21, 2025)
IMGTech Co,Ltd ZInsX.ocx ActiveX Control in Zoneplayer 2.0.1.3, version 2.0.1.4 and prior versions on Windows. File Donwload vulnerability in ZInsX.ocx of IMGTech Co,Ltd Zoneplayer allows attacker to cause arbitrary code execution.
0
Attacker Value
Unknown
CVE-2014-4030
Disclosure Date: June 25, 2014 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in the JW Player plugin before 2.1.4 for WordPress allows remote attackers to hijack the authentication of administrators for requests that remove players via a delete action to wp-admin/admin.php.
0
Attacker Value
Unknown
CVE-2013-7341
Disclosure Date: March 24, 2014 (last updated October 05, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Flowplayer Flash before 3.2.17, as used in Moodle through 2.3.11, 2.4.x before 2.4.9, 2.5.x before 2.5.5, and 2.6.x before 2.6.2, allow remote attackers to inject arbitrary web script or HTML by (1) providing a crafted playerId or (2) referencing an external domain, a related issue to CVE-2013-7342.
0
Attacker Value
Unknown
CVE-2013-7340
Disclosure Date: March 21, 2014 (last updated October 05, 2023)
VideoLAN VLC Media Player before 2.0.7 allows remote attackers to cause a denial of service (memory consumption) via a crafted playlist file.
0
Attacker Value
Unknown
CVE-2014-1684
Disclosure Date: March 03, 2014 (last updated October 05, 2023)
The ASF_ReadObject_file_properties function in modules/demux/asf/libasf.c in the ASF Demuxer in VideoLAN VLC Media Player before 2.1.3 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a zero minimum and maximum data packet size in an ASF file.
0
Attacker Value
Unknown
CVE-2013-6283
Disclosure Date: October 25, 2013 (last updated October 05, 2023)
VideoLAN VLC Media Player 2.0.8 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a URL in a m3u file.
0
Attacker Value
Unknown
CVE-2013-4388
Disclosure Date: October 11, 2013 (last updated October 05, 2023)
Buffer overflow in the mp4a packetizer (modules/packetizer/mpeg4audio.c) in VideoLAN VLC Media Player before 2.0.8 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.
0
Attacker Value
Unknown
CVE-2013-5716
Disclosure Date: September 09, 2013 (last updated October 05, 2023)
Gretech GOM Media Player 2.2.53.5169 and possibly earlier allows remote attackers to cause a denial of service (application crash) via a crafted WAV file.
0
Attacker Value
Unknown
CVE-2013-5715
Disclosure Date: September 09, 2013 (last updated October 05, 2023)
Buffer overflow in Gretech GOM Media Player before 2.2.53.5169 has unspecified impact and attack vectors.
0
Attacker Value
Unknown
CVE-2013-2022
Disclosure Date: August 17, 2013 (last updated November 08, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in actionscript/Jplayer.as in the Flash SWF component (jplayer.swf) in jPlayer before 2.2.23 allow remote attackers to inject arbitrary web script or HTML via the (1) jQuery or (2) id parameters, a different vulnerability than CVE-2013-1942 and CVE-2013-2023, as demonstrated by using the alert function in the jQuery parameter. NOTE: these are the same parameters as CVE-2013-1942, but the fix for CVE-2013-1942 uses a blacklist for the jQuery parameter.
0